Pieter Wuille [ARCHIVE] on Nostr: 📅 Original date posted:2014-03-05 📝 Original message:On Wed, Mar 5, 2014 at ...
📅 Original date posted:2014-03-05
📝 Original message:On Wed, Mar 5, 2014 at 2:18 PM, Jean-Paul Kogelman
<jeanpaulkogelman at me.com> wrote:
>> As far as I know, judging from the implementation, there is hardly any
>> effort to try to prevent timing attacks.
>>
>
> Is it safe to assume that this is also true for your secp256k1 implementation?
I've done some preliminary work on making it leak less, but it's by no
means guaranteed to be constant time either (so better assume it is
not).
--
Pieter
Published at
2023-06-07 15:14:41Event JSON
{
"id": "b5f1b182db8bbf4cd8ca52838b9c4e5695401ecaf2e648360da92120973df89f",
"pubkey": "5cb21bf5d7f25a9d46879713cbd32433bbc10e40ef813a3c28fe7355f49854d6",
"created_at": 1686150881,
"kind": 1,
"tags": [
[
"e",
"d46bd1a40c3d916ca1e2c015ea0a2210ec8d4fdd9116c09aec6725abac0dd67f",
"",
"root"
],
[
"e",
"fd36b82bf3f41f8493fb6e8d48c8bd585e4cb7624b6940e6de6bb79866f672a7",
"",
"reply"
],
[
"p",
"874fa44d110b2119208ba6fb27607799f16a00c82143201ad7f179a89f0df349"
]
],
"content": "📅 Original date posted:2014-03-05\n📝 Original message:On Wed, Mar 5, 2014 at 2:18 PM, Jean-Paul Kogelman\n\u003cjeanpaulkogelman at me.com\u003e wrote:\n\u003e\u003e As far as I know, judging from the implementation, there is hardly any\n\u003e\u003e effort to try to prevent timing attacks.\n\u003e\u003e\n\u003e\n\u003e Is it safe to assume that this is also true for your secp256k1 implementation?\n\nI've done some preliminary work on making it leak less, but it's by no\nmeans guaranteed to be constant time either (so better assume it is\nnot).\n\n-- \nPieter",
"sig": "63f00859888ff67b717680ea373acd55831e40585166c09d518b1eb28bd3187e39e2e0e33b90315c1cc8639dc796f52455e25876e7469d87c611eea5b9bc2bb4"
}