#
rfc9382
Here are 3 public repositories matching this topic...
Browser-based SPAKE2/SPAKE2+ demo — RFC 9382/9383. Same handshake, same session key — the difference appears when the server leaks. SPAKE2 stored the password: the attacker is now the client. SPAKE2+ stored a verifier: the attacker gets an offline dictionary attack. Real M/N masking over P-256. No backends. No simulated math.
cryptography spake2 pake p256 key-exchange crypto-lab password-authentication rfc9383 rfc9382 augmented-pake password-authenticated-key-exchange spake2-plus balanced-pake
-
Updated
Jul 16, 2026 - TypeScript
Improve this page
Add a description, image, and links to the rfc9382 topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the rfc9382 topic, visit your repo's landing page and select "manage topics."