Hacker News new | ask | show | jobs
by nusl 902 days ago
I’m very surprised that folks are still building critical security software like this while making elementary mistakes like not using constant time operations. This is a class of vulnerability almost as old as I can remember.
1 comments

As seen below, this vulnerabilty was also present in the reference C Kyber code

https://symbolic.software/blog/2023-12-19-kyberk2sovariablet...