Conversation
Notices
-
Embed this notice
feld (feld@bikeshed.party)'s status on Friday, 06-Oct-2023 05:37:45 JST feld They thought 2^40 + 2^40 = 2^80 instead of 2^41. Possibly a malicious error they hoped nobody would notice as it's weaker than alternatives proposed
That's about all you need to know-
Embed this notice
Dan Goodin (dangoodin@infosec.exchange)'s status on Friday, 06-Oct-2023 05:37:46 JST Dan Goodin Yesterday, Daniel J. Bernstein published a paper alleging that Kyber-512, an encryption algorithm selected as a NIST post-quantum contender, wasn't nearly as secure as its stewards say. The gist is that NIST either intentionally or unintentionally made basic math errors that inflated its security level and has spent the rest of the time since covering up the problem.
The post is 17,000 words long! Has anyone read it and if so, can you send me the cliff notes?
-
Embed this notice