The Flat Network Society
hyperrealityApril 5, 2020, 11:54 a.m.

Very guessy challenge! We thought it was a variable length attack on AES-192 CBC-HMAC...

hyperrealityApril 5, 2020, 11:55 a.m.

Woops, I meant CBC-MAC.

PharisaeusApril 5, 2020, 7:39 p.m.

@hyperreality I agree that very guessy, but the flag for first one leaked that it's about nonce reuse, and length of the signature indicated ECC