[Cryptography] What faults would you inject to test crypto mechanisms/protocols?

Peter Gutmann pgut001 at cs.auckland.ac.nz
Thu May 15 00:39:04 EDT 2014


Philipp =?iso-8859-1?Q?G=FChring?= <pg at futureware.at> writes:

>* Duplicate messages (for crypto protocols)

A way to do that is to change the sequence number in SSL/TLS/SSH, which is a
simple fault to inject.

Peter.


More information about the cryptography mailing list