AES-GCM and breaking it on nonce reuse (
from tedu to cryptography on 12 Jun 2024 05:34

If you’ve ever worked with AES-GCM, you may have heard that reusing a nonce can lead to catastrophic security failures. In this post, we will look at how exactly all security guarantees of AES-GCM can be broken when a nonce is reused even once.

#cryptography #math

