Skip to content

Switch to RFC 8032 for signatures #271

@dchest

Description

@dchest

Currently tweetnacl.js is a port of the original djb's tweetnacl. The original Ed25519 has some footguns when the signatures are used in protocols that expect other properties than unforgeability under chosen-message attacks:

RFC 8032 fixes them, and most implementations switched to it. This would be a breaking change, thus 2.0.

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions