Client adoption of TLS post-quantum key agreement to counter harvest-now/decrypt-later as seen by @Cloudflare over the years.
7
12
53
3,228
Bas Westerbaan retweeted
so happy with the @Cloudflare job, ngl before joining I thought the motto “help build a better internet” was just another mission statement, but ppl genuinely care about it and about transparency, asking themselves “does this help build a better internet?” when designing new features/products, and holding themselves to high ethical standards, loving it 🧡 and PS: really cool announcements coming up next week 🎂
5
8
148
4,770
Bas Westerbaan retweeted
the quantum thing is also coming faster than expected!
Don't panic. It's not a question whether RSA-1024 is broken, but who is willing to pay the roughly 30m$ for the bragging rights. RSA-2048 is fine... except for the quantum thing.
2
1
25
5,040
Apple announces plans for post-quantum root program adopting Merkle Tree Certificates. groups.google.com/a/chromium…
2
30
193
11,754
Don't panic. It's not a question whether RSA-1024 is broken, but who is willing to pay the roughly 30m$ for the bragging rights. RSA-2048 is fine... except for the quantum thing.
636606729769440499166579950236036751749912014371509557713570027508971809534551913252252094954941974952859310861988904737359709200557919 is a factor of RSA-896 saweis.net/posts/rsa-896.htm…
15
21
1,145
125,321
Bas Westerbaan retweeted
Can't post on the official Chinese forum about NGCC issues, so I made my own forum: ngcc.dev/reports/index.html
11
24
179
12,618
Bas Westerbaan retweeted
I have attacks on 14 candidates in the NGCC but they still have not approved me as poster. Anyway, zero postings by anyone thus far.
5
21
305
37,221
Bas Westerbaan retweeted
We're happy to announce that we finished version 3 of the FAEST signature scheme, which is our round 3 submission to the NIST Post-Quantum Cryptography: Additional Digital Signature Schemes process.
5
10
49
2,823
Bas Westerbaan retweeted
The lesson here for other infrastructure providers, and digital assets firms in particular: don't assume. Test. Only by confronting the potential problem empirically can we (a) develop technical solutions and (b) enable a real discussion on tradeoffs.
1
4
245
Bas Westerbaan retweeted
1.1.1.1 now validates DNSSEC signatures using NIST’s post-quantum ML-DSA-44 algorithm. Here is how we manage 2,420-byte signatures and downgrade risks at scale. cfl.re/4xsuOwg
35
133
891
54,970
What to do about post-quantum DNSSEC? Can we just shove in ML-DSA-44, do we need to make more systemic changes, or should we start writing a eulogy? There is only one way to find out: 1.1.1.1 now supports checking ML-DSA-44 (alg 18) signatures.
4
8
37
4,249
We also set up signed test zones at dnstest.dev. To get data from a diverse set of networks, we're sending probes from Cloudflare challenge pages. Read all about it in this blog post. We'll report back soon with data! blog.cloudflare.com/post-qua…
1
6
359
For the crypto aficionados a nice tidbit: downgrade protection is easier in DNSSEC, than TLS, but it does require validators to go against the recommended behaviour of RFC 6840.
1
6
239
Bas Westerbaan retweeted
btw I now work at @Cloudflare 🔥🔥🔥 Cryptography.
76
9
621
19,478
This is the kind of Grover that does scare me (from Silo season 4 trailer.)
5
716
Really excited for new Cloudflare hire starting next week—stay tuned!
1
1
61
4,940
Of the Tranco top 100k, of those domains with DKIM, 65% use RSA-1024. And 14% of those with DNSSEC use RSA-1024 (mostly ZSKs, but 0.6% KSK.)
1
8
1,054