Reposted by Tjerand SildeMiro Haller @mirohaller.bsky.social · 21/09/2026We finally finished the universal signature forgery for 1024-bit RSA! 2^32 oracle queries, 1200 core years precomputation, 180 core years for an individual forgery, and 3 years of human labor (no AI involved) by Laura, Adam, Nadia, Emmanuel and me to pull of this computation against real HSMs. 14019
Reposted by Tjerand SildeMichael A. Specter 👻 @mikespecter.com · 17/08/2026We also bought EncroChat's original domain (encrochat.ch) --- it now hosts our paper and other info.encrochat.chA Real-World Law-Enforcement Hack: The Case of Encrochat 0107
Reposted by Tjerand SildeKenny Paterson @kennyog.bsky.social · 15/08/2026Signal is the gold standard for secure messengers. We broke Signal’s integrity (twice) in this paper via message injection attacks. @kientuong114.bsky.social presented this week at #USENIX and he and Noemi will present it again at #WAC (Crypto workshop) this weekend. Catch their talk if you can! 02911
Reposted by Tjerand SildeMartin R. Albrecht @malb.bsky.social · 15/08/2026eprint.iacr.org/2026/1693 1214
Reposted by Tjerand SildeMatthew Green @matthewdgreen.bsky.social · 11/08/2026If you haven’t seen it, this new paper is great. They expand on a blog post I wrote that showed you could replay encrypted reasoning blobs from AI models. And they turned it into a full jailbreak. stolen-thoughts.comstolen-thoughts.comStolen ThoughtsEncrypted chain-of-thought blocks returned by Anthropic, OpenAI and Google APIs are interchangeable across sessions, users and models. We exploit this to decode hidden reasoning at scale. 210534
Reposted by Tjerand SildeSignal @signal.org · 11/08/2026Introducing Automatic Key Verification! Complementing the existing safety number system, automatic key verification provides an additional, streamlined way to confirm the privacy of your chats. signal.org/blog/automat... TY @cloudflare.social and @trailofbits.bsky.social our independent auditors 💙🙏signal.orgIntroducing Automatic Key VerificationSignal now offers a feature called “automatic key verification” which complements the existing safety number system. Signal is always end-to-end encrypted, and automatic key verification provides an a... 629178
Reposted by Tjerand SildeChris Peikert @chrispeikert.bsky.social · 02/08/20261/ Initial reactions after some hours with this groundbreaking result proving the NP-hardness of poly-approx CVP/NCP: It is most likely correct, but more importantly, it is original, elegant, and beautiful! (Also: it is easy to improve, quantitatively.) openai.com/index/ten-ad...openai.comTen advances in mathematics and theoretical computer scienceOpenAI shares new results on long-standing open problems in mathematics and theoretical computer science, including advances in geometry, cryptography, and complexity. 210328
Reposted by Tjerand SildeBas Westerbaan @bwesterb.bsky.social · 29/07/2026We support post-quantum authentication now to your origin. First place we deploy PQ certs: many more to come. blog.cloudflare.com/post-quantum...blog.cloudflare.comPost-quantum authentication to origins is now supportedCloudflare now supports post-quantum (PQ) authentication when connecting to customer origin servers via Authenticated Origin Pulls and Custom Origin Trust Store. This is the first step towards providi... 084
Reposted by Tjerand SildeHenry Yuen @henryyuen.bsky.social · 01/08/2026Some initial thoughts, and a complicated mix of feelings. Wow. I mean, Erdos problems are cool (I genuinely mean that), I didn't know about the Jacobian conjecture before it got disproved. But this newest batch from OpenAI hits home in a way the previous announcements did not. 232972
Reposted by Tjerand SildeHuck Bennett @huckbennett.bsky.social · 02/08/2026Yes, the result itself is very interesting (more on this below). From a skim, I agree with Noah that the paper is not well-written. Am I happy to see LLMs invade TCS? No, it's terrible. Is this the most impactful LLM result about lattices this week? Unclear. 1/ 1276
Reposted by Tjerand SildeChris Peikert @chrispeikert.bsky.social · 28/07/2026This is a very cool and exciting discovery by Claude Mythos! It found a serious 𝒎𝒂𝒕𝒉𝒆𝒎𝒂𝒕𝒊𝒄𝒂𝒍 attack on the post-quantum signature scheme HAWK, an "on-ramp" candidate for potential NIST standardization. www.anthropic.com/research/dis...anthropic.comDiscovering cryptographic weaknesses with ClaudeAnthropic researchers find weaknesses in cryptographic algorithms with Claude Mythos Preview 23218
