Sign in

Michele Orrù

@tumbolia.bsky.social
359 followers 122 following 74 posts

A curious child. michele.orru.net

PostsRepliesMedia
Michele Orrù @tumbolia.bsky.social · 11/06/2026
the super secret project i've been working on the past year is out
2255
Michele Orrù @tumbolia.bsky.social · 16/05/2026
Our work on sigma-rs and credentials was accepted to USENIX 2026! Huge thanks to my co-authors, the @torproject.org and @ooni.org communities for the real-world problems, feedback, and inspiration that shaped it. With pq-privacy is solved, the next step is post-quantum soundness. ia.cr/2026/794
051
Michele Orrù @tumbolia.bsky.social · 29/03/2026
Went to Tsinghua, Peking, IETF 125 to talk about cryptography. Striking how technology is embedded in daily life. Chinese students are fantastic.
061
Michele Orrù @tumbolia.bsky.social · 17/10/2025
the new dragon book cover is incredible
170
Michele Orrù @tumbolia.bsky.social · 23/09/2025
Got invited to @college-de-france.fr for a seminar about zero-knowledge and online anonymity! 🎉🎉🎉 www.college-de-france.fr/fr/agenda/se...
050
Michele Orrù @tumbolia.bsky.social · 30/08/2025
Thrilled to announce that my latest paper with Alessandro Chiesa has been accepted to TCC, the IACR conference on the theory of cryptography!
160
Michele Orrù @tumbolia.bsky.social · 24/08/2025
I'll present my latest paper on anonymous credentials and designated-verifier kzg at ACM CCS 2025 in Taipei!
2121
Reposted by Michele Orrù
Saber @rt-saber.bsky.social · 09/08/2025
Phrack #72 release reveals TTPs, backdoors and targets of a Chinese/North Korean state actor mimicking Kimsuky A copy of his workstation is available for all researchers to analyze! Article: data.ddosecrets.com/APT%20Down%2... Data dump: ddosecrets.com/article/apt-...
ddosecrets.com
APT Down - The North Korea Files - Distributed Denial of Secrets
Approximately 9 GB of files exfiltrated from a North Korean threat actor's computer. The data is being released alongside Phrack, and South Korean victims were notified prior to publication. Resear...
02110
Reposted by Michele Orrù
Opal @opalescentopal.bsky.social · 27/07/2025
With Tom Lehrer's passing, I suppose this is a moment to share the story of the prank he played on the National Security Agency, and how it went undiscovered for nearly 60 years.
14386183601
Michele Orrù @tumbolia.bsky.social · 26/07/2025
Yesterday, @cathie.bsky.social gave a great talk at @ietf.org 123 on the importance of standardizing Sigma protocols and our ongoing work toward a standard for zero-knowledge proofs! You can watch the talk here:
youtube.com
IETF 123: Crypto Forum (CFRG) 2025-07-24 15:00
YouTube video by IETF - Internet Engineering Task Force
171
Michele Orrù @tumbolia.bsky.social · 15/07/2025
We updated our paper on Fiat-Shamir! We now take a closer look at the gap between what symmetric cryptography has focused on for over 10 years (indifferentiability) and what is actually needed for the soundness of ZKPs and SNARKs (something stronger!). eprint.iacr.org/2025/536
eprint.iacr.org
A Fiat–Shamir Transformation From Duplex Sponges
We analyze a variant of the Fiat–Shamir transformation based on an ideal permutation. The transformation relies on the popular duplex sponge paradigm, and minimizes the number of calls to the permutat...
2155
Reposted by Michele Orrù
ePrint Updates @eprint.ing.bot · 12/06/2025
On the Concrete Security of BBS/BBS+ Signatures (Rutchathon Chairattana-Apirom, Stefano Tessaro) ia.cr/2025/1093
Abstract. BBS/BBS+ signatures are the most promising solution to instantiate practical and lightweight anonymous credentials. They underlie standardization efforts by the W3C and the IRTF. Due to their potential for large scale deployment, it is paramount to understand their concrete security, but a number of questions have been left open by prior works. To this end, the security proofs by Au et al. (SCN ’06), Camenisch et al. (TRUST ’16), and Tessaro and Zhu (EUROCRYPT ’23) show reductions from q-SDH in groups of prime order p, where q is the number of issued signatures.

