[Cryptography] Use of RDRAND in Haskell's TLS RNG?

Alexander Kjeldaas alexander.kjeldaas at gmail.com
Fri Nov 25 02:55:57 EST 2016


On Tue, Nov 22, 2016 at 10:19 PM, <dj at deadhat.com> wrote:

>
> I'd point you to a good book on extractor theory, but I haven't finished
> writing it yet, sorry and I can't make any guarantees as to whether or not
> it is good.
>
>
RDRAND is a marker that indicates which registers should be tagged,
followed, and later modified by malicious circuits.
So while using OS sources might add attack surface, so does having RDRAND
being the last source to mix.
Does extractor theory deal with this threat model?

Alexander
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20161125/cc24b023/attachment.html>


More information about the cryptography mailing list