[noise] Potential forgery attack on "ee, ss" patterns

Karthikeyan Bhargavan karthik.bhargavan at gmail.com
Thu Jun 21 22:09:34 PDT 2018


Hi David,

No, of course, the spec does not promise that all syntactically valid patterns are secure.
This is why we’re looking for strange patterns that may be insecure, so that we can warn people away from them.

-Karthik

> On 22 juin 2018, at 02:52, David Wong <davidwong.crypto at gmail.com> wrote:
> 
> Is there anything in the spec that says that you can safely combine
> tokens and create a secure pattern? My impression was that the Noise
> spec underlines ways to create handshake patterns (secure or not) and
> that the spec specifically defines a subset of them along with the
> security properties they provide. And as you can see in the spec not
> all patterns are created equal.
> 
> David



More information about the Noise mailing list