1. 9bc6119 Add random delays to sha256 to protect against fault injection by Andrzej Kurek · 4 years, 9 months ago
  2. 5eba1d8 Merge pull request #3841 from AndrzejKurek/baremetal-rnd-in-range-fix by Andrzej Kurek · 4 years, 8 months ago
  3. 21f64d3 Merge pull request #3840 from AndrzejKurek/baremetal-aes-shuffling-2 by Andrzej Kurek · 4 years, 8 months ago
  4. c5b0c6e fix uninitialized variables by Shelly Liberman · 4 years, 9 months ago
  5. 18c60aa ccm: use random_in_range instead of duplicating its functionality by Andrzej Kurek · 4 years, 9 months ago
  6. a138c0a Move size checks outside of mbedtls_platform_random_in_range by Andrzej Kurek · 4 years, 9 months ago
  7. 560203a Merge pull request #3853 from kjbracey-arm/m_narrowloop by Shelly Liberman · 4 years, 9 months ago
  8. a967a58 [baremetal] Avoid narrow loop counters etc by Kevin Bracey · 4 years, 9 months ago
  9. 585e9e0 Add MBEDTLS_SSL_CONF_TRANSPORT by Kevin Bracey · 4 years, 9 months ago
  10. d859db8 Fix MBEDTLS_SSL_CONF_ENDPOINT flagging by Kevin Bracey · 4 years, 9 months ago
  11. 8b0910a Merge pull request #3815 from AndrzejKurek/cipher-optim-mem-fix by Andrzej Kurek · 4 years, 9 months ago
  12. 0fa427b ccm: add masking to the UPDATE_CBC_MAC macro by Andrzej Kurek · 4 years, 9 months ago
  13. 8bef87e Add basic shuffling and masking to CCM operations by Andrzej Kurek · 4 years, 9 months ago
  14. 28b3b29 ssl_tls.c: Fix unchecked memory allocation by Andrzej Kurek · 4 years, 10 months ago
  15. 2e49d07 Describe the behaviour of buffer resizing on an out-of-memory error by Andrzej Kurek · 4 years, 10 months ago
  16. cd9a6ff Introduce additional flags for buffer upsizing and downsizing by Andrzej Kurek · 4 years, 10 months ago
  17. 79db2f1 Refactor the buffer resize feature to reduce codesize by Andrzej Kurek · 4 years, 10 months ago
  18. f384495 Sideport the variable IO buffer size feature to baremetal by Andrzej Kurek · 4 years, 10 months ago
  19. dd5ad69 Merge pull request #3785 from AndrzejKurek/m_tinycrypt_asm by Andrzej Kurek · 4 years, 10 months ago
  20. db0e50e Introduce MBEDTLS_OPTIMIZE_TINYCRYPT_ASM by Andrzej Kurek · 4 years, 10 months ago
  21. f4d2c7d Improve FI resistance of pk verification in ssl_cli.c by Andrzej Kurek · 4 years, 11 months ago
  22. f74a86c Improve FI resistance of certificate verification in ssl_srv.c by Andrzej Kurek · 4 years, 11 months ago
  23. ef34494 ssl_srv.c: change the initial return variable value by Andrzej Kurek · 5 years ago
  24. ff51721 ssl_tls: reduce the complexity of encryption validation by Andrzej Kurek · 5 years ago
  25. 8ec9e13 ssl_tls: Add a flag indicating that encryption succeeded by Andrzej Kurek · 5 years ago
  26. 6c30be8 ssl: call signature verification twice for non-restartable operations by Andrzej Kurek · 5 years ago
  27. 69bafce Improve the FI resistance in ssl_tls.c key switching by Andrzej Kurek · 4 years, 11 months ago
  28. f7df0d3 Reduce the size of used constant in ssl_tls.c by Andrzej Kurek · 4 years, 11 months ago
  29. a793237 Calculate hashes of ssl encryption and decryption keys by Andrzej Kurek · 4 years, 11 months ago
  30. d81351b Change the default value of initialized cipher operation to NONE by Andrzej Kurek · 4 years, 11 months ago
  31. 73680ad Merge pull request #3694 from AndrzejKurek/transform-cipher-optimization by Andrzej Kurek · 4 years, 11 months ago
