home.social

#diffiehellman — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #diffiehellman, aggregated by home.social.

  1. #cryptography #diffiehellman
    Today @docta_gervais asked me to look at his article on encryption, and all of a sudden I was like: "Why the hell do we still use Diffie-Hellman?"

    Alice
    - creates a new keypair (like DH)
    - signs her public key with her long-term public key (like DH)
    - sends her public key to Bob (like DH)

    Bob
    - encrypts a random symmetric key with Alice's key (NEW)
    - sends it to Alice (like DH)

    Alice
    - decrypts the symmetric key and uses it for communication (NEW)

  2. #cryptography #diffiehellman
    Today @docta_gervais asked me to look at his article on encryption, and all of a sudden I was like: "Why the hell do we still use Diffie-Hellman?"

    Alice
    - creates a new keypair (like DH)
    - signs her public key with her long-term public key (like DH)
    - sends her public key to Bob (like DH)

    Bob
    - encrypts a random symmetric key with Alice's key (NEW)
    - sends it to Alice (like DH)

    Alice
    - decrypts the symmetric key and uses it for communication (NEW)

  3. #cryptography #diffiehellman
    Today @docta_gervais asked me to look at his article on encryption, and all of a sudden I was like: "Why the hell do we still use Diffie-Hellman?"

    Alice
    - creates a new keypair (like DH)
    - signs her public key with her long-term public key (like DH)
    - sends her public key to Bob (like DH)

    Bob
    - encrypts a random symmetric key with Alice's key (NEW)
    - sends it to Alice (like DH)

    Alice
    - decrypts the symmetric key and uses it for communication (NEW)

  4. #cryptography #diffiehellman
    Today @docta_gervais asked me to look at his article on encryption, and all of a sudden I was like: "Why the hell do we still use Diffie-Hellman?"

    Alice
    - creates a new keypair (like DH)
    - signs her public key with her long-term public key (like DH)
    - sends her public key to Bob (like DH)

    Bob
    - encrypts a random symmetric key with Alice's key (NEW)
    - sends it to Alice (like DH)

    Alice
    - decrypts the symmetric key and uses it for communication (NEW)

  5. #cryptography #diffiehellman
    Today @docta_gervais asked me to look at his article on encryption, and all of a sudden I was like: "Why the hell do we still use Diffie-Hellman?"

    Alice
    - creates a new keypair (like DH)
    - signs her public key with her long-term public key (like DH)
    - sends her public key to Bob (like DH)

    Bob
    - encrypts a random symmetric key with Alice's key (NEW)
    - sends it to Alice (like DH)

    Alice
    - decrypts the symmetric key and uses it for communication (NEW)

  6. 🔒 Securing Every Connection with Diffie-Hellman 🔑

    At RELIANOID, trust and security are our top priorities. That’s why we’ve integrated the Diffie-Hellman key exchange protocol across all our solutions. This revolutionary cryptographic method ensures secure communication over public channels, protecting against evolving cyber threats.

    Let’s build a safer digital world together! 🌐✨


    relianoid.com/blog/robust-keys

  7. An #E2EE messaging app unaffected by #ChatControl

    * App: chat.positive-intentions.com/
    * Code: github.com/positive-intentions
    * Reddit: reddit.com/r/positive_intentio

    How it works: positive-intentions.com/docs/p

    TLDR: I'm working on a #P2P messaging #webapp. Webapps are generally not considered secure because of the nature of serving statics over the internet. This is correct, but not a limitation of this project. (#selfhosting options: positive-intentions.com/blog/d).

    As a webapp, I can provide the app with zero-installation and no-registration. The app is only using (local-only) browser storage (specifically #indexedDB). So in a P2P interaction, the traditional concept of "the cloud" is just the physical devices connected over #WebRTC. This allows for things like P2P authentication: positive-intentions.com/blog/s.

    Future:
    I'm aiming to create the most secure messaging app out there... (more than #Signal, #Simplex, #threema, #session, #deltachat, #bitchat, etc). I know I have a long way to go to get there. The UI is fairly ugly for the average user, but I think the mechanics are working as expected. I think #JavaScript is underrated in what you can do with it. I'm actively investigating improving the #encryption approach further to align to how the Signal protocol works (currently using a #DiffieHellman key-exchange).

    Support:
    In the age of #ChatControl, I would like to keep this project #opensource, but open-source funding is not working for me. I don't want your donations (but don't let that stop you) because it isn't sustainable for a long-term project. I have so far only experienced grant-funding rejections. I have no idea what I'm doing in trying to get funding for this project, so any support/advice is appreciated. In recognition of the project in its current state not being able to get funding... (sorry) I will have to go #closedsource (which I'd like to avoid because it undermines several #cybersecurity claims I'd like to make). I don't accept collaboration on the project because this would make tough decisions like going closed-source also immoral.

