Join the Conversation

2 Comments

  1. Discussion Questions:
    1. What is an invalid curve attack, and how does it exploit weak implementations?

    2. How does an invalid curve attack differ from a direct attack on the Elliptic Curve Discrete Logarithm Problem?

    3. What measures can be taken to prevent invalid-curve attacks?

    4. How can a strong mathematical algorithm become insecure when implemented incorrectly, and what does this teach us about the importance of secure software development?

    1. An invalid curve attack is a cryptographic attack against poorly implemented elliptic curve cryptography. The attacker takes advantage and tricks the victim into using points that are not actually on the intended curve

Leave a comment