Reposted by Tjerand SildeClément Canonne @ccanonne.github.io · 01/08/2026"We're all worried," as what it means to do research (in my field, Theoretical CS) seems to be shifting, and shifting fast. What to do? Senior researchers must lead by example, knowing that not everything will pan out. What I'm suggesting below may not work everywhere, but here's my own advice: 1/ 620351
Reposted by Tjerand SildeePrint Updates @eprint.ing.bot · 23/07/2026The supersingular isogeny problem in time and memory p^(1/3 + o(1)) (Benjamin Wesolowski) ia.cr/2026/1486 01511
Reposted by Tjerand SildeJim Waterson @jim.londoncentric.media · 23/07/2026*walks into room of mathematicians* Have you considered DOING A BREAKTHROUGH. 1348454
Reposted by Tjerand SildeBas Westerbaan @bwesterb.bsky.social · 09/07/2026Every year we write about the exciting developments in post-quantum signatures. Last year didn't disappoint. But it's too late. As ekr wrote in 2024 "You go to war with the algorithms you have, not the ones you wish you had." ML-DSA will have to do for now. blog.cloudflare.com/ml-dsa-will-...blog.cloudflare.comWhy we cannot wait for better post-quantum signature algorithmsNIST is advancing nine new post-quantum signature algorithms as potential candidates for future standardization. We take a closer look at all of them, and argue that while they are in the works and sh... 0116
Reposted by Tjerand SildeMartin R. Albrecht @malb.bsky.social · 01/07/2026A Real-World Law-Enforcement Hack: The Case of Encrochat martinralbrecht.wordpress.com/2026/07/01/a... 062
Tjerand Silde @tjesi.bsky.social · 11/06/2026The list of accepted papers to IACR Crypto 2026 is available online: iacr.org/cryptodb/dat...iacr.orgPapers from CRYPTO 2026 083
Reposted by Tjerand SildeePrint Updates @eprint.ing.bot · 31/05/2026BRaccoon: Concurrently Secure Blind Lattice Signatures from Raccoon (Lucjan Hanzlik, Mark Manulis, Marzio Mula, Alan Pulval-Dady, Tjerand Silde, Daniel Slamanig) ia.cr/2026/1084 031
Reposted by Tjerand SildeReal World Crypto Symposium @rwc.iacr.org · 28/05/2026The Call for Contributed Talks for the 2027 edition of the Real World Crypto Symposium 2027 is now open. If you’ve built, deployed, broken, measured, migrated, or learned something the community should hear about, submit it. rwc.iacr.org/2027/contrib...rwc.iacr.orgRWC 2027 call for papersReal World Crypto Symposium 097
Reposted by Tjerand SildeClément Canonne @ccanonne.github.io · 26/05/2026Congratulations to Tal Rabin, Shubhangi Saraf, and Lisa Zhang, recognized by the SIGACT Distinguished Service Award for their role in making Theoretical Computer Science more welcoming and inclusive with the Women In Theory (WIT) workshop! sigact.org/prizes/servi... (via @gautamkamath.com)sigact.org2025 ACM-SIGACT Distinguished Service Award 13412
Reposted by Tjerand SildeQuanta Magazine @quantamagazine.org · 12/05/2026Shafi Goldwasser (left), Silvio Micali (right), and Charles Rackoff devised a way to prove that a statement is true without revealing anything about why. www.quantamagazine.org/how-unknowab... 22610
Tjerand Silde @tjesi.bsky.social · 12/05/2026We have two openings at our Department of Information Security and Communication Technology at NTNU: Associate Professor in Cryptographic Engineering: www.jobbnorge.no/en/available... Professor/Associate Professor in Mobile and Computer Networks: www.jobbnorge.no/en/available... Apply by June 12! 032
Tjerand Silde @tjesi.bsky.social · 11/05/2026The list of accepted papers to SCN 2026 is available online: scn.unisa.it/scn26/index....scn.unisa.itSCN 2026 – List of Accepted PapersAuthorsTitleAnasuya Acharya, Carmit Hazay and Rahul SatishThe Landscape of Reusable GarblingFoteini Baldimtsi and Aayush YadavAtlantis: Lattice-based Anonymous Tokens with Private Metadata BitRober… 031
Tjerand Silde @tjesi.bsky.social · 11/05/2026The list of accepted papers to PKC 2026 is available online: pkc.iacr.org/2026/accepte...pkc.iacr.orgPKC 2026 accepted papersPublic Key Cryptography 042
Tjerand Silde @tjesi.bsky.social · 08/05/2026Very excited about the International Workshop on Foundations and Applications of Privacy-Enhancing Cryptography (PrivCrypt) that I am co-organizing with @drl3c7er.bsky.social and Lucjan Hanzlik as an affiliated event to IACR Eurocrypt in Rome this Sunday: privcryptworkshop.github.io/program.htmlprivcryptworkshop.github.ioPrivCrypt 2026 131
