[Cryptech Tech] New testdata

Joachim Strömbergson joachim at secworks.se
Tue Dec 23 22:36:26 UTC 2014


Aloha!

MVH
JoachimS

> 23 dec 2014 kl. 22:42 skrev Russ Housley <housley at vigilsec.com>:
> 
> Joachim:
> 
>> Did you see the other posts by me and Fredrik about this?
> 
> yes.
> 
>> As far as we can judge, the frequency of repeated bytes is exactly what
>> one should expected. We see the exact same frequency for the avalanche
>> entropy provicer as wel as for 500 MByte from /dev/random in OSX.
> 
> I do not accept this explanation.  I would accept this if the repeated bytes were not _always_ proceeded by the same byte value two bytes before the repeat.  There do not seem to be repeats without this pattern.

I see repeats in the data without this pattern too. In data from rosc, avalanche, OS X and Linux.
Have you tested with other data? The exact type of pattern is present in other data too.


>> Do you have any idea why the STS tool flagged this pattern?
> 
> I'm not using the STS tool.

Oh, sorry, my bad.


More information about the Tech mailing list