Home
Explore
mastodon.social
mstdn.social
infosec.exchange
mstdn.jp
social.vivaldi.net
piaille.fr
hachyderm.io
mastodon.world
troet.cafe
m.cmx.im
mastodon.uno
mastodon.gamedev.place
social.tchncs.de
mastodon.nl
norden.social
flipboard.social
kolektiva.social
mathstodon.xyz
mastoturk.org
nrw.social
occm.cc
tech.lgbt
defcon.social
mastodonapp.uk
mstdn.ca
universeodon.com
c.im
masto.es
sueden.social
toot.community
mstdn.party
sfba.social
det.social
mastodon.scot
mastodon.sdf.org
tkz.one
mastodon.ie
ohai.social
ruhr.social
hessen.social
mastodontech.de
pouet.chapril.org
mastodon.nu
livellosegreto.it
mastodon.au
muenchen.social
social.linux.pizza
social.cologne
mastodon.eus
indieweb.social
ieji.de
ioc.exchange
mastodon.bida.im
mastodont.cat
mastodon.green
wehavecookies.social
feuerwehr.social
social.anoxinon.de
masto.nu
nerdculture.de
ruby.social
mindly.social
mastodon.ml
cyberplace.social
metalhead.club
phpc.social
uri.life
dresden.network
m.otter.homes
mastodontti.fi
toot.wales
sunny.garden
climatejustice.social
sciences.social
noc.social
mstdn.plus
privacysafe.social
tooting.ch
freiburg.social
hostux.social
furry.engineer
mastodon.me.uk
rollenspiel.social
blorbo.social
mastodon.com.pl
gaygeek.social
bonn.social
rivals.space
urbanists.social
rheinneckar.social
mast.lat
mastoart.social
wien.rocks
discuss.systems
expressional.social
mastodon-belgium.be
ursal.zone
h4.io
mapstodon.space
mstdn.games
todon.nl
masto.pt
hcommons.social
snabelen.no
fairy.id
glasgow.social
shelter.moe
lgbtqia.space
darmstadt.social
cupoftea.social
sakurajima.moe
tilde.zone
retro.pizza
mastodon.gal
urusai.social
ludosphere.fr
muenster.im
qdon.space
bookstodon.com
bark.lgbt
mastodon.berlin
peoplemaking.games
socel.net
toot.aquilenet.fr
pawb.fun
mast.dragon-fly.club
veganism.social
vmst.io
union.place
kanoa.de
mstdn.dk
witter.cz
theblower.au
toad.social
eupolicy.social
mastodon.uy
oslo.town
tooot.im
masto.nyc
machteburch.social
xarxa.cloud
freeradical.zone
gardenstate.social
musicworld.social
famichiki.jp
fandom.ink
stranger.social
burningboard.net
thecanadian.social
mstdn.business
disabled.social
cultur.social
mountains.social
graphics.social
pnw.zone
furries.club
hear-me.social
tea.codes
mastorol.es
mustard.blog
mastodon.pnpde.social
bahn.social
musician.social
toot.kif.rocks
dizl.de
fedi.at
libretooth.gr
babka.social
ciberlandia.pt
archaeo.social
musicians.today
dmv.community
ani.work
vkl.world
mastodon.energy
tyrol.social
tuiter.rocks
frikiverse.zone
drupal.community
masto.nobigtech.es
gamepad.club
toot.re
social.seattle.wa.us
lou.lt
donphan.social
mast.hpc.social
fulda.social
is.nota.live
toot.si
social.politicaconciencia.org
tchafia.be
hometech.social
bzh.social
muri.network
mastodon.vlaanderen
social.silicon.moe
puntarella.party
4bear.com
norcal.social
wargamers.social
lsbt.me
datasci.social
mograph.social
theatl.social
opencoaster.net
mastodon.africa
toot.funami.tech
qaf.men
devianze.city
hispagatos.space
epicure.social
burma.social
elekk.xyz
apobangpo.space
mastodon.education
friendsofdesoto.social
est.social
mastodon.london
lewacki.space
mastodon.pirateparty.be
kurry.social
mastodon.cr
colorid.es
toot.garden
esq.social
mstdn.animexx.de
leipzig.town
indieauthors.social
ruhrpott.social
hoosier.social
fikaverse.club
genealysis.social
planetearth.social
mastodon.bot
mastodon.wien
fairmove.net
frontrange.co
techtoots.com
toots.nu
library.love
fribygda.no
opalstack.social
h-net.social
mastodon-swiss.org
raphus.social
poweredbygay.social
arvr.social
rail.chat
rheinhessen.social
paktodon.asia
mastodon.sg
seocommunity.social
cwb.social
camp.smolnet.org
epsilon.social
bologna.one
episcodon.net
stereodon.social
growers.social
okla.social
mastodon.cipherbliss.com
k8s.social
biplus.social
khiar.net
masto.yttrx.com
mastodon.hosnet.fr
mastodon.free-solutions.org
birdon.social
elizur.me
skastodon.com
squawk.mytransponder.com
mastodon.babb.no
mastodon.frl
silversword.online
balkan.fedive.rs
23.illuminati.org
cville.online
ailbhean.co-shaoghal.net
lounge.town
kzoo.to
mastodon.iow.social
mastodon.bachgau.social
mastodon.ph
kcmo.social
mcr.wtf
social.diva.exchange
synapse.cafe
darticulate.com
nfld.me
social.ferrocarril.net
mastodon.bahia.no
mastodon.ee
voi.social
troet.fediverse.at
nautical.social
polsci.social
fpl.social
nomanssky.social
dariox.club
mikumikudance.cloud
mastodon.mg
nwb.social
social.sndevs.com
bvb.social
ceilidh.online
kjas.no
ms.maritime.social
netsphere.one
nutmeg.social
wxw.moe
learningdisability.social
computerfairi.es
Log In
Show thread
Deirdre Connolly¹ ²
Mar 11
