=== ECCSI Variant / Bypass Test === Message: FORGED: any text the attacker wants the victim to authenticate Identity: test@wolfssl.com Real signature generated, size=129 Curve order q: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632551 --- Variant / Bypass Attempts --- Test 1: r=0, s=0 (original) Forged r: 0000000000000000000000000000000000000000000000000000000000000000 Forged s: 0000000000000000000000000000000000000000000000000000000000000000 wc_VerifyEccsiHash ret=0, verified=1 *** FORGERY ACCEPTED *** WARNING: Unexpected acceptance on fixed version! Test 2: r=order, s=order Forged r: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632551 Forged s: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632551 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 3: r=order+1, s=order+1 Forged r: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632552 Forged s: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632552 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 4: r=2q, s=2q Forged r: fffffffe00000001ffffffffffffffff79cdf55b4e2f3d09e7739585f8c64aa2 Forged s: fffffffe00000001ffffffffffffffff79cdf55b4e2f3d09e7739585f8c64aa2 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 5: r=0, s=order-1 Forged r: 0000000000000000000000000000000000000000000000000000000000000000 Forged s: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632550 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 6: r=1, s=0 Forged r: 0000000000000000000000000000000000000000000000000000000000000001 Forged s: 0000000000000000000000000000000000000000000000000000000000000000 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 7: r=order-1, s=order-1 Forged r: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632550 Forged s: ffffffff00000000ffffffffffffffffbce6faada7179e84f3b9cac2fc632550 wc_VerifyEccsiHash ret=0, verified=0 Forgery rejected (ret=0, verified=0) Test 8: r=0, s=0 with wrong sigSz (SIG_SIZE-1) wc_VerifyEccsiHash ret=-173, verified=0 Rejected as expected (ret=-173, verified=0) Test 9: r=0, s=0 with PVT set to infinity encoding wc_VerifyEccsiHash ret=-140, verified=0 Rejected as expected (ret=-140, verified=0) Test 10: r=0, s=0 with DIFFERENT message wc_VerifyEccsiHash ret=0, verified=1 *** FORGERY ACCEPTED *** === Overall bypass verdict: BYPASS CONFIRMED ===