LIVE FROM TAIPEI, IT'S REAL WORLD CRYPTO! #realworldcrypto
First session is beyond secure messaging, starting with 'A Practical Wrapper Protocol for Metadata-Hiding in Messaging' #realworldcrypto
Next up, 'Advanced Browsing Protection for [Facebook] Messenger', by Emma Connor and Kevin Lewi #realworldcrypto
Protection in the browser against malicious links (reminds me of a similar Chrome feature); uses PIR #realworldcrypto
Want to protect against offline enumeration attacks #realworldcrypto
Prefix matching support; multiple attempts #realworldcrypto
'attempts were made' #realworldcrypto
Full scheme (🥵) #realworldcrypto
How do we retrieve things from the server, and how can we trust that the machine is actually doing what we expect it to do? Answer: attestation #realworldcrypto
Want to avoid leaking these memory access patterns #realworldcrypto
Future work: further reducing reliance on hardware assumptions, improve efficiency of ORAM use #realworldcrypto
Next up, 'Improving the Trustworthiness of Javascript on the Web', presented by Michael Rosenberg, Giulio Berra, Ezzudin Alkotob, and Dennis Jackson #realworldcrypto
[uh i don't necessarily agree this is why we trust iOS Signal vs say a web page as it exists] #realworldcrypto
WAICT [is not whack??] #realworldcrypto
Code Verify: content, manifest, hash, store in public transparency log #realworldcrypto
Code Verify is a browser extension that checks the log #realworldcrypto
Each leaf of the manifest merkle tree is hash of one js or css file #realworldcrypto