-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Ran into the Google OSS-Fuzz project. The project provides the Google
compute power for oss projects to run fuzzing on the code. Judging by
the list of projects libraries such as GnuTLS, OpenSSL, LibSSH and Curl
are being tested. Would it be worthwile to try and get Nettle accepted
as a project? Has anybody looked at OSS-Fuzz for Nettle?

https://github.com/google/oss-fuzz
https://github.com/google/oss-fuzz/tree/master/projects


Another imho interesting project Google project is Wycheproof. The
project tests crypto libraries against known attacks/issues such as
invalid curve attacks, biased nonces in digital signature schemes etc.
Right now there are 80 tests. The code is in Java and I don't know how
easy/hard it would be to connect Nettle to the test system. But at least
one could look at the tests and implement the same tests for Nettle.

https://github.com/google/wycheproof
https://github.com/google/wycheproof/tree/master/java/com/google/security/wycheproof/testcases

Has anybody looked at Wycheproof for testing Nettle?

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          [email protected]
========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=yz1M
-----END PGP SIGNATURE-----
_______________________________________________
nettle-bugs mailing list
[email protected]
http://lists.lysator.liu.se/mailman/listinfo/nettle-bugs

Reply via email to