wultra/powerauth-crypto
469da6a2fb80
(2 days ago)
→
469da6a2fb80
(2 hours ago)
| Measure | Before | After | Change |
|---|---|---|---|
| Findings to address | 73 | 72 | -1 |
| Quantum-vulnerable locations | 84 | 83 | -1 |
| Quantum-safe locations | 21 | 30 | +9 |
| Key establishment | 2 | 2 | - |
| Files scanned | 287 | 293 | +6 |
Added
Present in the later scan and not in the earlier one.
| Finding | Assessment | Before | After |
|---|---|---|---|
ECDSA
JOSE algorithm declared in configuration · jose.algorithm
|
Quantum-vulnerable | 0 | 4 |
ML-DSA-65
JOSE algorithm declared in configuration · jose.algorithm
|
Quantum-safe | 0 | 5 |
ML-DSA-65
Classical signature algorithm through the JCA · java.signature
|
Quantum-safe | 0 | 2 |
ML-DSA-87
JOSE algorithm declared in configuration · jose.algorithm
|
Quantum-safe | 0 | 2 |
ML-DSA-65
Classical key pair generated through the JCA · java.keypairgenerator
|
Quantum-safe | 0 | 1 |
Count changed
The same finding, in a different number of places.
| Finding | Assessment | Before | After |
|---|---|---|---|
ECDSA
Elliptic-curve cryptography through BouncyCastle · java.bouncycastle.ec
|
Quantum-vulnerable | 16 | 11 |
Argon2
Password hashing or key derivation · java.kdf
|
Quantum-safe | 2 | 1 |
Unchanged
22 findings appear in both scans, in the same number of places. Each scan's own report lists them.