    #privacy #security #messaging #decentralized #peer2peer #webdev #cryptography #selfhosted #FOSS #tech #infosec #developer #funding #startup

  8. An #E2EE messaging app unaffected by #ChatControl

    * App: chat.positive-intentions.com/
    * Code: github.com/positive-intentions
    * Reddit: reddit.com/r/positive_intentio

    How it works: positive-intentions.com/docs/p

    TLDR: I'm working on a #P2P messaging #webapp. Webapps are generally not considered secure because of the nature of serving statics over the internet. This is correct, but not a limitation of this project. (#selfhosting options: positive-intentions.com/blog/d).

    As a webapp, I can provide the app with zero-installation and no-registration. The app is only using (local-only) browser storage (specifically #indexedDB). So in a P2P interaction, the traditional concept of "the cloud" is just the physical devices connected over #WebRTC. This allows for things like P2P authentication: positive-intentions.com/blog/s.

    Future:
    I'm aiming to create the most secure messaging app out there... (more than #Signal, #Simplex, #threema, #session, #deltachat, #bitchat, etc). I know I have a long way to go to get there. The UI is fairly ugly for the average user, but I think the mechanics are working as expected. I think #JavaScript is underrated in what you can do with it. I'm actively investigating improving the #encryption approach further to align to how the Signal protocol works (currently using a #DiffieHellman key-exchange).

    Support:
    In the age of #ChatControl, I would like to keep this project #opensource, but open-source funding is not working for me. I don't want your donations (but don't let that stop you) because it isn't sustainable for a long-term project. I have so far only experienced grant-funding rejections. I have no idea what I'm doing in trying to get funding for this project, so any support/advice is appreciated. In recognition of the project in its current state not being able to get funding... (sorry) I will have to go #closedsource (which I'd like to avoid because it undermines several #cybersecurity claims I'd like to make). I don't accept collaboration on the project because this would make tough decisions like going closed-source also immoral.

    #privacy #security #messaging #decentralized #peer2peer #webdev #cryptography #selfhosted #FOSS #tech #infosec #developer #funding #startup

  9. An #E2EE messaging app unaffected by #ChatControl

    * App: chat.positive-intentions.com/
    * Code: github.com/positive-intentions
    * Reddit: reddit.com/r/positive_intentio

    How it works: positive-intentions.com/docs/p

    TLDR: I'm working on a #P2P messaging #webapp. Webapps are generally not considered secure because of the nature of serving statics over the internet. This is correct, but not a limitation of this project. (#selfhosting options: positive-intentions.com/blog/d).

    As a webapp, I can provide the app with zero-installation and no-registration. The app is only using (local-only) browser storage (specifically #indexedDB). So in a P2P interaction, the traditional concept of "the cloud" is just the physical devices connected over #WebRTC. This allows for things like P2P authentication: positive-intentions.com/blog/s.

    Future:
    I'm aiming to create the most secure messaging app out there... (more than #Signal, #Simplex, #threema, #session, #deltachat, #bitchat, etc). I know I have a long way to go to get there. The UI is fairly ugly for the average user, but I think the mechanics are working as expected. I think #JavaScript is underrated in what you can do with it. I'm actively investigating improving the #encryption approach further to align to how the Signal protocol works (currently using a #DiffieHellman key-exchange).

    Support:
    In the age of #ChatControl, I would like to keep this project #opensource, but open-source funding is not working for me. I don't want your donations (but don't let that stop you) because it isn't sustainable for a long-term project. I have so far only experienced grant-funding rejections. I have no idea what I'm doing in trying to get funding for this project, so any support/advice is appreciated. In recognition of the project in its current state not being able to get funding... (sorry) I will have to go #closedsource (which I'd like to avoid because it undermines several #cybersecurity claims I'd like to make). I don't accept collaboration on the project because this would make tough decisions like going closed-source also immoral.

    #privacy #security #messaging #decentralized #peer2peer #webdev #cryptography #selfhosted #FOSS #tech #infosec #developer #funding #startup

  10. An #E2EE messaging app unaffected by #ChatControl

    * App: chat.positive-intentions.com/
    * Code: github.com/positive-intentions
    * Reddit: reddit.com/r/positive_intentio

    How it works: positive-intentions.com/docs/p

    TLDR: I'm working on a #P2P messaging #webapp. Webapps are generally not considered secure because of the nature of serving statics over the internet. This is correct, but not a limitation of this project. (#selfhosting options: positive-intentions.com/blog/d).

    As a webapp, I can provide the app with zero-installation and no-registration. The app is only using (local-only) browser storage (specifically #indexedDB). So in a P2P interaction, the traditional concept of "the cloud" is just the physical devices connected over #WebRTC. This allows for things like P2P authentication: positive-intentions.com/blog/s.

    Future:
    I'm aiming to create the most secure messaging app out there... (more than #Signal, #Simplex, #threema, #session, #deltachat, #bitchat, etc). I know I have a long way to go to get there. The UI is fairly ugly for the average user, but I think the mechanics are working as expected. I think #JavaScript is underrated in what you can do with it. I'm actively investigating improving the #encryption approach further to align to how the Signal protocol works (currently using a #DiffieHellman key-exchange).

