Home
Explore
mastodon.social
mstdn.social
infosec.exchange
mstdn.jp
social.vivaldi.net
piaille.fr
hachyderm.io
mastodon.world
troet.cafe
m.cmx.im
mastodon.uno
mastodon.gamedev.place
social.tchncs.de
mastodon.nl
norden.social
flipboard.social
kolektiva.social
mathstodon.xyz
mastoturk.org
nrw.social
occm.cc
tech.lgbt
defcon.social
mastodonapp.uk
mstdn.ca
universeodon.com
c.im
masto.es
sueden.social
toot.community
mstdn.party
sfba.social
det.social
mastodon.scot
mastodon.sdf.org
tkz.one
mastodon.ie
ohai.social
ruhr.social
hessen.social
mastodontech.de
pouet.chapril.org
mastodon.nu
livellosegreto.it
mastodon.au
social.linux.pizza
muenchen.social
social.cologne
mastodon.eus
indieweb.social
ieji.de
ioc.exchange
mastodon.bida.im
mastodont.cat
mastodon.green
wehavecookies.social
feuerwehr.social
social.anoxinon.de
masto.nu
nerdculture.de
ruby.social
mindly.social
mastodon.ml
cyberplace.social
metalhead.club
phpc.social
uri.life
m.otter.homes
dresden.network
mastodontti.fi
toot.wales
sunny.garden
climatejustice.social
sciences.social
noc.social
mstdn.plus
privacysafe.social
tooting.ch
freiburg.social
hostux.social
furry.engineer
mastodon.me.uk
rollenspiel.social
blorbo.social
mastodon.com.pl
gaygeek.social
rivals.space
bonn.social
urbanists.social
rheinneckar.social
mast.lat
mastoart.social
wien.rocks
discuss.systems
expressional.social
ursal.zone
mastodon-belgium.be
h4.io
mapstodon.space
mstdn.games
todon.nl
masto.pt
hcommons.social
snabelen.no
fairy.id
glasgow.social
shelter.moe
lgbtqia.space
sakurajima.moe
darmstadt.social
cupoftea.social
tilde.zone
retro.pizza
mastodon.gal
urusai.social
ludosphere.fr
muenster.im
qdon.space
bookstodon.com
bark.lgbt
mastodon.berlin
peoplemaking.games
socel.net
toot.aquilenet.fr
pawb.fun
mast.dragon-fly.club
veganism.social
vmst.io
union.place
kanoa.de
mstdn.dk
witter.cz
toad.social
theblower.au
eupolicy.social
mastodon.uy
oslo.town
tooot.im
masto.nyc
machteburch.social
xarxa.cloud
freeradical.zone
gardenstate.social
musicworld.social
fandom.ink
famichiki.jp
stranger.social
burningboard.net
mstdn.business
thecanadian.social
disabled.social
cultur.social
mountains.social
graphics.social
pnw.zone
furries.club
hear-me.social
tea.codes
mastorol.es
mustard.blog
mastodon.pnpde.social
bahn.social
musician.social
dizl.de
toot.kif.rocks
fedi.at
babka.social
libretooth.gr
ciberlandia.pt
archaeo.social
musicians.today
dmv.community
ani.work
vkl.world
mastodon.energy
tyrol.social
tuiter.rocks
frikiverse.zone
drupal.community
gamepad.club
masto.nobigtech.es
toot.re
social.seattle.wa.us
lou.lt
donphan.social
mast.hpc.social
is.nota.live
social.politicaconciencia.org
toot.si
bzh.social
tchafia.be
hometech.social
muri.network
mastodon.vlaanderen
social.silicon.moe
puntarella.party
4bear.com
norcal.social
wargamers.social
lsbt.me
datasci.social
mograph.social
theatl.social
opencoaster.net
mastodon.africa
toot.funami.tech
qaf.men
devianze.city
hispagatos.space
epicure.social
burma.social
elekk.xyz
apobangpo.space
mastodon.london
mastodon.education
friendsofdesoto.social
est.social
mastodon.pirateparty.be
lewacki.space
kurry.social
colorid.es
mastodon.cr
toot.garden
esq.social
mstdn.animexx.de
indieauthors.social
leipzig.town
ruhrpott.social
hoosier.social
fikaverse.club
planetearth.social
genealysis.social
mastodon.bot
mastodon.wien
frontrange.co
fairmove.net
techtoots.com
toots.nu
library.love
fribygda.no
opalstack.social
h-net.social
mastodon-swiss.org
raphus.social
poweredbygay.social
arvr.social
rail.chat
paktodon.asia
rheinhessen.social
mastodon.sg
seocommunity.social
cwb.social
bologna.one
episcodon.net
camp.smolnet.org
epsilon.social
stereodon.social
growers.social
okla.social
mastodon.cipherbliss.com
k8s.social
biplus.social
mastodon.free-solutions.org
mastodon.hosnet.fr
masto.yttrx.com
khiar.net
birdon.social
elizur.me
skastodon.com
squawk.mytransponder.com
silversword.online
23.illuminati.org
mastodon.frl
balkan.fedive.rs
cville.online
lounge.town
ailbhean.co-shaoghal.net
mastodon.iow.social
mastodon.bachgau.social
kzoo.to
kcmo.social
mastodon.ph
social.diva.exchange
mcr.wtf
synapse.cafe
darticulate.com
nfld.me
social.ferrocarril.net
mastodon.ee
voi.social
troet.fediverse.at
polsci.social
fpl.social
nautical.social
mastodon.mg
nwb.social
nomanssky.social
dariox.club
mikumikudance.cloud
social.sndevs.com
bvb.social
kjas.no
ceilidh.online
ms.maritime.social
netsphere.one
nutmeg.social
wxw.moe
computerfairi.es
learningdisability.social
Log In
Show thread
Deirdre Connolly¹ ²
Mar 11
Shorter cert lifetimes
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
PQ sigs are beeg
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
In TLS in browsers will add ~7KB to each handshake, ~10% slowdown
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Instead of achieving transparency by logging what is issued, we issue by logging and get both at once
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Smaller even when using PQ sigs, no cert explosion
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
'landmark' MTCs, faster than classical?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
🎉📈
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Join PLANTS!
datatracker.ietf.org/wg/plants/
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Private Key Leaks in the Wild: Insights from Certificate Transparency', presented by Guillaume Valadon and Gaëtan Ferry
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Leaking private keys
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Cert revocation is rarely used
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
measuring exposure duration
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😭
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
🤔
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
yeesh
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Public log of leaked private keys?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Self-Auditable Key Transparency at Scale', by Hossein Hafezi
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Nice
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Oop, trusted setup
ia.cr/2025/1580
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'DTLS-SRTP: The Protocol Everyone is Using But Nobody is Checking', presented by Robert Merget
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Let's build a scanner!
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Found 53 DTLS instances
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Missing auth checks, vulnerable to network man in the middle, including Webex
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Sev: high bug in Zoom
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Q: Did you look at E2EE real time communication that used sframe as well? A: MIght've been Zoom, didn't observe any other cases
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'The widespread popularity of insecure proprietary network encryption in the Android ecosystem', presented by Mona Wang
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😅
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Chinese mobile apps are encrypting way less
ieeexplore.ieee.org/document/110...
#realworldcrypto
WireWatch: Measuring the Secur...
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
So broken!
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Keyboards, browsers, analytics, ads, device data, etc— all fucked
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
These look like fun CTFs
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
"I can't sleep, knowing what I've seen"
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
lol wtf
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😭
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
None of the schemes tried to provide cryptographic integrity or authenticity, except for MMTLS
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Are these backdoors?????? (No)
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
So, why?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Lessons Learned from Cryptography Shortcuts on the Example of TLS Session Tickets', presented by Sven Hebrok
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
TLS session resumption with tickets
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Active impersonation of resumption possible in TLS 1.2 and 1.3
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Attacks were known in theory, many implementations vulnerable after years
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Vulns happened due to API design and changes over time, easy to misuse
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Protocol design: session ticket encryption key is freely chosen by the server, not auditable; all other keys in TLS are either asymmetric crypto or derived via a KDF from the key exchange
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0