zkcrypto / group

Elliptic curve group traits and utilities.
Other
91 stars 32 forks source link

Missing documentation about wNAF constant-timeness #47

Open leonbotros opened 1 year ago

leonbotros commented 1 year ago

The documentation is lacking whether or not the wNAF exponentiation is safe to use with secret exponents. I'm guessing it is not? Is everyone only using this for signature verification?