Fredrik Dahlgren

@fegge.bsky.social

Cryptography and static analysis @ Trail of Bits

There we go. US Gov tightens post-quantum cryptography transition deadlines for high-value systems to 2030 for key exchange and 2031 for signatures. Also, speeding up the CMVP (FIPS 140 validation) processes. That’s how you know the rush is real. The quantum computers are (potentially) coming.

Securing the Nation Against Advanced Cryptographic Attacks

By the authority vested in me as President by the Constitution and the laws of the United States of America, it is hereby ordered: Section 1.  Background

whitehouse.gov

Folkhälsomyndighetens generaldirektör fick sparken då hon satte käppar i hjulet för regeringens försök att finansiera statsministerns hustrus verksamhet i herrgården hon fått från friskolelobbyn: www.aftonbladet.se/nyheter/a/Gx... Har Sverige någonsin haft en så korrupt regering?

Skeptisk till ”existentiell hälsa” – fick sparken från myndigheten

Statsministerns fru meddelade att hon ville arbeta med ”existentiell hälsa” på sin herrgård. Ett halvår senare gav regeringen Folkhälsomyndigheten i uppdrag att

aftonbladet.se

The Workshop on Attacks in Cryptography 8 (WAC8) website is finally up, and our call for talks is open. Submit your cool cryptanalysis before July 3! We'll also invite speakers. If you had a favorite cryptographic attack from the last two years that we should invite, please put it in the comments.


call for talks

WAC accepts proposals for contributed talks. Submissions will be evaluated based on their relevance to the following topics:
- Cryptanalysis of deployed cryptography
- Cryptanalysis of recently suggested cryptographic schemes or primitives
- New cryptoanalytic techniques
- Systems attacks breaking cryptography or bypassing underlying assumptions

Please include the following information in your contributed talk submission.
- Title.
- Description of the talk content, including: short abstract (to be published on the website on talk acceptance), and one of the following three: extended abstract describing the talk. [preferred option], a full paper and a short description of which aspects the talk will focus on. slides for a presentation, together with either speaker notes or a short outline of the non-visual content of the talk.
- Speaker information: Name, Affiliation, Short bio (to be published on the website on talk acceptance), A brief description of the relevant experience of the speaker, e.g. links to previous talks.

Submit your proposal by email to the organizers at wac@cryptanalysis.fun by July 3, 2026 AoE.

Do you want to see the "big picture" on climate change? Here it is. Emissions are on the left, and include CO2, CH4, N2O, and f-gases. Natural CO2 sinks (from healthy forests & oceans) are on the right. And carbon removal, what little there is, is on the right, too. All expressed as GWP100.

Bild

There are no technical or compliance reasons to double the size of symmetric keys in response to the threat of quantum computers. This common misunderstanding of Grover's algorithm risks wasting limited resources that should go towards deploying actually urgent post-quantum algorithms.

Quantum Computers Are Not a Threat to 128-bit Symmetric Keys

There is no need to update symmetric key sizes as part of the post-quantum transition, due to the details of how Grover's algorithm scales. Most authorities agree.

words.filippo.io

“You shouldn't transition to post-quantum because you are confident quantum computing will happen; you should only avoid transitioning because you are confident quantum computing will not happen, and none of the experts are confident in that anymore.”

Sam Jaques@sejaques.bsky.social · 4mo ago

Overdue quantum landscape update: sam-jaques.appspot.com/quantum_land... A 2d chart can only say so much. tl;dr new results are still overhyped, but definitely worth taking seriously. This chart is based on surface codes and a big question now is whether new codes can be practical (=>useless chart)

A cluttered and complicated chart relating qubit counts to qubit error rates, comparing today's devices to cryptographic attacks.

UPDATE: The European Parliament voted today to *end* untargeted mass scanning of private communications, firmly rejecting the error-prone and unconstitutional surveillance practices of recent years! Next: trilogue negotiations w/ Commission and Council.