home.social

#quantumresistant — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #quantumresistant, aggregated by home.social.

fetched live
  1. Two days ago, on June 22, U.S. Executive Order EO 14409 ("Securing the Nation Against Advanced Cryptographic Attacks") was signed, requiring federal agencies to migrate high-value/high-impact systems to QR key establishment by end of 2030 and QR digital signatures by end of 2031, plus requirements for contractors by 2030 and a CISA cryptographic-bill-of-materials standard. Its effect is to put a date on enforceable PQC migration obligations back on agencies and, for the first time, extended QR obligations to contractors.

    federalnewsnetwork.com/cyberse

    This is certainly good, but some misleading interpretation is circulating about this EO. In particular, I don't like the narrative that this "tightens the Biden-era 2035 target".

    Technically, this is true: Biden's EO 14144 referenced the 2035 target set in 2022 for QR migration. What the narrative leaves out is that, in June last year, Trump's cybersecurity EO 14306 amended the Obama/Biden-era EOs 13694 and 14144, and among other things rolled back several PQC requirements. After the amendment, the only PQC requirements left were two: a PQC product-category list plus a TLS 1.3 mandate for federal agencies.

    So, the last EO actually was a 180-degree correction compared to the previous position of the current administration. Given the cost for such a maneuver in terms of political ego, I think we can interpret this as a strong urgency signal, that aligns with the current trends in the industry after the recent breakthroughs in quantum cryptanalysis and the constant improvements in quantum computing tech.

    Time is ticking, folks!

    #quantum #cryptography #pqc #quantumcomputing #cybersecurity #infosec #quantumresistant #quantumsafe #postquantum #trump #biden #obama

  2. Two days ago, on June 22, U.S. Executive Order EO 14409 ("Securing the Nation Against Advanced Cryptographic Attacks") was signed, requiring federal agencies to migrate high-value/high-impact systems to QR key establishment by end of 2030 and QR digital signatures by end of 2031, plus requirements for contractors by 2030 and a CISA cryptographic-bill-of-materials standard. Its effect is to put a date on enforceable PQC migration obligations back on agencies and, for the first time, extended QR obligations to contractors.

    federalnewsnetwork.com/cyberse

    This is certainly good, but some misleading interpretation is circulating about this EO. In particular, I don't like the narrative that this "tightens the Biden-era 2035 target".

    Technically, this is true: Biden's EO 14144 referenced the 2035 target set in 2022 for QR migration. What the narrative leaves out is that, in June last year, Trump's cybersecurity EO 14306 amended the Obama/Biden-era EOs 13694 and 14144, and among other things rolled back several PQC requirements. After the amendment, the only PQC requirements left were two: a PQC product-category list plus a TLS 1.3 mandate for federal agencies.

    So, the last EO actually was a 180-degree correction compared to the previous position of the current administration. Given the cost for such a maneuver in terms of political ego, I think we can interpret this as a strong urgency signal, that aligns with the current trends in the industry after the recent breakthroughs in quantum cryptanalysis and the constant improvements in quantum computing tech.

    Time is ticking, folks!

    #quantum #cryptography #pqc #quantumcomputing #cybersecurity #infosec #quantumresistant #quantumsafe #postquantum #trump #biden #obama

  3. Is this a #secure #MessagingApp? Maybe not yet, but it’s time to think about #DigitalPrivacy.

    Imagine a #Messaging platform that’s as #secure as #Signal but requires #NoRegistration and #NoInstallation. By leveraging #WebRTC for direct #BrowserToBrowser communication, this #OpenSource project eliminates the #Middleman entirely. Simply share a unique #URL to establish an #Encrypted #PrivateChannel. It is a #Lightweight, #Disposable method to bypass #DataHarvesting and reclaim #DigitalSovereignty.

    This project introduces a new #Paradigm in #ClientSide managed #Encryption. Send #Secure messages with #NoSetup, #NoCloud, and #NoTrace.

