[Cryptography] Heartbleed and fundamental crypto programming practices

Joachim Strömbergson Joachim at Strombergson.com
Tue Apr 15 04:13:00 EDT 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Jerry Leichter wrote:
> I've seen comments over the years that crypto- (and all 
> security-)related programming should not be left to "general" 
> programmers with no domain expertise.  I'm not aware of any attempt 
> to collect a list of "issues and programming techniques a crypto 
> programmer must know".  Might be useful to have.... -- Jerry

I haven't seen anyone in the thread mentioning the Cryptography Coding
Standard effort started by Jean-Philippe Aumasson of Blake, Siphash fame:

https://cryptocoding.net/index.php/Cryptography_Coding_Standard

Might be a good starting point and probably appreciates comments and
contributions.

- -- Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.22 (Darwin)
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=Dr1J
-----END PGP SIGNATURE-----


More information about the cryptography mailing list