3 ms·
And we've been working on that. * https://wiki.php.net/rfc/libsodium https://wiki.php.net/rfc/libsodium (PHP 7.2) * https://wiki.php.net/rfc/mcrypt-viking-fun
by CiPHPerCoder 9y ago
And we've been working on that.
* https://wiki.php.net/rfc/libsodium https://wiki.php.net/rfc/libsodium (PHP 7.2)
* https://wiki.php.net/rfc/mcrypt-viking-funeral https://wiki.php.net/rfc/mcrypt-viking-funeral (PHP 7.1)
* https://wiki.php.net/rfc/random-function-exceptions https://wiki.php.net/rfc/random-function-exceptions (PHP 7.0, largely the result of a mailing list discussion critiquing the original implementation of the new CSPRNG functions)
There is plenty more we want to work on in the coming months.
- mtgx 9y agoHow about Noise? http://noiseprotocol.org/ http://noiseprotocol.org/
- CiPHPerCoder 9y agoThat's more of a "open source library" goal of mine: https://github.com/paragonie-scott/public-projects/issues/6 https://github.com/paragonie-scott/public-projects/issues/6
- kpcyrd 9y agoAn overdue step would be an interface to execve that isn't based on a single string, but uses actual lists. I recall the python docs have a big red warning box that you can enable shell-style-single-string mode instead of a list, but it's highly dicouraged due to security problems. php has about 5 ways to execute programs, but all of them enforce this insecure interface.