    Experience the #Features:
    * #PWA (#ProgressiveWebApp) for instant access
    * #P2P (#PeerToPeer) connectivity
    * #EndToEndEncryption (#E2EE)
    * #SignalProtocol & #PostQuantum #Cryptography
    * #Multimedia, #FileTransfer, & #VideoCalls
    * #NoDatabase & #Stateless architecture
    * #TURN server support for reliable connections

    While not yet a direct replacement for #Simplex or #WhatsApp, this introduces a unique approach to #SecureCommunication.

    Try the #LiveDemo now:
    p2p.positive-intentions.com/if

    Explore the #Technical roadmap:
    positive-intentions.com/docs/t

    Read the full #Documentation:
    positive-intentions.com/docs/t

    #PrivacyTech #Privacy #CyberSecurity #Infosec #WebDev #JavaScript #Decentralized #EncryptionProtocol #QuantumResistant #Tech #FOSS #SoftwareEngineering #DataPrivacy #SecureChat #NoLog #P2PChat #WebRTCProtocol #Coding #DevCommunity #DigitalPrivacy #InternetFreedom #SecureMessaging #WebTech #AppDevelopment #CryptographyResearch #PrivateMessaging #WebPlatform #ZeroTrust #Innovation

  4. Is this a #secure #MessagingApp? Maybe not yet, but it’s time to think about #DigitalPrivacy.

    Imagine a #Messaging platform that’s as #secure as #Signal but requires #NoRegistration and #NoInstallation. By leveraging #WebRTC for direct #BrowserToBrowser communication, this #OpenSource project eliminates the #Middleman entirely. Simply share a unique #URL to establish an #Encrypted #PrivateChannel. It is a #Lightweight, #Disposable method to bypass #DataHarvesting and reclaim #DigitalSovereignty.

    This project introduces a new #Paradigm in #ClientSide managed #Encryption. Send #Secure messages with #NoSetup, #NoCloud, and #NoTrace.

    Experience the #Features:
    * #PWA (#ProgressiveWebApp) for instant access
    * #P2P (#PeerToPeer) connectivity
    * #EndToEndEncryption (#E2EE)
    * #SignalProtocol & #PostQuantum #Cryptography
    * #Multimedia, #FileTransfer, & #VideoCalls
    * #NoDatabase & #Stateless architecture
    * #TURN server support for reliable connections

    While not yet a direct replacement for #Simplex or #WhatsApp, this introduces a unique approach to #SecureCommunication.

    Try the #LiveDemo now:
    p2p.positive-intentions.com/if

    Explore the #Technical roadmap:
    positive-intentions.com/docs/t

    Read the full #Documentation:
    positive-intentions.com/docs/t

    #PrivacyTech #Privacy #CyberSecurity #Infosec #WebDev #JavaScript #Decentralized #EncryptionProtocol #QuantumResistant #Tech #FOSS #SoftwareEngineering #DataPrivacy #SecureChat #NoLog #P2PChat #WebRTCProtocol #Coding #DevCommunity #DigitalPrivacy #InternetFreedom #SecureMessaging #WebTech #AppDevelopment #CryptographyResearch #PrivateMessaging #WebPlatform #ZeroTrust #Innovation

  5. TLDR: I’ve implemented #QuantumResistant #Encryption into my #P2P messaging #webapp using #MLKEM (#Kyber) to protect against future #QuantumComputing threats. Read my latest #Blog post to see how I’m securing #DataPrivacy today.

    My journey into #PostQuantum #Security
    I’ve been working hard on my latest project update, focusing on how we can protect our #Privacy from the looming threat of "harvest now, decrypt later" attacks. I just finished writing a technical deep dive into how I’ve implemented #QuantumResistant #Cryptography into my #P2P messaging platform.