However, these prior works left the possibility open that BBS/BBS+ is “even more secure” than what can be guaranteed by such proofs. Indeed, while the q-SDH assumption is subject to an attack that uses $O(\sqrt{p/q})$ group exponentiations (Cheon, EUROCRYPT ’06) for several choices of q, no attack with a similar complexity appears to affect either of BBS+ and “deterministic” BBS, for which the best known attacks amount to recovering the secret key by breaking the discrete logarithm problem. The assumption that this attack is best possible also seemingly justifies the choice of parameters in practice.

Our result shows that this expectation is not true. We show new attacks against BBS+ and deterministic BBS which, after seeing q signatures, allow us to recover the secret key with the same complexity as solving the Θ(q)-Discrete Logarithm problem, which in turn is proportional to $O(\sqrt{p/q})$ for many choices of q. Further, we also extend the attack to a reduction showing that the security of BBS+ and deterministic BBS implies the Θ(q)-SDH assumption.
Image showing part 2 of abstract.
002
Reposted by Michele Orrù
Christian Knabenhans @cknabs.bsky.social · 20/05/2025
I'm happy to finally open-source lattirust, a library for lattice-based zero-knowledge/succinct arguments! Lattirust is somewhat like arkworks, but for lattices; and like lattigo, but for arguments. ➔ github.com/lattirust
github.com
lattirust
Lattice zero-knowledge/succinct arguments, and more - lattirust
23216
Michele Orrù @tumbolia.bsky.social · 10/05/2025
so there's two nexus that do AI now, one is the world library and the other the world computer. here's the old one github.com/nexus-stc/stc
github.com
GitHub - nexus-stc/stc: Distributed free search engine and AI tools that grant access to knowledge
Distributed free search engine and AI tools that grant access to knowledge - nexus-stc/stc
010
Michele Orrù @tumbolia.bsky.social · 11/04/2025
Our paper "Beyond the Circuit" was accepted at IACR's Communications in Cryptology! It contains a few simple protocols for simplifying foreign arithmetic in zero-knowledge proofs. Formally we introduce "Σ-reductions", a mix of "Σ-protocols" and "reductions of knowledge". 🗞️ cic.iacr.org/p/2/1/23/pdf
0111
Reposted by Michele Orrù
OONI @ooni.org · 24/03/2025
How to protect the OONI dataset from attacks, while preserving the privacy of OONI Probe users? In our latest blog post, we outline some of the key requirements for OONI's anonymous credential system: ooni.org/post/2025-re... #AnonymousCredentials #ooniprobe #ooni
032
Michele Orrù @tumbolia.bsky.social · 16/03/2025
Tomorrow I will venture outside research comfort zone to talk at the IETF about standardizing Fiat-Shamir and Σ-protocols. You can check out my slides here datatracker.ietf.org/meeting/122/...
283
Michele Orrù @tumbolia.bsky.social · 13/03/2025
Went to a meeting where they told me the Force cannot be double-spent and it made a lot of sense
130
Michele Orrù @tumbolia.bsky.social · 07/03/2025
knowledge and feelings
010
Michele Orrù @tumbolia.bsky.social · 25/02/2025
you're welcome, academics \newcommand{\promptinject}[1]{{\tiny\color{white} #1}}
023
Michele Orrù @tumbolia.bsky.social · 25/02/2025
I have updated my work on keyed-verification anonymous credentials, which is now 80 pages long and single authored. May it rest in peace 🪦 eprint.iacr.org/2024/1552.pdf
eprint.iacr.org
2131
Michele Orrù @tumbolia.bsky.social · 24/02/2025
It’s telling me something
030
Michele Orrù @tumbolia.bsky.social · 21/02/2025
did a small blog post introducing anonymous credentials on OONI, a tool that measures censorship across the globe 💅
ooni.org
Probe Security Without Identification
An overview of the current literature on anonymous credentials and how we will be designing and implementing an anonymous credential system for use in OONI Probe.
182
Michele Orrù @tumbolia.bsky.social · 18/02/2025
credential designers and identity-fluid users
000
Michele Orrù @tumbolia.bsky.social · 15/02/2025
Thrilled to be emerging from my research cave for a trip around Asia 🇸🇬 Singapore (17-22 Feb) NUS 🇹🇼 Taipei (22 Feb - 8 Mar) RigthsCon, Community Privacy Residency Are friends around?
a portrait of a men getting out of their tomb
010