If you generated a wallet using Libbitcoin's Bitcoin Explorer, including as described in the appendix to Mastering Bitcoin, your funds are at risk (or already stolen).
Full details: milksad.info/
Next version of Bouncy Castle will also include CRYSTALS-Kyber, CRYSTALS-Dilithium, Falcon, and other algorithms! It is available as beta right now at downloads.bouncycastle.org/b… 🎉. A great way to experiment (with care!) with the schemes being standardized by NIST.
BC Java 1.71 is now available for download. Addition of PQC Classic McEliece, FrodoKEM, and SABER. All in PQC provider with SPHINCS . Additions to OpenPGP and ETSI ITS as well. Improvements and bug fixes. See bouncycastle.org/latest_rele…
In this preprint, in order to counter the Castryck-Decru attack (and derivatives), we suggest to use a fixed degree, but then mask only the torsion point information. How do we do that and why is this worth exploring? A thread! 1/n
It works!!
Here's a @sagemath implementation of the SIDH Key Recovery attack of Castryck and Decru.
Huge thanks to @oudomphe. Their insights allowed us to directly compute the image of points in the Jacobian through divisors. No Gröbner needed!
github.com/jack4818/Castryck…
Congratulations to @meshcollider , who successfully defended his PhD thesis "Key Exchange and Zero-Knowledge Proofs from Isogenies and Hyperelliptic Curves" this morning.
This paper got less attention than I thought it would. Among its claims is that BIP32 (used extensively by Bitcoin but also many other blockchains) offers 91 bits of security. I always assumed some low n?<128, but not so low. Given BIP32 is a decade old it was overdue for review.
when reading text in a non-native language & wondering how it's pronounced, u can enter this in devtools to have the browser pronounce it:
u=new SpeechSynthesisUtterance(getSelection().toString());u.lang='ru-RU';speechSynthesis.speak(u)
(replace 'ru-RU' with any BCP 47 tag)
An alpha version of my coinswap project is released!
lists.linuxfoundation.org/pi…
Doesnt have all the features yet, but works on regtest, signet and mainnet
Imagine a new privacy tech for bitcoin, like coinjoin, but cant be blocked b/c the txes look exactly the same as regular txes
PhD Thesis submitted✅🎉
Has been a great journey, thank you @EllipticKiwi for your excellent supervision!
Now the wait for the examiners' reports begins 😎
Two of my students submitted their theses in the last few days. MSc student Pabasara Athukorala wrote on groups of unknown order and Sutherland's algorithm. PhD student Samuel Dobson @meshcollider on isogenies and groups of unknown order.
I do wonder why anyone thinks that it’s a good idea to not just fix a bug the moment you become aware of it. Bug-tracking systems have always struck me as weird. Don’t track them; fix them.