cryptohard

Faulty Mayo

srdnlen

Task: MAYO-2 post-quantum signature scheme with single-nibble binary patching allowed in signing function. Solution: Fault attack via x86-64 ModRM byte manipulation to leak secret Oil matrix rows, then forge valid signatures.

$ ls tags/ techniques/
nibble_fault_injectionsecret_key_recovery_via_linear_equationsmayo2_signature_forgingmodrm_byte_patchinggf16_linear_algebra

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]