@stratom

3 Followers
189 Following
4 Posts
@bagder To the best of my knowledge they are using https://github.com/ossf/pvtr-github-repo-scanner to check these controls.
GitHub - ossf/pvtr-github-repo-scanner: Privateer plugin for scanning the security hygiene of a GitHub repository.

Privateer plugin for scanning the security hygiene of a GitHub repository. - ossf/pvtr-github-repo-scanner

GitHub

1/mehr

Was hat das österreichische Wirtschaftsministerium mit dem #CCC gemeinsam? Na das da:

#Di_day #digitalesouveränität #DiD

Die erste Phase des Umstiegs auf freie Software ist mit der Migrattion zur #Nextcloud bereits abgeschlossen. Noch in diesem Quartal wird #Microsoft Sharepoint dekommissioniert

Es ist das Pilotprojekt dem alle anderen Ministerien in Ösi-Land folgen werden.

In diesem
https://www.golem.de/news/abschied-von-microsoft-und-vmware-oesterreichs-roadmap-zur-digitalen-souveraenitaet-2601-204331.html

Abschied von Microsoft und VMware: Österreichs Roadmap zur digitalen Souveränität - Golem.de

Österreich ist nicht gerade für Softwareinnovationen bekannt. Nun führt es aber eine Initiative für mehr digitale Souveränität in der EU an.

Golem.de

Come see how I used my jerry-rigged “EMBite” probe to capture an EM side-channels using a HackRF.

I used this to figure out the precise timing of where a completely unknown boot check fails - and then used that timing to bypass the check 😁

https://www.offensivecon.org/speakers/2024/stacksmashing.html

Thomas Roth (stacksmashing) | OffensiveCon

There's everything to love in

"X-Wing: The Hybrid KEM You’ve Been Looking For"
https://eprint.iacr.org/2024/039

- concrete choices!
- strong proofs
- easy to implement
- good performance
- "quantum superiority fighter"

\./
/^\

@durumcrustulum can I haz CCTV test vectors? <3

X-Wing: The Hybrid KEM You’ve Been Looking For

X-Wing is a hybrid key-encapsulation mechanism based on X25519 and ML-KEM-768. It is designed to be the sensible choice for most applications. The concrete choice of X25519 and ML-KEM-768 allows X-Wing to achieve improved efficiency compared to using a generic KEM combiner. In this paper, we introduce the X-Wing hybrid KEM construction and provide a proof of security. We show (1) that X-Wing is a classically IND-CCA secure KEM if the strong Diffie-Hellman assumption holds in the X25519 nominal group, and (2) that X-Wing is a post-quantum IND-CCA secure KEM if ML-KEM-768 is itself an IND-CCA secure KEM and SHA3-256 is secure when used as a pseudorandom function. The first result is proved in the ROM, whereas the second one holds in the standard model. Loosely speaking, this means X-Wing is secure if either X25519 or ML-KEM-768 is secure. We stress that these security gaurantees and optimizations are only possible due to the concrete choices that were made, and it may not apply in the general case.

IACR Cryptology ePrint Archive