Matthew Green

@matthewdgreen.bsky.social

I teach cryptography at Johns Hopkins. https://blog.cryptographyengineering.com

I feel like we’re going to look back at that time in summer 2026 when we thought it was so surprising that models could find new mathematical results that we still wrote Twitter threads about it. I wonder what life will be like then.

1/ Initial reactions after some hours with this groundbreaking result proving the NP-hardness of poly-approx CVP/NCP: It is most likely correct, but more importantly, it is original, elegant, and beautiful! (Also: it is easy to improve, quantitatively.) openai.com/index/ten-ad...

Ten advances in mathematics and theoretical computer science

OpenAI shares new results on long-standing open problems in mathematics and theoretical computer science, including advances in geometry, cryptography, and complexity.

openai.com

Vanderbilt has done a thing where they announce their commitment to “intellectual freedom” by kowtowing to the Trump administration’s dictation on what Universities should think about. Predictably, the usual folks in SV think it’s great. www.vanderbilt.edu/declaration/

Declaration

The University and Its Purpose: A Declaration of First Principles was adopted by the Vanderbilt University Board of Trust in June 2026. The declaration is organized around three core purposes: Pathbre...

vanderbilt.edu

All these mathematicians typing “solve famous open conjecture” and getting results, meanwhile I can’t get Fable to even consider most of the dumb cryptography questions I’d like to solve. And when I manage to get one through, it sticks crayons up its nose.

I’ve been working on a hobby project to crack classical ciphers. The guts of it is to see whether frontier LLMs, given the right tools, can do a good job cracking a broad range of historical ciphers. github.com/matthewdgree...

GitHub - matthewdgreen/decipher: An AI-enabled application for cracking ciphers

An AI-enabled application for cracking ciphers. Contribute to matthewdgreen/decipher development by creating an account on GitHub.

github.com

What kills me about this story is that Meta’s public CSAM scanning clearly does not work, if they’re delivering ads for CSAM content. But this failure will be used as evidence that we need to add scanning for private and encrypted messages. www.bbc.com/news/article...

India: Instagram running ads promoting child sexual abuse material, BBC finds

The ads use terms including “rape” and “child video” and link to content on the messaging app Telegram.

bbc.com

I don’t think people should panic based on anything djb has written recently. But I do agree with his conclusion that ECC hybrids are a good idea. I also do continue to be skeptical of the “ECC hybrids are just too hard to get right” arguments.

Dems' "Project 2029" first major policy proposal: an online child safety plan — narrowing Sec. 230, banning social media for kids under 16, promoting phone-free childhoods and more. Already backed by Cory Booker, Mikie Sherrill, Randi Weingarten + Jonathan Haidt. LMAOOOOOOOOOOOOOOOOOOO.

Bild

One of my beefs with (research) cryptography is that people are overindexing on quantum threats. We finally got crypto to the point where we can do things efficiently, and now we need to rip it all up and switch to lattice schemes at 11,000x the cost.

So apparently anyone with a license plate number can submit it to most DMVs to obtain detailed owner information, provided they claim they’re doing so in the “ordinary course of business” (eg to collect a debt). This isn’t verified or checked.

One of my new favorite gripes is people setting up AI receptionists to answer their phone and telling them nothing, including whether the business is open that day. It’s just the weirdest way to use technology.

It really seems like we’re going to end up with a choice of doing model inference expensively here in the US or inexpensively in China, and this is going to create a nightmare data sovereignty problem.

Scoop: Britain has weakened proposed cybersecurity protections for its telecoms networks that were developed in response to the Salt Typhoon espionage campaign, after the companies responsible for implementing the measures lobbied against them.

UK weakens proposed telecoms defenses against Chinese hackers after industry pushback

Britain has weakened proposed cybersecurity protections for its telecoms networks that were developed in response to the Salt Typhoon espionage campaign, after the companies responsible for implementi...

therecord.media