20
1

Security through transparency: ETH Zurich audits Bitwarden cryptography against malicious server scenarios

3mon 1d ago by mander.xyz/u/nemeski in bitwarden@discuss.tchncs.de from bitwarden.com

A new in-depth security report is available, continuing the Bitwarden commitment to transparency and trusted open source security. The audit, conducted by the prestigious Applied Cryptography Group at ETH Zurich, proactively tested Bitwarden core cryptography operations against the hypothetical event of a maliciously compromised server. All issues identified in the report have been addressed by the Bitwarden team and have been included in the attached cryptography report for full transparency.

Kudos for releasing the pdf report with the findings, not just a statement that they did a pentest.