  32. 1175044 Merge enc/dec cipher contexts in ssl transforms by Andrzej Kurek · 4 years, 11 months ago
  33. 05beb9a replace user rand by platform rand in ecc delays by Shelly Liberman · 5 years ago
  34. 9539f83 Swap out CRC calculation in AES in favour of a simple hash by Andrzej Kurek · 5 years ago
  35. 8bb0839 Add a deprecated version of mbedtls_platform_memcmp. by Andrzej Kurek · 5 years ago
  36. c87e91c Merge pull request #3553 from AndrzejKurek/crc-calculation-base by Andrzej Kurek · 5 years ago
  37. 305a5ec Checking in critical places if secured memset() and memcpy() was successful by Piotr Nowicki · 5 years ago
  38. ea8e846 Add flow monitor for mbedtls_platform_memcpy() and mbedtls_platform_memmove() by Piotr Nowicki · 5 years ago
  39. a6348ed Checking in critical places if the mbedtls_platform_zeroize() was successful by Piotr Nowicki · 5 years ago
  40. ed840db Add flow montitor to the mbedtls_platform_memset() by Piotr Nowicki · 5 years ago
  41. 26c3369 Fix CI failure. by Piotr Nowicki · 5 years ago
  42. 057daa3 Random delay can be disabled in configuration by Piotr Nowicki · 5 years ago
  43. 77b7a77 Expanded the random number generator in the `platform_util.c` file by Piotr Nowicki · 5 years ago
  44. 8656fc6 Change the value type in the mbedtls_platform_random_in_range() by Piotr Nowicki · 5 years ago
  45. fa635df Merge pull request #3448 from piotr-now/platform_util by Piotr Nowicki · 5 years ago
  46. 8fba6e9 Merge pull request #3532 from AndrzejKurek/fi-hmac-drbg-fixes by Andrzej Kurek · 5 years ago
  47. 0305753 Merge pull request #3477 from AndrzejKurek/aes-fake-key by Andrzej Kurek · 5 years ago
  48. e3c4ee5 Rename mbedtls_platform_memcmp() to mbedtls_platform_memequal() by Piotr Nowicki · 5 years ago
  49. e4f865d Makefile: alphabetically order object files by Andrzej Kurek · 5 years ago
  50. fba5921 aes: validate keys using crc before encryption/decryption by Andrzej Kurek · 5 years ago
  51. 9df2b41 Add a CRC module to mbedtls and baremetal config by Andrzej Kurek · 5 years ago
  52. c6319a7 Merge pull request #3514 from shelib01/fi_write_user_data by Shelly Liberman · 5 years ago
  53. 3799fc1 Splitting buffers comment added by Shelly Liberman · 5 years ago
  54. c6a7e6b Enhancement fixes by Shelly Liberman · 5 years ago archive/fi_write_user_data fi_write_user_data
  55. 4062d6c Add user pointer and data size duplication to ssl context. by shelib01 · 5 years ago
  56. e9cb642 Merge pull request #3516 from AndrzejKurek/fi-pkparse-changes by Andrzej Kurek · 5 years ago
  57. 7400fae Merge pull request #3510 from AndrzejKurek/fi-pk-fixes by Andrzej Kurek · 5 years ago
  58. 898d330 Merge pull request #3500 from AndrzejKurek/fi-sha256-fixes by Andrzej Kurek · 5 years ago
  59. 84afe68 Merge pull request #3509 from AndrzejKurek/fi-x509-changes by Andrzej Kurek · 5 years ago
  60. 4353b69 hmac_drbg: make no reseeding behaviour explicit by Andrzej Kurek · 5 years ago
  61. fac2f9b aes: move the fake key operations to AES_SCA_COUNTERMEASURES define by Andrzej Kurek · 5 years ago
  62. f626544 hmac_drbg: fix default value of the prediction resistance in ctx by Andrzej Kurek · 5 years ago
  63. 6bc37fa hmac_drbg: set_entropy_len can now return an error by Andrzej Kurek · 5 years ago
  64. 9167aa9 hmac_drbg: change two variables to be volatile by Andrzej Kurek · 5 years ago
  65. e78775e Use a fake random key in AES calculations by Andrzej Kurek · 5 years ago
