From f430fe01af90e4f0b200e582a88829ba8be0d748 Mon Sep 17 00:00:00 2001 From: Bas Westerbaan Date: Fri, 10 Jan 2025 12:12:40 +0100 Subject: [PATCH] State more clearly --- draft-ietf-lamps-kyber-certificates.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/draft-ietf-lamps-kyber-certificates.md b/draft-ietf-lamps-kyber-certificates.md index b51281d..73d491d 100644 --- a/draft-ietf-lamps-kyber-certificates.md +++ b/draft-ietf-lamps-kyber-certificates.md @@ -358,7 +358,7 @@ Per {{KEMMY24}}, ML-KEM is LEAK-BIND-K-PK-secure and LEAK-BIND-K-CT-secure when using the expanded private key format, but not MAL-BIND-K-CT nor MAL-BIND-K-PK. Using the 64-byte seed format provides a step up in binding security, -providing MAL-BIND-K-CT, but still not MAL-BIND-K-PK. +additionally providing MAL-BIND-K-CT security, but still not MAL-BIND-K-PK. For more guidance, see {{?I-D.sfluhrer-cfrg-ml-kem-security-considerations}}. # IANA Considerations