Pieter Wuille [ARCHIVE] on Nostr: 📅 Original date posted:2014-03-05 📝 Original message:On Wed, Mar 5, 2014 at ...
📅 Original date posted:2014-03-05
📝 Original message:On Wed, Mar 5, 2014 at 1:49 PM, Mike Hearn <mike at plan99.net> wrote:
> I am not currently aware of any efforts to make OpenSSL's secp256k1
> implementation completely side channel free in all aspects. Also,
> unfortunately many people have reimplemented ECDSA themselves and even if
> OpenSSL gets fixed, the custom implementations probably won't.
As far as I know, judging from the implementation, there is hardly any
effort to try to prevent timing attacks.
--
Pieter
Published at
2023-06-07 15:14:40Event JSON
{
"id": "510437f29e0c849fe677168a7d848ed22d28e80f7b29be99c9204c6f04f265da",
"pubkey": "5cb21bf5d7f25a9d46879713cbd32433bbc10e40ef813a3c28fe7355f49854d6",
"created_at": 1686150880,
"kind": 1,
"tags": [
[
"e",
"d46bd1a40c3d916ca1e2c015ea0a2210ec8d4fdd9116c09aec6725abac0dd67f",
"",
"root"
],
[
"e",
"27677f3793b957340319464ef6a3b89efeae4ca5e4c280485ef21143aaa6eef8",
"",
"reply"
],
[
"p",
"f2c95df3766562e3b96b79a0254881c59e8639f23987846961cf55412a77f6f2"
]
],
"content": "📅 Original date posted:2014-03-05\n📝 Original message:On Wed, Mar 5, 2014 at 1:49 PM, Mike Hearn \u003cmike at plan99.net\u003e wrote:\n\u003e I am not currently aware of any efforts to make OpenSSL's secp256k1\n\u003e implementation completely side channel free in all aspects. Also,\n\u003e unfortunately many people have reimplemented ECDSA themselves and even if\n\u003e OpenSSL gets fixed, the custom implementations probably won't.\n\nAs far as I know, judging from the implementation, there is hardly any\neffort to try to prevent timing attacks.\n\n-- \nPieter",
"sig": "2a861c9fbfad07a92c10aef23eadeaaf376326b9f422933240c9aab3e1c510e16211df26b4d5fe45dcbec0fda81168623512ccb7d612f2889df61ce3cc2824b6"
}