Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
some_furry
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
31.
▲
by
some_furry
3mo ago
Telecoms. I wrote at length about this debate in my blog post about threat modeling: https://soatok.blog/2026/06/30/soatoks-informal-guide-to-thr...
32.
▲
by
some_furry
3mo ago
Let me distill this down to its most basic structure to make sure I'm understanding you. Supoose we're trying to decide between two services for a long term group chat. Service A, on the server-side, sees all messages, in plaintex
33.
▲
by
some_furry
3mo ago
You mostly got it, yeah. Point 1, ECC is only also broken after Q-Day. Hybrids obviously help if you believe Q-Day is far into the future, or never coming. But if you take Q-Day happening as possible in our lifetime , the HNDL threat means
34.
▲
by
some_furry
3mo ago
It depends what I'm doing. My dayjob involves a lot of code review and protocol cryptanalysis, so I agonize quite a bit there. My blog would be less fun if I maintained the same level of rigor. If that makes any sense. ^^;
35.
▲
by
some_furry
3mo ago
> Err, where did you wrote that? I can’t find it in your last two articles. Just now. In an HN comment. I write in conversational English. I'm not always going to meticulously write everything like a formal argument might. If you di
36.
▲
by
some_furry
3mo ago
Read https://soatok.blog/2026/04/13/hybrid-constructions-the-post... for a longer explanation. The main thing I want to stress here is: I'm not anti-hybrid. Some people are. They tend to argue that less
37.
▲
by
some_furry
3mo ago
> Soatok seems unable to acknowledge that centralisation is a real (privacy, security, reliability, political, …) concern here, nor to see value in the decentralised (federated/P2P) alternative protocols implementing the same double
38.
▲
by
some_furry
3mo ago
I've posted on the Signal Discourse and even had a colleague ask the Signal devs at Real World Crypto this year about this missing feature. No dice on either approach.
39.
▲
by
some_furry
3mo ago
Maybe it's because I'm a bad writer, but I've heard from at least a half dozen people in recent years that they think I'm too pro-Signal when my actual stance wasn't "Signal is good" but rather "all
40.
▲
by
some_furry
3mo ago
> In your PQ safety blanket article https://soatok.blog/2026/04/13/hybrid-constructions-the-post... you make it pretty clear the reason you support hybrid is tactical, not cryptographic. What does it matte
41.
▲
by
some_furry
3mo ago
ML-KEM is faster than X25519. The only performance downside is public key/ciphertext size. https://quantumsecuritydefence.com/quantum-news/ml-kem-vs-x2...
42.
▲
by
some_furry
3mo ago
> you made the argument that we should abandon ECC by not doing hybrid, Where did I ever make that argument? In both TFA and my previous blog post, I've made it abundantly clear that I'm pro-hybrid. My argument is simply: 1. T
43.
▲
by
some_furry
3mo ago
Hi, I'm the author of this blog post! > there is also the likelihood that Q-Day never arrives, either because something we don't know prevents the construction of sufficiently large quantum computers (eg. quantum gravity) That
44.
▲
by
some_furry
3mo ago
Why would they use a backdoor that isn't NOBUS? And why would they still be migrating top secret communications towards the algorithm they (NOBUS or not) have a backdoor in? That doesn't sound very COMINT to me.
45.
▲
by
some_furry
3mo ago
> Why is it so important for this to be a standard if it is explicitly not recommended to implement at the time of standardization? This isn't a standard. It's not on the standards track! Words mean things! But to answer your q
46.
▲
by
some_furry
3mo ago
A NOBUS backdoor in an asymmetric primitive that looks like "X% of all keys is weak" would not explain "let's move the entire fucking federal governnent to this algorithm including implementations sourced by the private
47.
▲
by
some_furry
3mo ago
None of the NSA (or even ex-NSA) people I know have participated in this discussion at all. I imagine they're preoccupied with the current administratiom's stupid decisioms disrupting their work.
48.
▲
by
some_furry
3mo ago
The NSA isn't DJB's oppositiom here. It's the majority of the international community of cryptography experts.
49.
▲
by
some_furry
3mo ago
If you're reading this thread wondering why the IETF wants an informational (non-standards track), Recommended=N RFC that specifies how to use ML-KEM without ECDH, there's some important background reading. https://mail
50.
▲
by
some_furry
3mo ago
I recommend reading this perspective https://mailarchive.ietf.org/arch/msg/tls/SXo4iVmp0ng_vi57ce... Also, https://keymaterial.net/2025/11/27/ml-kem-mythbusting/ ML-KEM is
51.
▲
by
some_furry
3mo ago
Correct, I didn't mean to make it sound like they were foreign to iO overall. Just that the formalisms were in the blog post. (The iO research field, overall, is still pretty weird to me.)
52.
▲
by
some_furry
3mo ago
A friend once explained to me that the general goal of iO is basically DRM but with an inverted power dynamic: Imagine being able to deploy containers to cloud providers (AWS, GCP, etc.), whereby the Cloud provider cannot see what software
53.
▲
by
some_furry
4mo ago
https://hackernewstrends.com/?q=furries&q=furry Hmm, did I break something?
54.
▲
by
some_furry
4mo ago
The "everyone" in that statement needs a citation, I'm afraid
55.
▲
by
some_furry
4mo ago
Yeah, what's up with that? And how many VCs are considering following suit?
56.
▲
by
some_furry
4mo ago
Sure, but these are still Societies. Not the absence of a society, where utter lawlessness reigns. Most people's colloquial idea of anarchy is a Mad Max film. I'm not being dismissive at all of anything except the public's mi
57.
▲
by
some_furry
4mo ago
Making a throwaway account to "just ask a question" is a weird thing to do.
58.
▲
by
some_furry
4mo ago
> This is the thing I don't understand about (a superficial interpretation of) anarchists I think most superficial interpretations of anarchists are based on edgy LARPers rather than real political ideology. Fun fact: Anarchy means
59.
▲
by
some_furry
4mo ago
https://knowyourmeme.com/memes/stop-doing-math There is a meme that inspires some of this genre of title, fwiw
60.
▲
by
some_furry
4mo ago
No shit. It is a blog post, not an academic paper or Lean proof. My blog posts are supposed to be informal and conversational, not pure logic. If you want "ratioanl arguments", look elsewhere than personal blogs.
More ›