头图

The cryptography open source project BabaSSL recently released the stable version 8.3.1, which fixes several bugs.

BabaSSL 8.3.1 mainly includes the following updates:

  • Modify the bug of EC-ElGamal
  • Fixed 2 bugs in the implementation of the SM2 signature algorithm [0x9527-zhou ]
  • Fix CVE-2022-0778

The download address of version 8.3.1: https://github.com/BabaSSL/BabaSSL/releases/tag/8.3.1

【Introduction to BabaSSL】

BabaSSL is an open source basic cryptographic library that provides modern cryptographic algorithms and secure communication protocols. It provides the underlying cryptographic basic capabilities for storage, network, key management, privacy computing and many other business scenarios, enabling data to be transmitted, used, stored, etc. Privacy, integrity and certifiability in the process, providing protection capabilities for privacy and security in the data life cycle. BabaSSL was born within Ant Group and Ali Group. Currently, as the unified basic cryptographic library of Ant and Ali, BabaSSL is widely used in various Ant and Ali businesses, providing key cryptography such as TLS, data storage, and national security compliance. The relevant capabilities ensure the smooth, safe and compliant operation of various businesses. BabaSSL will be open sourced in 2020, and will provide the industry with the cryptographic technical capabilities accumulated within Ant and Alibaba. At the same time, BabaSSL is applying for the first-level qualification of the commercial cryptographic product software cryptographic module, and it is also the first open source cryptography product expected to obtain the commercial cryptographic product model certificate. In addition to the field of national commercial cryptographic algorithms, BabaSSL also supports cutting-edge cryptography, including various cryptographic algorithms required in privacy computing scenarios and post-quantum cryptography algorithms for quantum computing.

As a rare open source cryptography project in China, BabaSSL fills the gap of related products in the domestic information infrastructure field. ring. BabaSSL adopts a fast follow-up strategy for new international and domestic technical standards, so the supported functions are very rich. At the same time, based on the massive user scenarios of Ant and Alibaba, its performance and stability have also reached the Internet production level. Therefore, since it was open sourced in 2020, it has also been used and verified by a large number of users in the industry, and has been applied to many business scenarios.


SOFAStack
426 声望1.6k 粉丝

SOFAStack™(Scalable Open Financial Architecture Stack)是一套用于快速构建金融级分布式架构的中间件,也是在金融场景里锤炼出来的最佳实践。