Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
chc4
18 days ago
|
parent
|
context
|
favorite
| on:
NSA and IETF, part 3: Dodging the issues at hand
They're vulnerable to "High-S" malleable signatures, while ed25519 isn't. No one is claiming they're backdoored (well, some people somewhere probably are), but they do have failure modes that ed25519 doesn't which is the GP's point.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: