Q: Why are there so many Fiat-Shamir instantiation mistakes out there?
A: We lack to right tooling to auto catch these issues; must be secure in the spec first
#realworldcrypto
Next up, 'TEE.fail: Breaking Trusted Execution Environments via Memory Bus Interposition', presented by Christina Garman and Daniel Genkin
#realworldcrypto
Q: You believe these protections only got removed bc of performance?
A: Yes I do, we talked to the engineers, they were so upset and repeatedly saying "I told you so" etc
#realworldcrypto
Really want boring simple cryptography with few assumptions; used Rust bc strong typing enabled misuse-resistant API design, and performance came for free
#realworldcrypto