Constant Time Testing

by trailofbits82fe82262526No license7.4K starsListed Oct 8, 2026Updated Oct 8, 2026Repository updated yesterday

Measures timing side channels in cryptographic implementations by running them, using dudect for statistical analysis and Timecop over Valgrind for dynamic tracing. Covers the formal, symbolic, dynamic, and statistical tool categories and how to read a result. Use when testing whether a running implementation is constant-time, measuring timing variance on a compiled binary, or investigating a suspected timing attack. Not for statically inspecting compiler output — the constant-time-analysis plugin covers that.

Only the file list is public. File contents are available once the skill is installed in a workspace.

PathSizeType
agents/openai.yaml247 Bapplication/yaml
assets/trail-of-bits-mark.svg3 KBtext/plain
SKILL.md21.4 KBtext/markdown

Source and attribution

Source:trailofbits/skillsinplugins/testing-handbook-skills/skills/constant-time-testingat commit82fe822

License: No license

Content belongs to its original authors. SourceWeft indexes it from a public repository.

Report or request removal