Hacker News new | past | comments | ask | show | jobs | submit login

Performance is not a singular entity. It is very very hard to write sidechannel resistant code in Java, because of the performance characteristics.



The parent comment said that they need to write it in C in order for it to be fast enough for people to use it, which is false.

As for timing attacks, it's very very hard to write sidechannel resistant code in any language, I don't believe Java is particularly harder. C/C++ is not as deterministic as you would think.

http://blog.erratasec.com/2015/03/x86-is-high-level-language...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: