Paul Miller pfp
Paul Miller
@paulm
New vulnerability in elliptic.js allows attackers to extract private keys from signatures. This happened because fully deterministic signatures are not your friends. Check out my latest blog post describing the bug and prevention methods: https://paulmillr.com/posts/deterministic-signatures/
2 replies
16 recasts
71 reactions

Josh Dmuchowski pfp
Josh Dmuchowski
@jchow
Your blog is fantastic. This vulnerability is right up our alley at Hacken.io. Let’s chat - https://calendly.com/j-dmuchowski-hacken/30min
1 reply
0 recast
0 reaction

Paul Miller pfp
Paul Miller
@paulm
Hit me up on email for more credibility.
0 reply
0 recast
2 reactions