avatar
David Buchanan @retr0.id

iiuc the constraints leading to this design were basically "we have a hardware AES engine and it can only do ECB or CBC"

aug 12, 2025, 2:22 pm • 0 0

Replies

avatar
Matthew Green @matthewdgreen.bsky.social

But if you have ECB you can do better than key wrap.

aug 12, 2025, 2:35 pm • 1 0 • view