The cr.yp.to microblog: 2013.08.14 21:44:21

2013.08.14 21:44:21 (367733452138762243) from Daniel J. Bernstein, replying to "Dan Kaminsky (@dakami)" (367484701755207681):

http://cr.yp.to/antiforgery/cachetiming-20050414.pdf Section 4: "Adding noise [to cycle counts] does not stop the attack." It's also much harder than you think. @dakami

Context

2013.08.14 05:15:55 (367484701755207681) from "Dan Kaminsky (@dakami)":

http://cr.yp.to/antiforgery/cachetiming-20050414.pdf Oh, @hashbreaker. You stuck a cycle counter oracle _in your server_? LOLOL