• Aug 16, 2017
  • PIA Team
  • General Privacy News,

Libsodium v1.0.12 and v1.0.13 Security Assessment

Contents 1 Executive Summary2 Introduction2.1 Scope 2.2 Approach2.3 Classification and Severity Rating3 Findings3.1 Summary of Findings3.2 Overview of Cryptographic Design3.3 Static Analysis Results3.4 Dynamic Analysis Results3.5 Detailed Findings3.5.1 SD-01: Randomness source on Windows based on unofficial APIs only3.5.2 SD-02: Possible null pointer dereference in key exchange API3.5.3 SD-03: Potential issues with abort() to terminate program on … Continue reading “Libsodium v1.0.12 and v1.0.13 Security Assessment”

1

  • Aug 16, 2017
  • PIA Team
  • Announcements, Cybersecurity, General Privacy News,

Libsodium Audit Results

Private Internet Access today releases the results of its Libsodium audit. Libsodium is an open source, cryptographic library that is used far and wide in projects such as Zcash as well as internal applications at Private Internet Access. Private Internet Access is proud to have another audited tool in its software suite. The Libsodium security … Continue reading “Libsodium Audit Results”

0