Blog
My self is steam: Giuseppe Cocomazzi's blog Insights into computer security, programming and math
apl channel programming rsa secret side side channel apl openbsd cache poisoning consensus vulnerability duplicate rsa duplicate rsa moduli Latest posts "Trustless" bridges claim to allow secure asset exchange across chains even in the presence of malicious actors. However, we argue that truly trustless protocols based on commit-reveal schemes are actually impossible when at least one of the participants does not wait for block finality.
Apr 6, 2026 This article explores an observation in the use of BLS signature aggregation within a production blockchain.
Feb 25, 2026 Vulnerabilities in Merkle tree implementation used for hashing collections of objects, with an application to Omni Network.
May 7, 2025 Inductive Reasoning Considered Harmful for blockchain light clients.
Apr 17, 2025
Missing BLS12-381 Public Key Validation, and BLS12-381 Wrong Signature Generation in CometBFT
Oct 3, 2024 Ethereum consensus vulnerability.
Sep 19, 2024 CVE-2023-25000
Mar 30, 2023 CoreDNS might be vulnerable to cache poisoning attacks.
Mar 8, 2023 How to find side channel leaks in Java Cryptography Extension providers.
May 21, 2020 Statistical inference of Chebyshev's bias in RSA numbers.
May 3, 2020 Duplicate RSA moduli census and bash interpreter abuse in the way of Diogenes.
Dec 11, 2018 An account of CVE-2018-5548
Sep 11, 2018 Exploiting SQL injections when error messages are the only output.
Feb 27, 2018 A Secret You Own is a Secret You Pwn.
Jan 28, 2018 Literate programming in APL.
Aug 28, 2017 Porting of GNU APL to OpenBSD.
Aug 21, 2017
← Prev ✦ Random Next → Visit ↗ Feed Kagi ↗