3 ms·
For people reading this, you may want to know the the NSA is allegedly trying to weaken hybrid ML-KEM and X25519 down to just ML-KEM. This is a good thing to p
by purplehat_ 5mo ago
For people reading this, you may want to know the the NSA is allegedly trying to weaken hybrid ML-KEM and X25519 down to just ML-KEM. This is a good thing to pay attention to!
Here is a 6-part article about the topic: https://blog.cr.yp.to/20251004-weakened.html https://blog.cr.yp.to/20251004-weakened.html
- deleted 5mo ago[deleted]
- throw0101a 5mo ago> Here is a 6-part article about the topic: https://blog.cr.yp.to/20251004-weakened.html https://blog.cr.yp.to/20251004-weakened.html * https://news.ycombinator.com/item?id=45477206 https://news.ycombinator.com/item?id=45477206 * https://news.ycombinator.com/item?id=45477206#unv_45477799 https://news.ycombinator.com/item?id=45477206#unv_45477799 See various "NSA and IETF": * https://news.ycombinator.com/from?site=cr.yp.to https://news.ycombinator.com/from?site=cr.yp.to
- tptacek 5mo agoI haven't met a single cryptographer who takes this series of posts seriously and if you have I'd love to talk to them.
- trueno 5mo agois this insinuating that we, collectively, are not 100% confident that ML-KEM on it's own is going to be enough & deduct that the NSA wants the omission of X25519 as sort of a backdoor possibility?