Paul Crowley
Paul Crowley
Can you explain the difference in the calculation of Poly1305 in more detail? AFAICT RFC7539 is faithful to the original Poly1305 spec in this aspect: note the bit of the...
Is this really a loop expression? It doesn't loop.
Looks like they broke their URLs; the new URL is https://www.monkeypatch.io/blog/2021-05-31-rust-tui
In practice this is a security issue, not just a performance issue; without dedicated instructions, implementations of AES and GHASH generally use data-dependent table lookups which are vulnerable to timing...
https://docs.rs/bitvec/latest/bitvec/slice/struct.BitSlice.html#method.shift_right looks like this for me: 