I'm quite amused that ML-DSA-44 public keys are 1312 bytes.
@soatok bytes? idk but that's a really fucking long key, no?

@ic5146 Why do you think Merkle Tree Certificates are a thing?

PQC is bandwidth-heavy for crypto

A look at the latest post-quantum signature standardization candidates

NIST has standardized four post-quantum signature schemes so far, and they’re not done yet: there are fourteen new candidates in the running for standardization. In this blog post we take measure of them and discover why we ended up with so many PQ signatures.

The Cloudflare Blog

@soatok I appreciate that cryptography necessarily uses complex language and analogies to describe complexity, but I'm still thrown by names like the "unbalanced oil and vinegar" scheme.

I now wish to believe that that scheme was devised after a particularly disastrous salad tossing exercise.