Fork of the Go standard TLS library, providing low-level access to the ClientHello for mimicry purposes.
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.5...v1.6.6
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.4...v1.6.5
(*UConn).Read()
and Secure Renegotiation by @gaukas in https://github.com/refraction-networking/utls/pull/292
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.3...v1.6.4
Don't panic! This does not cause any significant security concern, since modern platforms are doing fine with limited randomness from math/rand
. This patch is for some much restrictive platforms such as WebAssembly -- on which math/rand
may generate deterministic output (e.g., same random number series from each cold start).
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.2...v1.6.3
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.1...v1.6.2
This is a security update fixing kyberslash2, a timing side-channel attack against CIRCL library used by uTLS.
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.6.0...v1.6.1
OmitEmptyPsk
field in PreSharedKeyExtension
(closes #255) by @sleeyax in https://github.com/refraction-networking/utls/pull/256
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.5.4...v1.6.0
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.5.3...v1.5.4
keySharesParams
by @gaukas in https://github.com/refraction-networking/utls/pull/238
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.5.2...v1.5.3
Full Changelog: https://github.com/refraction-networking/utls/compare/v1.5.0...v1.5.2