Search
Tuesday, September 02, 2014 ..:: Home ::.. Register  Login
 Forum Minimize
 
  The Forum of CryptoChat 4 Skype  CryptoChat 4 Sk...  ADVICE ...  The crypto in cryptochat4Skype needs work
Disabled Previous
 
Next Next
New Post 10/20/2008 10:36 PM
Informative
  rearden
1 posts
No Ranking


The crypto in cryptochat4Skype needs work 

I was excited to see a skype extra which added an additional layer of encryption to skype chat, unfortunately I question the implementation of the cryptography.  The implementation is always the problem, even if standard algorithms are used.  Anyway I believe that cryptoChat4skype is open to a given plaintext attack, at the very least.  The same plaintext gives nearly the same text output.  This is a pretty large weakness.

Please don't implement your own crypto library, use existing and debugged ones and integrate it into the skype API.  I want to encourage the creation of a chat crypto overlay, but a well implemented one is extremely difficult, please open your code to peer review and have people who know crypto go over it throughly and repeatedly.  Heck, even Zimmerman made some huge mistakes in the early days of pgp (bassomatic).

rearden

 1 Reports
Disabled Previous
 
Next Next
  The Forum of CryptoChat 4 Skype  CryptoChat 4 Sk...  ADVICE ...  The crypto in cryptochat4Skype needs work

 Print   
Copyright 2006 - 2012 by SOFT & ARTS - Luca Formica   Terms Of Use  Privacy Statement
DotNetNuke® is copyright 2002-2014 by DotNetNuke Corporation