    The core of my approach involves using #MLKEM (formerly #Kyber) to ensure long-term #DataSecurity. I’m particularly proud of the #CascadingEncryption layer I’ve built; by combining #NIST standards with the #SignalProtocol, I'm ensuring that your #Communications remain #Secure even if a single algorithm is compromised in the future.

    If you are into #OpenSource, #InfoSec, or #Decentralized #Tech, I’d love for you to read about my implementation and the challenges of bringing #QuantumResistance to the #Browser using #JavaScript.

    Read my write-up here:
    positive-intentions.com/blog/q

    Demo: cryptography.positive-intentio

    Crash course in ML-KEM: positive-intentions.com/blog/m

    I'm excited to hear what the #Developer and #CyberSecurity community thinks about this #PrivacyFirst milestone!

  6. TLDR: I’ve implemented #QuantumResistant #Encryption into my #P2P messaging #webapp using #MLKEM (#Kyber) to protect against future #QuantumComputing threats. Read my latest #Blog post to see how I’m securing #DataPrivacy today.

    My journey into #PostQuantum #Security
    I’ve been working hard on my latest project update, focusing on how we can protect our #Privacy from the looming threat of "harvest now, decrypt later" attacks. I just finished writing a technical deep dive into how I’ve implemented #QuantumResistant #Cryptography into my #P2P messaging platform.

    The core of my approach involves using #MLKEM (formerly #Kyber) to ensure long-term #DataSecurity. I’m particularly proud of the #CascadingEncryption layer I’ve built; by combining #NIST standards with the #SignalProtocol, I'm ensuring that your #Communications remain #Secure even if a single algorithm is compromised in the future.

    If you are into #OpenSource, #InfoSec, or #Decentralized #Tech, I’d love for you to read about my implementation and the challenges of bringing #QuantumResistance to the #Browser using #JavaScript.

    Read my write-up here:
    positive-intentions.com/blog/q

    Demo: cryptography.positive-intentio

    Crash course in ML-KEM: positive-intentions.com/blog/m

    I'm excited to hear what the #Developer and #CyberSecurity community thinks about this #PrivacyFirst milestone!

  7. CW: Some AI is used

    youtube.com/shorts/oORrvEpDnW4
    Gerard King | Cyber-Savant & Quantitative Strategist | www.gerardking.dev
    🚀 Access high-stakes cybersecurity, quantitative finance, and hyper-axiomatic system architecture.

    🌐 Official Site: gerardking.dev
    🛠️ Adversary Emulation: adversaryemulation.gerardking.

    #GerardKing #CyberSecurity #QuantFinance #WebAssembly #ZeroSizingDelta #HyperAxiomatic #Tier0Security #QuantumResistant

  8. Nice! @mullvadnet for Android now supports #Wireguard over #QUIC as a method for censorship prevention.

    This makes #Obscura obsolete, an odd Apple-only service (obscura.net)

    Also nice that #QuantumResistant tunnels are enabled by default.

    But PLEASE use the native Wireguard implementation "pre-shared key" instead of some custom one. This will enable everyone to avoid the Electron app which also doesnt work on all systems (liken #NixOS currently)

    #MullvadVPN

  9. Nice! @mullvadnet for Android now supports #Wireguard over #QUIC as a method for censorship prevention.

    This makes #Obscura obsolete, an odd Apple-only service (obscura.net)

    Also nice that #QuantumResistant tunnels are enabled by default.