In TLS in browsers will add ~7KB to each handshake, ~10% slowdown
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Instead of achieving transparency by logging what is issued, we issue by logging and get both at once
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Smaller even when using PQ sigs, no cert explosion
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
'landmark' MTCs, faster than classical?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
🎉📈
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Join PLANTS!
datatracker.ietf.org/wg/plants/
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Private Key Leaks in the Wild: Insights from Certificate Transparency', presented by Guillaume Valadon and Gaëtan Ferry
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Leaking private keys
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Cert revocation is rarely used
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
measuring exposure duration
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😭
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
🤔
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
yeesh
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Public log of leaked private keys?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Self-Auditable Key Transparency at Scale', by Hossein Hafezi
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Nice
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Oop, trusted setup
ia.cr/2025/1580
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'DTLS-SRTP: The Protocol Everyone is Using But Nobody is Checking', presented by Robert Merget
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Let's build a scanner!
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Found 53 DTLS instances
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Missing auth checks, vulnerable to network man in the middle, including Webex
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Sev: high bug in Zoom
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Q: Did you look at E2EE real time communication that used sframe as well? A: MIght've been Zoom, didn't observe any other cases
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'The widespread popularity of insecure proprietary network encryption in the Android ecosystem', presented by Mona Wang
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😅
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Chinese mobile apps are encrypting way less
ieeexplore.ieee.org/document/110...
#realworldcrypto
WireWatch: Measuring the Secur...
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
So broken!
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Keyboards, browsers, analytics, ads, device data, etc— all fucked
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
These look like fun CTFs
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
"I can't sleep, knowing what I've seen"
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
lol wtf
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
😭
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
None of the schemes tried to provide cryptographic integrity or authenticity, except for MMTLS
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Are these backdoors?????? (No)
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
So, why?
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Next up, 'Lessons Learned from Cryptography Shortcuts on the Example of TLS Session Tickets', presented by Sven Hebrok
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
TLS session resumption with tickets
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Active impersonation of resumption possible in TLS 1.2 and 1.3
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Attacks were known in theory, many implementations vulnerable after years
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Vulns happened due to API design and changes over time, easy to misuse
#realworldcrypto
1
1
0
Show thread
Deirdre Connolly¹ ²
Mar 11
Protocol design: session ticket encryption key is freely chosen by the server, not auditable; all other keys in TLS are either asymmetric crypto or derived via a KDF from the key exchange
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
#realworldcrypto
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
tickets, please
#realworldcrypto
a man in a suit and tie is hol...
1
0
0
Show thread
Deirdre Connolly¹ ²
Mar 11
That was the last talk!
#realworldcrypto
1
0
0