Why not validate Curve25519 public keys could be harmful
vnhacker.substack.com
Update: see this post for a real world protocol that is broken if Curve25519 public keys are not validated. Update: comments on Twitter. Most users of Curve25519 believe that they don't have to validate public keys. I used to believe that too until I saw what could go wrong.
Why not validate Curve25519 public keys could be harmful
Why not validate Curve25519 public keys could…
Why not validate Curve25519 public keys could be harmful
Update: see this post for a real world protocol that is broken if Curve25519 public keys are not validated. Update: comments on Twitter. Most users of Curve25519 believe that they don't have to validate public keys. I used to believe that too until I saw what could go wrong.