    But PLEASE use the native Wireguard implementation "pre-shared key" instead of some custom one. This will enable everyone to avoid the Electron app which also doesnt work on all systems (liken #NixOS currently)

    #MullvadVPN

  10. @ferret #Signal is centralised and was attempted backdoored by the #UnitedKingdom #OnlineSafetyAct and saved by signal threatening to walk. #Matrix *is decentralised but no #QuantumResistant #e2ee like signal nor its #metadata #privacy or secret group chats. SimpleX has both and more. more #decentralised than matrix. quantum-resistant e2ee, metadata privacy, ip protection, #tor support, no persistent id basically "a burner phone for every contact" dms need invites so less dm flooding than matrix
    Signals centralisation also makes it more vulnerable to total #censorship all you need to do is block signals domains, being a decentralised network SimplexChat has no single point of failure to censor and anyone can run their own relay node
    (ive heard its much easier than matrix homeservers)

  11. @ferret #Signal is centralised and was attempted backdoored by the #UnitedKingdom #OnlineSafetyAct and saved by signal threatening to walk. #Matrix *is decentralised but no #QuantumResistant #e2ee like signal nor its #metadata #privacy or secret group chats. SimpleX has both and more. more #decentralised than matrix. quantum-resistant e2ee, metadata privacy, ip protection, #tor support, no persistent id basically "a burner phone for every contact" dms need invites so less dm flooding than matrix
    Signals centralisation also makes it more vulnerable to total #censorship all you need to do is block signals domains, being a decentralised network SimplexChat has no single point of failure to censor and anyone can run their own relay node
    (ive heard its much easier than matrix homeservers)

  12. What will ETH look like in 2035?

    Fusaka, Glamsterdam, AI wallets, quantum resistance - we explain Ethereum's long-term roadmap here: auriccrypto.com/eth/ethereums-

  13. #BIKE - Bit Flipping Key Encapsulation.
    les seuls vélos qui résistent au déchiffrement des ordinateurs quantiques, quand ils auront assez de qbits "d'ici quelques années, si si".

    bikesuite.org

    #quantumresistant #encryption #chiffrement

  14. I'm a huge fan of #biometrics as part of secure #authentication and #authorization, but the dirty little secret no one is talking about (yet) is that the source of compromised #biometricdata can't be changed or replaced. If your system's #secureenclave or #HSM gives up the goods, you can't change your face, fingerprint, or retinal pattern. Such systems need additional safeguards to avoid the biometric version of a #replayattack, ensuring that re-enrollment results in new set of #quantumresistant cryptographic values.

    venturebeat.com/security/the-p

  15. "Quantum Leap in Computing: RSA-2048 Cracked on a Cellphone! 📱💥"

    Dr. Ed Gerck announces a groundbreaking quantum computing (QC) achievement: RSA-2048 encryption has been broken using a commercial cellphone or a commercial Linux desktop! Should this turn out to be correct, this would mark a pivotal moment in cybersecurity, as current public-key encryption may no longer be secure. Time for quantum-resistant algorithms! 🚨🔐

    As some others have also stated, and I quote "Well, I'd like to see a more tangible proof of these tall claims..."

    Would be cool tho...

    Source: Ed Gerck on LinkedIn

    Tags: #QuantumComputing #CyberSecurity #RSA #Encryption #PublicKey #QuantumResistant #TechnologyBreakthrough #InfoSec #DataProtection 🔒🌐💻

  16. "Quantum Leap in Computing: RSA-2048 Cracked on a Cellphone! 📱💥"

    Dr. Ed Gerck announces a groundbreaking quantum computing (QC) achievement: RSA-2048 encryption has been broken using a commercial cellphone or a commercial Linux desktop! Should this turn out to be correct, this would mark a pivotal moment in cybersecurity, as current public-key encryption may no longer be secure. Time for quantum-resistant algorithms! 🚨🔐

    As some others have also stated, and I quote "Well, I'd like to see a more tangible proof of these tall claims..."

    Would be cool tho...

    Source: Ed Gerck on LinkedIn

    Tags: #QuantumComputing #CyberSecurity #RSA #Encryption #PublicKey #QuantumResistant #TechnologyBreakthrough #InfoSec #DataProtection 🔒🌐💻

  17. > The Open Quantum Safe (OQS) project is an open-source project that aims to support the development and prototyping of quantum-resistant cryptography.

    openquantumsafe.org/