From 7132e2b0f31ca0520465baf3caa75650c5b1bf2f Mon Sep 17 00:00:00 2001 From: Mattias Andrée Date: Sun, 19 Jun 2016 01:54:49 +0200 Subject: doc: vulnerabilities concerning cryptographic applications MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: Mattias Andrée --- man/libzahl.7 | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) (limited to 'man') diff --git a/man/libzahl.7 b/man/libzahl.7 index 66208b9..c57800d 100644 --- a/man/libzahl.7 +++ b/man/libzahl.7 @@ -53,6 +53,12 @@ You are strongly discouraged from using .B libzahl for cryptographic applications. Instead, use a library specifically targeting cryptography, otherwise, your -program may be subject to side-channel attacks. +program may be subject to side-channel attacks such as +timing attacks, power-monitoring attacks, electromagnetic +attacks, acoustic cryptanalysis, and data remanence +attacks. +.B libzahl +is known to be susceptible to timing attacks and data +remanence attacks. .SH SEE ALSO .BR zsetup (3) -- cgit v1.2.3-70-g09d2