secrets icon indicating copy to clipboard operation
secrets copied to clipboard

Any plans to add protection against Specte?

Open oblique opened this issue 6 years ago • 1 comments

One way is what OpenSSH does, which is encrypting sensitive information with a random prekey of 16kb size. Because of the size, attacker is unlikely to retrieve prekey with the current attacks.

OpenSSH commit: https://github.com/openbsd/src/commit/707316f931b35ef67f1390b2a00386bdd0863568

oblique avatar Sep 03 '19 19:09 oblique

Yep. sodium_mshield was added to libsodium in a recent commit but has yet to be released. When it is, I'll incorporate it.

stouset avatar Sep 03 '19 19:09 stouset