| ▲ | vlovich123 2 hours ago | |
For anyone wondering why, test vectors only cover “did the encryption work”. It does not cover “did you maintain constant time guarantees” to prevent against side channel attacks as an example. Crypto is filled with all kinds of such pitfalls that aren’t covered by conformance tests. Hence “strong sign this is built by people who have no idea what they’re doing” is accurate. | ||