Public log of leaked private keys? #realworldcrypto
Next up, 'Self-Auditable Key Transparency at Scale', by Hossein Hafezi #realworldcrypto
Next up, 'DTLS-SRTP: The Protocol Everyone is Using But Nobody is Checking', presented by Robert Merget #realworldcrypto
Let's build a scanner! #realworldcrypto
Found 53 DTLS instances #realworldcrypto
Missing auth checks, vulnerable to network man in the middle, including Webex #realworldcrypto
Sev: high bug in Zoom #realworldcrypto
Q: Did you look at E2EE real time communication that used sframe as well? A: MIght've been Zoom, didn't observe any other cases #realworldcrypto
Next up, 'The widespread popularity of insecure proprietary network encryption in the Android ecosystem', presented by Mona Wang #realworldcrypto
So broken! #realworldcrypto
Keyboards, browsers, analytics, ads, device data, etc— all fucked #realworldcrypto
These look like fun CTFs #realworldcrypto
"I can't sleep, knowing what I've seen" #realworldcrypto
None of the schemes tried to provide cryptographic integrity or authenticity, except for MMTLS #realworldcrypto
Are these backdoors?????? (No) #realworldcrypto
Next up, 'Lessons Learned from Cryptography Shortcuts on the Example of TLS Session Tickets', presented by Sven Hebrok #realworldcrypto
TLS session resumption with tickets #realworldcrypto
Active impersonation of resumption possible in TLS 1.2 and 1.3 #realworldcrypto
Attacks were known in theory, many implementations vulnerable after years #realworldcrypto
Vulns happened due to API design and changes over time, easy to misuse #realworldcrypto
Protocol design: session ticket encryption key is freely chosen by the server, not auditable; all other keys in TLS are either asymmetric crypto or derived via a KDF from the key exchange #realworldcrypto
That was the last talk! #realworldcrypto
Real World Crypto 2027 will be in Seattle! Hosted at Amazon's Meeting Center #realworldcrypto
Matt Campagna from AWS is the chair; April 2027 #realworldcrypto
Chairs will help with visa letters #realworldcrypto
RWC 2028 will be in Bochum, Germany! #realworldcrypto
RWC 2029 somewhere in Asia. RWC 2030 somewhere in America (as in South, North, Latin, etc) #realworldcrypto
Q: What are the organizers doing to keep participants safe in Seattle? A: Doing everything we can to keep people safe, so is the city government so far #realworldcrypto
20% drop in attendance at CRYPTO 2025 #realworldcrypto
END OF REAL WORLD CRYPTO 2026 👋 #realworldcrypto