Reposted by Tjerand SildeFilippo Valsorda @filippo.abyssdomain.expert · 20/04/2026There are no technical or compliance reasons to double the size of symmetric keys in response to the threat of quantum computers. This common misunderstanding of Grover's algorithm risks wasting limited resources that should go towards deploying actually urgent post-quantum algorithms.words.filippo.ioQuantum Computers Are Not a Threat to 128-bit Symmetric KeysThere is no need to update symmetric key sizes as part of the post-quantum transition, due to the details of how Grover's algorithm scales. Most authorities agree. 312135
Reposted by Tjerand SildeSophie Schmieg @sophieschmieg.infosec.exchange.ap.brid.gy · 25/03/2026Objects in the quantum mirror are closer than they appear. blog.google/innovation-and-ai/techn…blog.googleQuantum frontiers may be closer than they appearAn overview of how Google is accelerating its timeline for post-quantum cryptography migration. 074
Reposted by Tjerand SildeFilippo Valsorda @filippo.abyssdomain.expert · 06/04/2026Two papers came out last week that suggest classical asymmetric cryptography might indeed be broken by quantum computers in just a few years. That means we need to ship post-quantum crypto now, with the tools we have: ML-KEM and ML-DSA. I didn't think PQ auth was so urgent until recently.words.filippo.ioA Cryptography Engineer’s Perspective on Quantum Computing TimelinesThe risk that cryptographically-relevant quantum computers materialize within the next few years is now high enough to be dispositive, unfortunately. 11303123
Reposted by Tjerand SildeSam Jaques @sejaques.bsky.social · 09/04/2026Overdue quantum landscape update: sam-jaques.appspot.com/quantum_land... A 2d chart can only say so much. tl;dr new results are still overhyped, but definitely worth taking seriously. This chart is based on surface codes and a big question now is whether new codes can be practical (=>useless chart) 15122
Reposted by Tjerand SildeMatthew Green @matthewdgreen.bsky.social · 13/03/2026The EU seems to be going in the right direction when it comes to mass message scanning. Unfortunately, the fact that this vote was necessary proves that we’re still in the dark timeline. cyberinsider.com/eu-votes-to-...cyberinsider.comEU votes to restrict mass scanning of people’s private messagesThe European Parliament has voted to curb untargeted mass scanning of private communications in the EU, in a key 'Chat Control' development. 47733
Reposted by Tjerand Sildecarmelatroncoso.bsky.social @carmelatroncoso.bsky.social · 02/03/2026Governments worldwide turn to age-based access control to Internet services to protect children. More than 370 scientists call for a moratorium until there is a good understanding of their feasibility, effectiveness, and societal impact: csa-scientist-open-letter.org/ageverif-Feb...csa-scientist-open-letter.org 1510
Reposted by Tjerand SildeHanne Østli Jakobsen @hannejakobsen.bsky.social · 27/02/2026Har vært på leting etter snill, trygg og ikke-amerikansk telefon. Jeg fant ut to ting: 1) At det er umulig å komme helt i mål, og hvorfor 2) Hvorfor det likevel er verdt å forsøke Håper du vil lese! Artikkelen er også blitt en slags podkast i lydutgaven, et eksperiment, om du heller vil lyttemorgenbladet.no(+) Jakten på en fri, snill og akkurat passe dum telefonVi vil bli fri, bryte de mobile livene våre vekk fra tekoligarkene og overvåkningsgigantene. Og det har aldri vært flere europeiske alternativer. Skal det være en Mudita eller en Dumbdroid eller en Jo... 2286
Reposted by Tjerand SildeFinn Lützow-Holm Myrstad @finnmyrstad.bsky.social · 27/02/2026Have you noticed that digital products and services are getting worse? So have we! Today we are publishing our new report, Breaking Free: Pathways to a fair technological future. vimeo.com/1168468796?f...vimeo.comThe EnshittificatorDigital products and services keep getting worse. In the new report Breaking Free: Pathways to a fair technological future, the Norwegian Consumer Council has delved… 48557
Tjerand Silde @tjesi.bsky.social · 23/02/2026Some accepted papers at IACR Eurocrypt 2026 are now available online: iacr.org/cryptodb/dat...iacr.orgPapers from EUROCRYPT 2026 042
Tjerand Silde @tjesi.bsky.social · 20/02/2026Published an opinion piece (in Norwegian) about PQC (yay) vs QKD (buu) in @digi.no today, together with @jonathan.isogeny.club, Kristian Gjøsteen (NTNU), Øyvind Ytrehus (UiB), and Morten Øygarden (UiB): www.digi.no/artikler/deb...digi.noSpekulativ kvanteteknologi løser ikke sikkerhetsproblemene våreKvantedatamaskiner kan i fremtiden knekke dagens kryptografi. Derfor må vi sikre at data som sendes i dag ikke kan leses av morgendagens angripere. 051
