3 ms·
Has there been any research into compression that's generally safe to use before encryption? E.g., matching only common substrings longer than the key length wo
by panic 10y ago
Has there been any research into compression that's generally safe to use before encryption? E.g., matching only common substrings longer than the key length would (I think?) defeat CRIME at the cost of compression ratio.
- zielmicha 10y agoI'm working (finishing paper) on an algorithm compatible with deflate/gzip that is safe to use before encryption (i.e. it is guaranteed to not leak random secrets cookies). It's a bit more complex than your suggestion - matching common substrings longer than key length would still be vulnerable as substring boundary may still fall inside secret.
- cvwright 10y agoCool! Please post a Show HN with a link to your ePrint when it's done.