Wendigo

Results 10 issues of Wendigo

Vulnerabilities found in this post https://www.hindawi.com/journals/scn/2022/4862571/ . Suggestions for improvement: As described in Section [3](https://www.hindawi.com/journals/scn/2022/4862571/#analysis-of-shadowsocks(r)-encryption-mechanism), the attacker can obtain user parameters by capturing network traffic and traversing parameters. Once the...

minor bugfixes

Some performance fixes and check return value of StringFromGUID2

Dont working blocking incoming calls from not stored contacts Poco F2 Pro MIUI 13 Android 12

bug

I found an article that describes VeraCrypt volume detection. Maybe some attention should be paid to the possibility of plausible deniability? https://www.raedts.biz/forensics/detecting-truecrypt-veracrypt-volumes/

enhancement

@idrassi Here is a discussion about getting PIM and Hash from encrypted data. https://www.forensicfocus.com/forums/general/get-hash-algorithm-and-pim-from-veracrypt-encrypted-device/

bug

Removed the default values for the algorithms. The default values attack first. https://blog.elcomsoft.com/2021/06/breaking-veracrypt-obtaining-and-extracting-on-the-fly-encryption-keys/

Fixed the memory clearing function a little bit

In KeePassXC project: https://github.com/keepassxreboot/keepassxc/pull/10618 Maybe we should do the same?

The Password Hashing Competition had some worthy participants: Catena, Lyra2, Makwa and yescrypt. Maybe they should be added to Botan?

enhancement