logoalt Hacker News

1970-01-01yesterday at 3:36 PM2 repliesview on HN

3DES has been broken for a decade. Nice job putting it all together though.


Replies

moribvndvsyesterday at 5:27 PM

> Is this a flaw in the cryptography itself? No. The underlying cryptographic algorithms (3DES and AES-128) remain secure. The vulnerabilities arise from:

Protocol design choices that allow unauthenticated memory writes after initial authentication Lack of atomicity when writing cryptographic keys across multiple memory pages Widespread misconfiguration in real-world deployments (unlocked memory, static keys) Non-NXP compatible chips with severely flawed random number generators

tptacekyesterday at 4:06 PM

It has? What exactly do you mean by that?

show 3 replies