Media statement from Antigua and Barbuda on treaty with Joseon!
Read the full announcement,
https://t.co/wP9dSnkcFj
At Joseon, we are looking forward to doing great things through this treaty with Antigua and Barbuda.
If https://t.co/lLBUfIDzD8 collapses upon examination, lattice-based cryptographers will say "See, we dodged another bullet"; but aren't all the bullets more than a bit terrifying? Use the largest parameters you can afford; keep the ECC seatbelt; keep investing in alternatives.
I think that for secure software it's more useful than ever to measure, minimize, and verify the TCB. State a security goal (e.g. "my screen will show 'From: Alice' only for messages from Alice"); restructure software with a tiny nucleus enforcing this goal against all other LOC.
Daniel Apon in https://t.co/nray8Ht1az re eprint 2021/1093: "they took their shot at Dilithium and only just missed". Funny to watch Chris Peikert now insisting that people would never use such shooting language.
Assuming the poly hierarchy doesn't collapse: NP-completeness results for approx-CVP can't cross the wall in 2005 Aharonov-Regev (https://t.co/4e9FRRBCoc); FrodoKEM's approx-CVP problem is on the other side of that wall and will never be supported by an NP-completeness theorem.
Cross-posting Twitter+Mastodon results from my latest survey re timing of next exponent drop of isogeny costs after https://t.co/0cJd1oItSO: 52+7 predicted 2026-2030, 15+2 predicted 2031-2035, 3+2 predicted 2036-2040, 12+2 predicted 2041 or later or never.
A few people have asked about the Anthropic Hawk and AES cryptanalysis results. The top-level answer is: It’s very impressive. Three immediate comments on the actual results, old-school thread below.
All versions of HAWK rely on the supposed hardness of examples of "LIP", a problem whose Hamming-weight analog was broken decades ago by Sendrier in almost all cases. Here's my posting four years ago saying that the first "LIP" paper was setting off alarm bells.
PSA re "evade the attack": Don't try to patch HAWK to use another field. Just throw it away. There's a long line of earlier public-key proposals that (like HAWK) hoped for non-commutativity to add security and ended up _obscuring_ attacks without _stopping_ attacks.
Bernstein files a formal complaint against SSH chairs who tried to silence him
The SSHM chairs met an unanswered objection to solo post-quantum signatures with moderation threats instead of discussion. D. J. Bernstein's RFC 2026 complaint reads…
https://t.co/Xx6mZN2xRd
In the 90s somebody else exported PGP. Phil Zimmermann got harassed at the border and threatened with prosecution for it. That was the government's answer to good cryptography.
Featuring Daniel J. Bernstein: @hashbreaker
Full video in the thread 👇
Wow. After disenfranchising an unspecified list of people and making claims about the resulting numbers, the IETF TLS WG chairs refused to answer an evidence request from Fabiana Da Pieve, the European Commission's Team Leader Post-Quantum Cryptography: https://t.co/1p7mavXQSF
Can we get the IETF TLS WG chairs to help out with the U.S. elections? Allow votes only from pre-existing landowners plus the list of people who the chairs declare have demonstrated enough expertise to vote? Also, make sure to hide that list: https://t.co/TZk29VVSDi
Wait, I undercounted: NSA cast _six_ votes (Mike Jenkins, Nicholas Gajcowski, William Layton, Morgan Stern, Peter Yee from non-NSA address, Mark Motley from non-NSA address). Looking beyond NSA: DoD's Ann Krieger; DoD lifer Major Mike StJohns. Three GCHQ, two CSE, one partridge.
@TedBrownLiberty, the Libertarian nominee for U.S. Senate in Texas is joining Hide & Speak this Saturday, July 11 at 4pm ET to discuss digital privacy freedom.
More info and live link in thread 👇