Don’t overextend your Oblivious Transfer
blog.trailofbits.com | vulnerability | #cryptography | #vulnerability | #threshold-signatures | #oblivious-transfer | #mpc | #threshold-ecdsa
Summary
Trail of Bits found that selective abort attacks in the OT extension subprotocol can let a malicious threshold ECDSA participant recover other parties' secrets and ultimately the signing key.
- Published
- Collected
Skip to content