Content
@
0 reply
0 recast
0 reaction
pugson
@pugson
need an opinion from @cassie on this https://security.apple.com/blog/imessage-pq3
3 replies
4 recasts
24 reactions
Cassie Heart
@cassie
They did a lot of marketing gloss on this one. There's some pretty bold claims being made, and unfortunately the claims don't hold like they say they do.
2 replies
0 recast
2 reactions
Cassie Heart
@cassie
High level (most important to least): - Identity keys are still EC, the PQ related key is verified by an EC signature in the hierarchy. This makes PQ claims dead in the water - Uses hybrid encryption (not unreasonable), P-256 for EC (unreasonable), Kyber-768 (might be reasonable, time will tell, but I don't trust NIST)
1 reply
0 recast
2 reactions
frdysk.framedl.eth
@frdysk
can I get an eli5?
1 reply
0 recast
0 reaction