xorhash

413 posts

xorhash banner
xorhash

xorhash

@xorhash

Applied cryptography. Occasional infosec and ancient UNIX facts. DMs always open. Signify pubkey: RWRiJk1/ZiS/OSnKOjZaSAu1ySSQkwy27E2TJB3Ad1Rol5bKxk2GHI3V

Katılım Eylül 2015
44 Takip Edilen59 Takipçiler
xorhash
xorhash@xorhash·
@ezekgabrielse @keygen_sh Has this non-RSA cryptography stuff gone anywhere? I don't seem to see anything in the documentation other than RSA with PKCS#1 v1.5. (I also noticed you've removed the notice that you're hiring. I hope you found a good employee!)
English
1
0
0
0
xorhash
xorhash@xorhash·
@keygen_sh Out of curiosity: Is there any particular reason why you use RSA for the offline validation? ECC would give shorter signatures, which given offline contexts would probably be more convenient for manual human input. (Also why is PKCS#1 v1.5 padding still not dead...)
English
0
0
0
0
xorhash
xorhash@xorhash·
@oconnor663 As far as I know, BLAKE3 has a trivial native MAC mode though and HopMAC for K12 specified in draft-irtf-cfrg-kangarootwelve-04 needs double invocation of K12. I'm not aware of there being an officially condoned, performant alternative to HopMAC.
English
2
0
0
0
Jack O'Connor
Jack O'Connor@oconnor663·
@cryptodavidw @zooko The best comparison I know of is our graphs in the BLAKE3 paper. K12 and B3 have very similar peak throughput on x86. Currently the official implementation of B3 leads by a bit. B3's advantage is larger for short inputs, and on 32-bit systems.
English
3
1
2
0
David Wong
David Wong@cryptodavidw·
The world of hash functions is annoying af: SHA-3 is standardized, but Argon2 uses BLAKE2, but there is BLAKE3, but Ed25519 uses SHA-2, but...
English
4
0
17
0
xorhash retweetledi
Tanja Lange
Tanja Lange@hyperelliptic·
I am very sad to learn that Harold (Ed) Edwards has died last Tuesday. legacy.com/obituaries/nyt… Among other achievements in mathemaics, Ed discovered Edwards cuvers as a new normal form of elliptic curves. These are _the_ Edwards curves behind Ed2215 & EdDSA.
English
1
48
121
0
Shiny Quagsire
Shiny Quagsire@ShinyQuagsire·
Hedging my bets on my lab's coding standard by adding a comment acknowledging the fact that memset(structPtr, 0, sizeof(*structPtr)) is technically against the standard, but refusing to define the 0 on principle
English
4
0
6
0
xorhash
xorhash@xorhash·
Anybody have good recommendations for a book on Win32 in the sense of a programmer's manual? May be as old as covering Windows XP SP2.
English
0
0
0
0
xorhash
xorhash@xorhash·
NIST actually released NIST SP 800-208 "Recommendation for Stateful Hash-Based Signature Schemes". Right after even the NSA told them that stateful hash-based signatures are a bad idea. csrc.nist.gov/publications/d…
English
1
1
0
0
xorhash retweetledi
Josh Baron
Josh Baron@JoshuaWBaron·
Fascinating: NSA made a public comment on QKD, quantum crypto (QC), and post quantum crypto. Short version: They aren’t fans of QKD or QC, they like lattice-based crypto, they don’t like hash-based signatures. nsa.gov/News-Features/…
English
5
65
97
0
xorhash
xorhash@xorhash·
You know, I was wondering if the post-quantum cryptography competition didn't drag on too long, but now I'm not sure if it isn't actually too short.
English
0
0
1
0
xorhash
xorhash@xorhash·
A curiosity I learned about today: X-Face. The X-Face e-mail header contained a 48x48 black-and-white picture with the idea of showing the author's face. Anybody aware of this still being used for, well, anything? en.wikipedia.org/wiki/X-Face
English
1
0
0
0
xorhash
xorhash@xorhash·
Occasional reminder to make backups.
English
0
0
1
0
xorhash retweetledi
Ninji (has moved)
Ninji (has moved)@_Ninji·
I have to say, I’m really impressed with how Microsoft has recently embraced open-source technologies like Rust
Ninji (has moved) tweet mediaNinji (has moved) tweet mediaNinji (has moved) tweet media
Glasgow, Scotland 🇬🇧 English
59
626
2.8K
0
xorhash
xorhash@xorhash·
@dakoraa @veorq So does the list of safe examples. When's the last time the masses have used Poly1305 on its own (outside of a pre-specified AEAD) safely?
English
2
0
5
0
xorhash
xorhash@xorhash·
May your soul rest in peace, longcat.
English
0
0
0
0
xorhash retweetledi
Daniel J. Bernstein
Daniel J. Bernstein@hashbreaker·
New paper "A discretization attack": #categories" target="_blank" rel="nofollow noopener">cr.yp.to/papers.html#ca… Identifies another NSA-exploitable weakness in standardization processes. Includes a detailed case study of how #NISTPQC could hypothetically have been attacked, and evidence suggesting that it was in fact attacked.
English
2
42
100
0