4 ms·
I recommend reading Cryptography Engineering [0] and then re-evaluating the design and then get it audited. I took that path and I learned a ton and still had (
by dhaavi 4y ago
I recommend reading Cryptography Engineering [0] and then re-evaluating the design and then get it audited. I took that path and I learned a ton and still had (some smaller) issues in the audit.
[0] https://www.schneier.com/books/cryptography-engineering/ https://www.schneier.com/books/cryptography-engineering/
- aegistudio 4y agoSure. Thanks for the reference.
- FiloSottile 4y agoCryptography Engineering was great for its time but has been outdated for years, which in cryptography doesn’t mean “lacks fancy new stuff” but “we learned the hard way to do things differently”. Serious Cryptography and Real World Cryptography are commonly mentioned as successors.
- PYTHONDJANGO 4y agoYou forgot to mention a better source - please be constructive, thanks.
- dhaavi 4y agoThanks. Was not aware of that. I bought/read it in 2015, I think. I'll check out Serious Cryptography - just found out that I already have it! I like JP's approach to things and his bold thinking.