Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Test attack scenarios #28

Closed
lmars opened this issue Jan 7, 2015 · 1 comment · Fixed by #49
Closed

Test attack scenarios #28

lmars opened this issue Jan 7, 2015 · 1 comment · Fixed by #49

Comments

@lmars
Copy link
Contributor

lmars commented Jan 7, 2015

The client tests need improving to cover the attack scenarios discussed in section 1.5.2 of the TUF spec (there are some good examples in the Python test suite).

@lmars
Copy link
Contributor Author

lmars commented Jan 13, 2015

These are now covered with the exception of "Slow Retrieval Attacks" (see #48).

rdimitrov pushed a commit to rdimitrov/go-tuf that referenced this issue Jan 25, 2024
…heupdateframework#28)

Bumps [github.com/sigstore/sigstore](https://github.com/sigstore/sigstore) from 1.5.2 to 1.6.0.
- [Release notes](https://github.com/sigstore/sigstore/releases)
- [Commits](sigstore/sigstore@v1.5.2...v1.6.0)

---
updated-dependencies:
- dependency-name: github.com/sigstore/sigstore
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
rdimitrov pushed a commit that referenced this issue Jan 29, 2024
Bumps [github.com/sigstore/sigstore](https://github.com/sigstore/sigstore) from 1.5.2 to 1.6.0.
- [Release notes](https://github.com/sigstore/sigstore/releases)
- [Commits](sigstore/sigstore@v1.5.2...v1.6.0)

---
updated-dependencies:
- dependency-name: github.com/sigstore/sigstore
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant