Verder naar navigatie Doorgaan naar hoofdinhoud Ga naar de voettekst

Public Report – RustCrypto AES/GCM and ChaCha20+Poly1305 Implementation Review

26 februari 2020

door Jennifer Fernick

In December 2019, MobileCoin engaged NCC Group to conduct a review of the AES/GCM and ChaCha20+Poly1305 implementations provided by the RustCrypto/AEADs crates. The intended usage context of these crates includes SGX enclaves, making timing-related side channel attacks relevant to this assessment. Two consultants provided five person-days of effort. The Public Report for this audit may be downloaded below.

Jennifer Fernick

Jennifer Fernick

Jennifer Fernick is the Global Head of Research at NCC Group. She can be found on Twitter at @enjenneer.