Skip to content

Fix timing leak in FrodoKEM decapsulation#303

Merged
thomwiggers merged 2 commits intomasterfrom
frodo-timing-leak
Jun 22, 2020
Merged

Fix timing leak in FrodoKEM decapsulation#303
thomwiggers merged 2 commits intomasterfrom
frodo-timing-leak

Conversation

@dstebila
Copy link
Copy Markdown
Member

As identified in: Qian Guo, Thomas Johansson, Alexander Nilsson. A
key-recovery timing attack on post-quantum primitives using the
Fujisaki-Okamoto transformation and its application on FrodoKEM. In
CRYPTO 2020.

Based on
microsoft/PQCrypto-LWEKE@155c24c

As identified in: Qian Guo, Thomas Johansson, Alexander Nilsson. A 
key-recovery timing attack on post-quantum primitives using the 
Fujisaki-Okamoto transformation and its application on FrodoKEM. In 
CRYPTO 2020.

Based on 
microsoft/PQCrypto-LWEKE@155c24c
@dstebila dstebila added the bug Something isn't working label Jun 19, 2020
@dstebila dstebila self-assigned this Jun 19, 2020
@thomwiggers
Copy link
Copy Markdown
Member

Can you also make a note in SECURITY.md?

@dstebila
Copy link
Copy Markdown
Member Author

Can you also make a note in SECURITY.md?

Done.

Copy link
Copy Markdown
Contributor

@mkannwischer mkannwischer left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@thomwiggers
Copy link
Copy Markdown
Member

Hopefully #298 will help fix the ARM32 timeout.

@thomwiggers thomwiggers merged commit bcb6864 into master Jun 22, 2020
@thomwiggers thomwiggers deleted the frodo-timing-leak branch June 22, 2020 09:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bug Something isn't working

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants