|
|
|
|
|
by rjzzleep
3128 days ago
|
|
Wasn't there an issue with JWT that was summarized as this: "This is a good idea, but it doesn't solve the underlying problem: attackers control the choice of algorithm" ? Here's another quote from the Wireguard paper[1]: "Finally, WireGuard is cryptographically opinionated. It intentionally lacks cipher and protocol agility. If holes are found in the underlying primitives, all endpoints will be required to update" [1]: https://www.wireguard.com/papers/wireguard.pdf |
|
https://github.com/multiformats/multihash/blob/master/README...