Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

LibreSSL's PRNG is Unsafe on Linux

$
0
0
The first version of LibreSSL portable, 2.0.0, was released a few days ago (followed soon after by 2.0.1). Despite the 2.0.x version numbers, these are only preview releases and shouldn't be used in production yet, but have been released to solicit testing and feedback. After testing and examining the codebase, my feedback is that the LibreSSL PRNG is not robust on Linux and is less safe than the OpenSSL PRNG that it replaced.

more here...........https://www.agwa.name/blog/post/libressls_prng_is_unsafe_on_linux

Viewing all articles
Browse latest Browse all 8064

Trending Articles