Skip to content

Commit

Permalink
UG: Hyperlink Ripple20 and Amnesia:33
Browse files Browse the repository at this point in the history
  • Loading branch information
senier committed Nov 9, 2023
1 parent 550939b commit 7194d25
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion doc/user_guide/10-introduction.rst
Original file line number Diff line number Diff line change
Expand Up @@ -21,7 +21,7 @@ It is not possible to express or check precise invariants characterizing the des
Consequently, many implementations contain severe security vulnerabilities waiting to be discovered and exploited by malicious actors.

Using standardized formats and protocols and relying on widespread implementations with good quality assurance can help to lower the risk of zero-day exploits.
However, high profile vulnerabilities in commonly used protocol stacks, as found in Ripple20 or Amnesia:33, demonstrate that this by no means guarantees good security.
However, high profile vulnerabilities in commonly used protocol stacks, as found in `Ripple20 <https://www.jsof-tech.com/disclosures/ripple20/>`__ or `Amnesia:33 <https://www.forescout.com/research-labs/amnesia33/>`__, demonstrate that this by no means guarantees good security.

While standard implementations receive at least a certain level of scrutiny by the open source community and independent researchers, the situation is even worse for custom data formats and protocol implementations.
Specifications (if present at all) and implementations are often only reviewed by a few people.
Expand Down

0 comments on commit 7194d25

Please sign in to comment.