  66. 8917326 Introduce sha256 security review fixes by Andrzej Kurek · 5 years ago
  67. 3403969 Add a comment regarding remaining space check by Andrzej Kurek · 5 years ago
  68. a9a5ff5 aes: add a comment about expected keybits value. by Andrzej Kurek · 5 years ago
  69. 11ddf25 Add minor FI countermeasures improvements by Andrzej Kurek · 5 years ago
  70. 189ee74 Add a platform function to return a random uint32_t by Andrzej Kurek · 5 years ago
  71. 3ed65d2 Add a return from pk_get_ueccpubkey if uecc_public_key_read_binary fails by Andrzej Kurek · 5 years ago
  72. a798e5d Introduce additional buffer size checks to pk.c by Andrzej Kurek · 5 years ago
  73. ddc2db4 x509.c: Remove one unnecessary cast by Andrzej Kurek · 5 years ago
  74. afec885 Revert a part of the sensitive information duplication changes by Andrzej Kurek · 5 years ago
  75. c417c78 Merge pull request #3481 from AndrzejKurek/fi_duplicate_buffers_2 by Andrzej Kurek · 5 years ago
  76. 45e7199 Minor formatting and cosmetic changes by Andrzej Kurek · 5 years ago
  77. ca60937 Add buffer and context clearing upon suspected FI by Andrzej Kurek · 5 years ago
  78. 0919b14 Formatting changes by Andrzej Kurek · 5 years ago
  79. 84bde41 Add FI countermeasures to the ssl module by Andrzej Kurek · 5 years ago
  80. 74f7d0f Duplicate sensitive buffer and buffer length information by Andrzej Kurek · 5 years ago
  81. a24c841 Merge pull request #3439 from piotr-now/fic_switch by Shelly Liberman · 5 years ago
  82. 78fc139 Add FI countermeasures for sensitive switch instructions by Piotr Nowicki · 5 years ago
  83. 77647bd Wrap AES 192 and 256 info structures in !AES_ONLY_128_BIT_KEY_LENGTH by Andrzej Kurek · 5 years ago
  84. 98c847a Merge pull request #3395 from AndrzejKurek/sha-flow_ctrl by Andrzej Kurek · 5 years ago
  85. e5425a0 Merge pull request #3408 from AndrzejKurek/hamming-distance-improvements by Andrzej Kurek · 5 years ago
  86. f523c47 Merge pull request #3403 from piotr-now/sca_memmove by Piotr Nowicki · 5 years ago
  87. ce0aab4 Add new error code PLATFORM_ALLOC_FAILED for mbedtls_platform_memmove() by Piotr Nowicki · 5 years ago
  88. 78f77eb Add flow control to sha256 by Andrzej Kurek · 5 years ago
  89. 5d5841f Add mbedtls_platform_memmove() as a secured memcmp() by Piotr Nowicki · 5 years ago
  90. e048b91 Add returning a FAULT_DETECTED error on suspected FI attacks by Piotr Nowicki · 5 years ago
  91. 8f52a8a Improve the Hamming distance of ssl_hs_is_proper_fragment return values by Andrzej Kurek · 5 years ago
  92. b06ec05 Add comment for mbedtls_platform_random_delay() by Piotr Nowicki · 5 years ago
  93. 478b05c Merge pull request #3355 from AndrzejKurek/fi_error_codes by Andrzej Kurek · 5 years ago
  94. fd56f40 Change the default value of status variables to an error by Andrzej Kurek · 5 years ago
  95. e071e42 Merge pull request #3336 from piotr-now/baremetal_flowmon by Piotr Nowicki · 5 years ago
  96. f0ab6d6 Added some descriptions of functions by Piotr Nowicki · 5 years ago
  97. 13bebd0 Keep SSL context const when hw accel is disabled by Manuel Pégourié-Gonnard · 5 years ago
  98. 731d7c0 Fix lack of cookie check on hard reconnect by Manuel Pégourié-Gonnard · 5 years ago
  99. 4aaa34c Add flow monitor protection to mbedtls_platform_memcmp() by Piotr Nowicki · 5 years ago
  100. 825ebd4 Merge mbedtls 2.16.6 into baremetal by Andrzej Kurek · 5 years ago