Reposted by Tjerand SildeDamien Robert @damienrobert.bsky.social · 20/02/2026I am very happy to announce that thanks to the hard work of many people (The "MIKE Team"), we now have a working implementation in SageMath of MIKE (Module Isogeny Key Exchange). 198
Reposted by Tjerand SildeETH CS Department @csateth.bsky.social · 17/02/2026A team of computer scientists from the Applied Cryptography Group, including Matteo Scarlata, Professor Kenny Paterson, Giovanni Torrisi and Matilda Backendal, have discovered serious security vulnerabilities in three popular cloud-based password managers. Read more ⬇️ 092
Tjerand Silde @tjesi.bsky.social · 12/02/2026My colleague Jeongeun Park has an open PhD position in Post-Quantum Cryptography for Privacy Preserving Protocols at NTNU in Trondheim with application deadline March 20: www.jobbnorge.no/en/available...jobbnorge.noPhD Candidate in Post-Quantum Cryptography for Privacy Preserving Protocols (295226) | NTNU - Norwegian University of Science and TechnologyJob title: PhD Candidate in Post-Quantum Cryptography for Privacy Preserving Protocols (295226), Employer: NTNU - Norwegian University of Science and Technology, Deadline: Friday, March 20, 2026 020
Tjerand Silde @tjesi.bsky.social · 05/02/2026I am co-organising (with @drl3c7er.bsky.social and Lucjan Hanzlik) a workshop on Privacy-Enhancing Cryptography in Rome on May 10 as an affiliated event to IACR Eurocrypt. Submit your best PEC-work (3-page extended abstract) for presentation by February 25th: privcryptworkshop.github.ioprivcryptworkshop.github.ioPrivCrypt 2026 1119
Reposted by Tjerand SildeMiro Haller @mirohaller.bsky.social · 19/01/2026Submission week for the Cryptographic Application Workshop (CAW), an affiliated event at Eurocrypt'26 in Rome! Please submit your talk proposals on constructive real-world crypto using the following instructions before Jan 23, 2026 AoE. All infos on: caw.cryptanalysis.fun. 187
Reposted by Tjerand SildeMartin R. Albrecht @malb.bsky.social · 13/01/2026Social Foundations of Cryptography: Autumn School London, UK | 15 to 17 September 2026 social-foundations-of-cryptography.gitlab.io/school 196
Reposted by Tjerand SildeMartin R. Albrecht @malb.bsky.social · 05/01/2026Come work with us! Lecturer (≅ Assistant Professor/Juniorprofessor/Maître de conférences) in Cryptography at King’s College London martinralbrecht.wordpress.com/2026/01/05/l...martinralbrecht.wordpress.comLecturer (≅ Assistant Professor/Juniorprofessor/Maître de conférences) in Cryptography at King’s College London 2026We are looking to recruit a lecturer in cryptography at King’s College London to work with us within the cybersecurity group: I think it’s fair to say we got strong expertise in lattice-based and p… 0106
Tjerand Silde @tjesi.bsky.social · 28/10/2025www.jobbnorge.no/en/available...jobbnorge.noProfessor/Associate Professor in Cybersecurity (287959) | NTNU - Norwegian University of Science and TechnologyJob title: Professor/Associate Professor in Cybersecurity (287959), Employer: NTNU - Norwegian University of Science and Technology, Deadline: Monday, December 1, 2025 000
Reposted by Tjerand SildeMatthew Green @matthewdgreen.bsky.social · 10/10/2025Germany has agreed to stop ChatControl for now, due to huge amounts of public pressure. Good job! The bad news is that it could come back as soon as December, and the German government has interpreted the feedback as a need to “moderate” the proposal. 114246
Reposted by Tjerand SildeIan Miers @secparam.bsky.social · 09/10/2025Discord user IDs getting leaked is the entirely predictable consequence of requiring platforms to do age verification. That data never goes away, it spreads. In this case, into appeals in a breached customer support database. And predictably, it can get worse. www.404media.co/the-discord-...404media.coThe Discord Hack is Every User’s Worst NightmareA hack impacting Discord’s age verification process shows in stark terms the risk of tech companies collecting users’ ID documents. Now the hackers are posting peoples’ IDs and other sensitive informa... 164
Reposted by Tjerand SildeDiego F. Aranha @dfaranha.bsky.social · 06/10/2025Someone please make me understand how Denmark can be at the same time freaking out about hybrid war with Russia AND pushing for government-mandated spyware as Chat Control. 182
Reposted by Tjerand SildeRosamunde Van Brakel @rosamundevb.bsky.social · 06/10/2025What is chat control? Good video explainer developed by @carmelatroncoso.bsky.social and team at Max Planck Institute for Security and Privacy #chatcontrol www.youtube.com/watch?v=-y2O...youtube.comWhat is Chat Control?YouTube video by Max Planck Institute for Security and Privacy 077