『Security Cryptography Whatever』のカバーアート

Security Cryptography Whatever

Security Cryptography Whatever

著者: Deirdre Connolly Thomas Ptacek David Adrian
無料で聴く

このコンテンツについて

Some cryptography & security people talk about security, cryptography, and whatever else is happening.© 2025 Security Cryptography Whatever 政治・政府 数学 科学
エピソード
  • Alex Gaynor
    2025/08/16

    We chat with friend of the pod and special guest Alex Gaynor, former deputy chief technologist at the FTC and all around good Security Person™. Join for nerdery about WebAuthn, stay for accidentally melting down GitHub APIs around November 2020!

    Watch on YouTube: https://www.youtube.com/watch?v=gBoGvyvsSi4

    Transcript: https://securitycryptographywhatever.com/2025/08/16/alex-gaynor

    Links:

    - https://knowyourmeme.com/memes/no-take-only-throw
    - https://alexgaynor.net/2025/jan/13/challenges-funding-open-source/
    - https://alexgaynor.net/2025/apr/08/putting-a-price-tag-on-open-source/
    - https://dadrian.io/blog/posts/corporate-support-xz/
    - https://alex.github.io/nyt-2020-election-scraper/battleground-state-changes.html
    - https://github.com/alex/nyt-2020-election-scraper


    "Security Cryptography Whatever" is hosted by Deirdre Connolly (@durumcrustulum), Thomas Ptacek (@tqbf), and David Adrian (@davidcadrian)

    続きを読む 一部表示
    1 時間 25 分
  • Vegas, Baby!
    2025/07/29

    We’re throwing a party in Vegas! Someone called it SCWPodCon last year, and the name stuck. It’s sponsored by Teleport, the infrastructure identity company. Get SSO for SSH! If Thomas was here, I’m sure he’d tell you that Fly.io uses Teleport internally. Oh also there's some thing called Black..pill? Black Pool? Something like that happening in Vegas, with crypto talks, so we chatted about them a bit, plus some other stuff

    SCWPodCon 2025: https://securitycryptographywhatever.com/events/blackhat

    Transcript: https://securitycryptographywhatever.com/2025/07/29/vegas-baby/

    Links:

    - Fault Injection attacks on PQCS signatures: https://www.blackhat.com/us-25/briefings/schedule/index.html#bypassing-pqc-signature-verification-with-fault-injection-dilithium-xmss-sphincs-46362
    - Another attack on TETRA: https://www.blackhat.com/us-25/briefings/schedule/index.html#2-cops-2-broadcasting-tetra-end-to-end-under-scrutiny-46143
    - Attacks on SCADA / ICS protocols (OPC UA): https://www.blackhat.com/us-25/briefings/schedule/index.html#no-vpn-needed-cryptographic-attacks-against-the-opc-ua-protocol-44760
    - Attacks on Nostr: https://www.blackhat.com/us-25/briefings/schedule/index.html#not-sealed-practical-attacks-on-nostr-a-decentralized-censorship-resistant-protocol-45726
    - https://signal.org/blog/the-ecosystem-is-moving/
    - https://en.wikipedia.org/wiki/Nostr
    - https://eurosp2025.ieee-security.org/program.html
    - https://cispa.de/en/research/publications/84648-attacking-and-fixing-the-android-protected-confirmation-protocol
    - https://hal.science/hal-05038009v2/file/main.pdf
    - 8-bit, abacus, and a dog: https://eprint.iacr.org/2025/1237.pdf
    - https://www.youtube.com/watch?v=Dlsa9EBKDGI
    - https://www.quantamagazine.org/computer-scientists-figure-out-how-to-prove-lies-20250709/
    - https://eprint.iacr.org/2025/118


    "Security Cryptography Whatever" is hosted by Deirdre Connolly (@durumcrustulum), Thomas Ptacek (@tqbf), and David Adrian (@davidcadrian)

    続きを読む 一部表示
    1 時間 1 分
  • E2EE Storage Done Right with Matilda Backendal Jonas Hofmann and Kien Tuong Truong
    2025/05/19

    It seems like everyone that tries to deploy end-to-end encrypted cloud
    storage seems to mess it up, often in new and creative ways. Our special
    guests Matilda Backendal, Jonas Hofmann, and Kien Tuong Truong give us a tour through the breakage and discuss a new formal model of how to actually build a secure E2EE storage system.

    Watch on YouTube: https://youtu.be/sizLiK_byCw


    Transcript: https://securitycryptographywhatever.com/2025/05/19/e2ee-storage/

    Links:

    - https://brokencloudstorage.info

    - https://eprint.iacr.org/2024/1616.pdf

    - https://www.sync.com

    - https://www.pcloud.com

    - https://icedrive.net

    - https://seafile.com

    - https://tresorit.com

    - https://eprint.iacr.org/2024/989.pdf


    "Security Cryptography Whatever" is hosted by Deirdre Connolly (@durumcrustulum), Thomas Ptacek (@tqbf), and David Adrian (@davidcadrian)

    続きを読む 一部表示
    1 時間 2 分
まだレビューはありません