    Support:
    In the age of #ChatControl, I would like to keep this project #opensource, but open-source funding is not working for me. I don't want your donations (but don't let that stop you) because it isn't sustainable for a long-term project. I have so far only experienced grant-funding rejections. I have no idea what I'm doing in trying to get funding for this project, so any support/advice is appreciated. In recognition of the project in its current state not being able to get funding... (sorry) I will have to go #closedsource (which I'd like to avoid because it undermines several #cybersecurity claims I'd like to make). I don't accept collaboration on the project because this would make tough decisions like going closed-source also immoral.

    #privacy #security #messaging #decentralized #peer2peer #webdev #cryptography #selfhosted #FOSS #tech #infosec #developer #funding #startup

  11. Новый кандидат в односторонние функции для криптографии и PRNG

    В мире криптографии и безопасных вычислений постоянно ищутся новые, надёжные математические структуры. Традиционные подходы часто опираются на классические алгебраические группы, но что, если нестандартные операции могут предложить уникальные свойства для построения защищённых систем? В этой статье я хочу предложить вашему вниманию полилинейные функции с линейными сдвигами и рассмотреть их потенциал для обмена ключами и создания криптографических примитивов, таких как хеш-функции и генераторы псевдослучайных чисел.

    habr.com/ru/articles/915928/

    #односторонняя_функция #генератор_псевдослучайных_чисел #хешфункции #обмен_ключами #diffiehellman #prng #шифрование

  12. Новый кандидат в односторонние функции для криптографии и PRNG

    В мире криптографии и безопасных вычислений постоянно ищутся новые, надёжные математические структуры. Традиционные подходы часто опираются на классические алгебраические группы, но что, если нестандартные операции могут предложить уникальные свойства для построения защищённых систем? В этой статье я хочу предложить вашему вниманию полилинейные функции с линейными сдвигами и рассмотреть их потенциал для обмена ключами и создания криптографических примитивов, таких как хеш-функции и генераторы псевдослучайных чисел.

    habr.com/ru/articles/915928/

    #односторонняя_функция #генератор_псевдослучайных_чисел #хешфункции #обмен_ключами #diffiehellman #prng #шифрование

  13. Новый кандидат в односторонние функции для криптографии и PRNG

    В мире криптографии и безопасных вычислений постоянно ищутся новые, надёжные математические структуры. Традиционные подходы часто опираются на классические алгебраические группы, но что, если нестандартные операции могут предложить уникальные свойства для построения защищённых систем? В этой статье я хочу предложить вашему вниманию полилинейные функции с линейными сдвигами и рассмотреть их потенциал для обмена ключами и создания криптографических примитивов, таких как хеш-функции и генераторы псевдослучайных чисел.

    habr.com/ru/articles/915928/

    #односторонняя_функция #генератор_псевдослучайных_чисел #хешфункции #обмен_ключами #diffiehellman #prng #шифрование

  14. Новый кандидат в односторонние функции для криптографии и PRNG

    В мире криптографии и безопасных вычислений постоянно ищутся новые, надёжные математические структуры. Традиционные подходы часто опираются на классические алгебраические группы, но что, если нестандартные операции могут предложить уникальные свойства для построения защищённых систем? В этой статье я хочу предложить вашему вниманию полилинейные функции с линейными сдвигами и рассмотреть их потенциал для обмена ключами и создания криптографических примитивов, таких как хеш-функции и генераторы псевдослучайных чисел.

    habr.com/ru/articles/915928/

    #односторонняя_функция #генератор_псевдослучайных_чисел #хешфункции #обмен_ключами #diffiehellman #prng #шифрование

  15. 🥸 Oh, look! Another cryptographic revelation! Diffie-Hellman is dead, long live Elliptic Curve Diffie-Hellman! 🤯 Because what the world definitely needed was more #jargon masquerading as progress. 🧙‍♂️
    keymaterial.net/2025/05/23/the #cryptography #DiffieHellman #EllipticCurve #technews #cybersecurity #HackerNews #ngated

  16. 🥸 Oh, look! Another cryptographic revelation! Diffie-Hellman is dead, long live Elliptic Curve Diffie-Hellman! 🤯 Because what the world definitely needed was more #jargon masquerading as progress. 🧙‍♂️
    keymaterial.net/2025/05/23/the #cryptography #DiffieHellman #EllipticCurve #technews #cybersecurity #HackerNews #ngated

  17. 🥸 Oh, look! Another cryptographic revelation! Diffie-Hellman is dead, long live Elliptic Curve Diffie-Hellman! 🤯 Because what the world definitely needed was more #jargon masquerading as progress. 🧙‍♂️
    keymaterial.net/2025/05/23/the #cryptography #DiffieHellman #EllipticCurve #technews #cybersecurity #HackerNews #ngated

  18. 🥸 Oh, look! Another cryptographic revelation! Diffie-Hellman is dead, long live Elliptic Curve Diffie-Hellman! 🤯 Because what the world definitely needed was more #jargon masquerading as progress. 🧙‍♂️
    keymaterial.net/2025/05/23/the #cryptography #DiffieHellman #EllipticCurve #technews #cybersecurity #HackerNews #ngated