top | item 11439338 (no title) janinge | 10 years ago I was referring to the padding attack. Did they patch this?And are there any property of MTProto that makes it infeasible to replace AES IGE in a later revision of the protocol? discuss order hn newest CiPHPerCoder|10 years ago The problem isn't IGE. It's that they're using SHA1 (not HMAC-SHA1) in a "MAC and Encrypt" construction.
CiPHPerCoder|10 years ago The problem isn't IGE. It's that they're using SHA1 (not HMAC-SHA1) in a "MAC and Encrypt" construction.
CiPHPerCoder|10 years ago