Episode 23: Psychic Signatures in Java!

Episode 23: Psychic Signatures in Java!

Nadim and Lucas talk to Neil Madden about his discovery of the "Psychic Signatures" vulnerability in Java, allowing attackers to completely bypass cryptographic signature checks in Java platforms in highly sensitive security contexts.
53 Minuten
Podcast
Podcaster
In-depth, substantive discussions on the latest news and research in applied cryptography.

Beschreibung

vor 2 Jahren
On April 19th 2022, Neil Madden disclosed a vulnerability in many
popular Java runtimes and development kits. The vulnerability,
dubbed "Psychic Signatures", lies in the cryptography for ECDSA
signatures and allows an attacker to bypass signature checks
entirely for these signatures. How are popular cryptographic
protocol implementations in Java affected? What's the state of Java
cryptography as a whole? Join Neil, Nadim and Lucas as they
discuss. Music composed by Yasunori Mitsuda. Special Guest: Neil
Madden.

Kommentare (0)

Lade Inhalte...

Abonnenten

15
15