blog.trailofbits.com/2025/11/14/h...
#golng #crypto #cryptography #postquantum
blog.trailofbits.com/2025/11/14/h...
#golng #crypto #cryptography #postquantum
No cryptographer I know thinks ML-KEM was intentionally weakened, or knows any cryptographer who does.
Meanwhile, enthusiasts in issue trackers are all but certain.
It would be impressive if it wasn't sad and worrying.
No cryptographer I know thinks ML-KEM was intentionally weakened, or knows any cryptographer who does.
Meanwhile, enthusiasts in issue trackers are all but certain.
It would be impressive if it wasn't sad and worrying.
In a good way, I mean.
In a good way, I mean.
Attacking NIST SP 800-108
(AES-CMAC KDF in Counter Mode, Loss of Key Control Security)
Attacking NIST SP 800-108
(AES-CMAC KDF in Counter Mode, Loss of Key Control Security)