Cryptographer Nadim Kobeissi has accused maintainers of the RustSec advisory database and related Rust governance bodies of blocking or suppressing security advisories for vulnerabilities he reported in Rust cryptography libraries, including hpke-rs and libcrux-related code. He said one hpke-rs flaw could trigger AES-GCM nonce reuse, enabling plaintext recovery and message forgery, while another issue could cause denial of service. Kobeissi argued the affected code had downstream relevance to projects such as Signal, OpenMLS, Google, SSH, and the Linux kernel, and he escalated complaints to the Rust Moderation Team, Leadership Council, and later the Rust Foundation after being banned from Rust Project Zulip spaces.
The dispute has widened into a fight over both vulnerability severity and open-source governance. Cryspen acknowledged shortcomings in how advisories were handled but said bugs in its pre-release software were fixed within a week, while cryptographer Filippo Valsorda disputed Kobeissi’s characterization of the issues as broadly critical and said his conduct was disproportionate and potentially harassing. Reporting and commentary around the case have framed it as an integrity challenge for RustSec, with the controversy focusing on whether dangerous crypto flaws were downplayed and whether disclosure, moderation, and conflict-of-interest processes in the Rust ecosystem were handled properly.

See affected versions and whether adversaries are exploiting it.
5 events from the most recent confirmed update back to the earliest known activity.
Amid the disclosure dispute, Kobeissi was banned from Rust Project Zulip spaces. He characterized the action as retaliatory in subsequent complaints to Rust governance bodies.
Kobeissi accused RustSec maintainers and related Rust governance bodies of blocking or suppressing publication of advisories for the reported flaws. He then filed complaints with the Rust Moderation Team, the Leadership Council, and later the Rust Foundation, alleging retaliation, conflicts of interest, and Code of Conduct violations.
According to Cryspen, the reported bugs in its pre-release software were remediated within a week of being raised. This was presented as part of its response to criticism over how the advisories were handled.
Cryptographer Nadim Kobeissi reported security flaws affecting Rust cryptography libraries including hpke-rs and libcrux-related code. He said one hpke-rs issue could cause AES-GCM nonce reuse enabling plaintext recovery and forgery, and another could lead to denial of service.
Reports published in March 2026 brought the conflict into public view, describing both the alleged suppression of advisories and disagreement over the severity and impact of the reported cryptographic issues. Cryptographer Filippo Valsorda publicly disputed Kobeissi’s characterization of the flaws as broadly critical and criticized his conduct.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.