openhub.net
Black Duck Software, Inc.
Open Hub
Follow @
OH
Sign In
Join Now
Projects
People
Organizations
Tools
Blog
BDSA
Projects
People
Projects
Organizations
B
bouncy Castle Java
Settings
1
I Use This!
×
Login Required
Log in to Open Hub
Remember Me
Very High Activity
Commits
: Listings
Analyzed
1 day
ago. based on code collected
2 days
ago.
Sep 27, 2025 — Sep 27, 2026
Showing page 2 of 794
Search / Filter on:
Commit Message
Contributor
Files Modified
Lines Added
Lines Removed
Code Location
Date
XMSS: move the XMSS and XMSS^MT JCE bindings to org.bouncycastle.jcajce.provider.asymmetric.xmss, promote the key interfaces to org.bouncycastle.jcajce.interfaces and the parameter specs to org.bouncycastle.jcajce.spec, and leave the org.bouncycastle.pqc.jcajce copies in place, deprecated and still accepted.
David Hook
More...
6 days ago
LMS: move the JCE bindings to org.bouncycastle.jcajce.provider.asymmetric.lms, promote the key interfaces to org.bouncycastle.jcajce.interfaces and the key generation parameter specs to org.bouncycastle.jcajce.spec, and leave the org.bouncycastle.pqc.jcajce copies in place, deprecated and still accepted.
David Hook
More...
6 days ago
Compute the TupleHash element length prefix in long arithmetic and refuse a negative length in left_encode / right_encode, relates to github PR #2462.
David Hook
More...
6 days ago
PKIX: apply the RFC 5280 sec. 6.3.3 (b)(2)(i) distribution point name match and the (d) reasons intersection when either PKIXCertPathReviewer picks a CRL, and report an exception rather than a null one when checkCRL skips every candidate.
David Hook
More...
6 days ago
OpenPGP: add PGPEncryptedDataList.extractSessionKeyEncryptedData(boolean) so a session key the caller recovered from a password is quick checked again, and use it on the high-level API's passphrase paths, relates to github #2459.
David Hook
More...
7 days ago
SM9: Cipher.SM9 decrypts in the mode it was configured with rather than the one the ciphertext's enType names, and neither data-encapsulation mode now produces or accepts a 16-byte C2.
David Hook
More...
7 days ago
PKCS12: generate the MAC key derivation salt for every write rather than keeping the one a loaded file carried, floor an inherited PBMAC1 PBKDF2 count at org.bouncycastle.pkcs12.pbkdf2_it_count, and latch nothing from a file that failed its MAC check, relates to github #2450.
David Hook
More...
7 days ago
Argon2: the generator zeroises each block before returning it to the BlockPool, so a custom pool neither has to clear nor can observe password-derived data, and getBlockCount() gives the number of blocks a run takes, relates to github #2452.
David Hook
More...
7 days ago
Merge branch 'main' of gitlab.cryptoworkshop.com:root/bc-java
David Hook
More...
7 days ago
CMS: pass the user keying material to HKDF as the salt as well as in the ECC-CMS-SharedInfo entityUInfo for the RFC 8418 key agreement schemes, as sec. 2.2 requires, relates to github #2454.
David Hook
More...
7 days ago
CRMF: add the RFC 4211 pkiPublicationInfo and oldCertID controls, a getControlValue() that reads the raw value of any control present, and JCA conveniences for the protocolEncrKey and oldCertID controls.
David Hook
More...
7 days ago
CRMF: reject the publication information RFC 4211 sec. 6.3 forbids - pubInfos present with the dontPublish action, or present and empty - on parsing and on construction.
David Hook
More...
7 days ago
CRMF: recognise the RFC 4211 protocolEncrKey control, naming the key a CA is to encrypt its response with, incorporating github PR #2443.
oliola
More...
7 days ago
pgsc: OpenPGPSmartCard.requireUserPin returns a clone, so the card operations' finally blocks clear a PIN of their own rather than the array the KeyPassphraseProvider still owns, and the smart-card AllTests runs its own unit tests.
David Hook
More...
7 days ago
pgsc: OpenPGP smart card signature support, with the raw sign and decrypt operations moved onto OpenPGPSmartCard so a backend can be emulated in software, incorporating github PR #2430.
Paul Schaub
More...
7 days ago
pg: machine-enforce that org.bouncycastle.openpgp.operator does not import org.bouncycastle.openpgp.api, the dependency running api to operator and not back.
David Hook
More...
7 days ago
pg: say in the javadoc of OpenPGPKeyGenerator.build(char[]) that it zeroizes the array it is passed, the one place in the API that clears a caller's.
David Hook
More...
7 days ago
pgsc: the YubiKey decryptor factories clear a clone of the card user PIN rather than the array the KeyPassphraseProvider still owns, incorporating github PR #2444.
arpansharma
More...
7 days ago
CMS: resolve the RFC 9709 key-derivation wrapper in one place per package, reporting an absent or unreadable content-encryption algorithm as the CMSException the callers declare.
David Hook
More...
7 days ago
CMS: resolve the RFC 9709 key-derivation wrapper to the content-encryption algorithm it carries before the recipient key-size, allowed-algorithm and tag-size checks, incorporating github PR #2446.
arpansharma
More...
7 days ago
Grain-128AEAD: report an output buffer too short for a processBytes() or processByte() call as an OutputLengthException, as the general AEAD path does, rather than letting the write run off the end.
David Hook
More...
7 days ago
Grain-128AEAD: write the second output segment of a chunked decryption after the first rather than over it, incorporating github PR #2447.
arpansharma
More...
7 days ago
docs/claude: note that the jdk1.4 preprocessor's generic stripping leaves a generic interface implemented with the type argument's signature overriding nothing.
David Hook
More...
7 days ago
ERS: the comparator SortedIndexedHashList sorts with takes Objects, as ByteArrayComparator beside it does, so it still implements Comparator once the legacy builds have stripped the type parameters.
David Hook
More...
7 days ago
ERS: the generator builds the leaves of its reduced hash tree once, dropping them when data or a previous chain is added, and no longer builds a set of data groups nothing reads.
David Hook
More...
7 days ago
ERS: a data group's hash is computed in calculateHash() again, so it comes from the ERSCachingData cache like every other data object's, and the copy loop that would have digested nothing is gone.
David Hook
More...
7 days ago
ERS: the sorted hash lists now sort a copy in toList() and answer getFirst() with a scan, so reading one no longer reorders it, relates to github #2456.
David Hook
More...
7 days ago
ERS: build the sorted hash lists by collecting and sorting once rather than finding each insertion point by walking a LinkedList with get(index), incorporating github PR #2457, relates to github #2456.
Radim Dejmek
More...
8 days ago
Fix PEMParser exception messages and javadoc
Peter Dettman
More...
8 days ago
JKSKeyStoreSpi: a store shorter than the SHA-1 checksum it ends with threw ArrayIndexOutOfBoundsException out of KeyStore.load; validateStream now checks the length against the checksum plus the 12-byte header and reports a truncated store as EOFException, with the jdk1.1 and jdk1.4 copies in step, relates to github #2451.
Peter Dettman
More...
8 days ago
←
1
2
3
4
5
6
7
8
9
…
793
794
→
This site uses cookies to give you the best possible experience. By using the site, you consent to our use of cookies. For more information, please see our
Privacy Policy
Agree