HNHacker News
TopNewBestAskShowJobs

dadrian

676 karma · joined June 3, 2013

https://dadrian.io

@davidcadrian

@dadrian@a2mi.social

@dadrian.io

Must read: 'tptacek, 'jblow, 'JumpCrisscross, 'idlewords, 'hwayne, 'luu, 'gdb, 'antics

submissionscomments
dadrian··on We're forking Flutter
Raise rates.
dadrian··on Eliminating Memory Safety Vulnerabilities at the Source
I'll admit hostile was perhaps too harsh, however looking back to the late 2010s, it seems clear that the attitude was:

- C ABI is good enough for any compatibility

- "Rewrite it Rust" / RESF

- Prioritize language proposals, not fundamentals

I think the attitude as changed somewhat in the last 2-3 years, with more interest in cxx and crubit and crabi, although many of those things are at least partially blocked on stalled language proposals, and largely ignored by the "core" Rust community. I would say indifference and posturing does approach hostility.

There's also consistent conflation of "compatibility with C++" and "rich compatibility with all of C++". Swift is a great example of how targeting PODs and std::vector and aligning concurrency expectations gets you extremely far, especially if you limit yourself to just LLVM.

btw, I really appreciate your Rust book.

dadrian··on Eliminating Memory Safety Vulnerabilities at the Source
This is the exact attitude I am referring to. Also, Rust already uses LLVM.
dadrian··on Eliminating Memory Safety Vulnerabilities at the Source
Rust had to be dragged kicking and screaming into integration with other languages, and its C++ compatibility is a joke compared to Swift.

It's absolutely true that you need integration and compatibility to enable iterative improvements, but Rust historically has been hostile to anything besides unsafe C ABI FFI, which is not suitable for the vast majority of incremental development that needs to happen.

Luckily, this is starting to change.

dadrian··on Hezbollah pager explosions kill several people in Lebanon
Nah, it's like how the existence of Star Trek influences future development of technology. Did Mickens call it, or did the Mossad get the idea from Mickens?
dadrian··on D&D is Anti-Medieval
Of course D&D is not an accurate picture of the medieval era. There's magic in D&D! There was not magic in the medieval era. What are we even doing here?
dadrian··on Zero-Click Calendar invite vulnerability chain in macOS
It's unclear that NSO group is interested in gaining access to iCloud accounts or Photos, nor is it clear that this entrypoint is something that would meet the bar or be useful for signals intelligence, since it requires sending a calendar invite and clicking on the attachment.

Bug bounties will pay for any bug. Offensive firms only pay for things that are practical, and they don't pay everything up front---it depends on the lifetime of the exploit. The business model is closer to a subscription or services.

There is no reason to believe NSO group would pay more, and they certainly wouldn't pay quicker.

dadrian··on Nobody Cares About Security
I agree that simpler is better than more complex, but you're not saying what is wrong with the current approach. I gather you're upset about certificates (who isn't annoyed with X509?), but ultimately all you're saying is "I wish Serve and Dial were more secure, but without using the mechanism that specifically exists to make them secure." This is just one big No True Scotsman.
dadrian··on Nobody Cares About Security
I'm confused as to why you think you can replace all the things in TLS that provide security with some sort of magical SecureConn function. TLS is the secure connection, so much so that your code example is exactly what happens in Golang when you use the TLS library. net.TLS provides a Dial() and a net.Conn implementation.

Your argument seems to be "TLS is bad because it is complicated. We should replace it with something logically equivalent, but better in some way that I have not defined." This is a fundamentally unserious argument, unless you can say what is wrong and what the requirements for a new solution are that are not provided by TLS currently.

dadrian··on Nobody Cares About Security
What do you think secure by default means?
dadrian··on NSA to Launch 'No Such Podcast,'
Do not attempt to compete with SCWpod.
dadrian··on What Is Post-Quantum Cryptography? – NIST
DJB and Tanya operate as a unit. Saying Lange agrees with DJB is like citing Clark as support of Lewis.
dadrian··on NSA releases 1982 Grace Hopper lecture
Of the SCW hosts, I'm actually the NSA plant. You got me.
dadrian··on The Arrest of Pavel Durov Is a Reminder That Telegram Is Not Encrypted
And if there's one thing the cryptocurrency brand of cryptographers can do, it's come up with new ways to take out loans!
dadrian··on Cryptographic Right Answers: Post Quantum Edition
Hybrid kyber is actually enabled by default in Chrome on desktop, you don't need to go to chrome://flags to enable it.
dadrian··on Introducing passkey support to Fastmail
They're not mutually authenticating, they're origin-bound (making them non-forwardable on the remote side) and channel-bound (meaning the authenticating action is guaranteed to be for the same device as the user action).

However, there's no particular reason a FIDO key couldn't sign a login statement to a phishing site---it's just that statement wouldn't then be usable as a valid credential for the true site, regardless of if the signature from the FIDO key was valid or not.

dadrian··on Safe curves for Elliptic Curve Cryptography [pdf]
They are harder to implement than ECC.
dadrian··on RFC 9180: Hybrid Public Key Encryption (2022)
It's not clear to me that this is something that should be genericized, nor that providing a generic HPKE to IETF WGs and then tweaking it as needed is any less work than just composing the correct primitives for each WG use case. As it stands already, IETF WGs are relying on properties that, e.g. DH-KEM only provided by accident. In practice, HPKE is not something you can just use off the shelf, and I personally wouldn't try to write an IRTF standard like it is.
dadrian··on Advancing Our Bet on Asymmetric Cryptography
Bottom of https://tldr.fail
dadrian··on Advancing Our Bet on Asymmetric Cryptography
I don't see TLS adopting anything other than the current hybrid or a pure Kyber, but Bas would know better than me.

Signatures are very difficult to do hybrid in a way that's not strippable.

I think lattices are in the realm of boring crypto these days, but I ask the actual mathematical cryptographers when I need real opinions.

dadrian··on Advancing Our Bet on Asymmetric Cryptography
Unlikely that signatures will ever be hybrid.

Fairly likely we move off of hybrid for key exchange once NIST finishes standardization.

dadrian··on Advancing Our Bet on Asymmetric Cryptography
It's a joke, because it's about migrating off of pre-quantum asymmetric cryptography.
dadrian··on Advancing Our Bet on Asymmetric Cryptography
> I don’t know why OP brought in MTU and packet sizes since that doesn’t really apply here.

It does apply. TCP exposes streams as the API, but the underlying data is still sliced into packets of size up to the MTU.

dadrian··on Microsoft Maintains Go Fork for FIPS 140-2 Support
There's a difference between FIPS approved algorithms, which are actually pretty broad and well-selected these days, and FIPS validated implementations, which are at best a PITA and often actively harmful. Very rarely do you actually need a FIPS-validated implementation.
dadrian··on Let's Kerberos
LDAP is a UofM innovation. Tim Howes, a Peter Honeyman student, wrote his dissertation about it, and then went on to found Loudcloud with Ben Horowitz.
dadrian··on Let's Kerberos
UofM popularized the use of Kerberos in academic settings. IIRC, Dug Song added support for Kerberos to SSH, and some other people in Honeyman's group (CITI) connected Kerberos to Andrew File System (AFS). But we'd have to ask honey to know for sure.
dadrian··on The French aristocrat who understood evolution 100 years before Darwin
Massive failure by Silicon Valley to have given us Juicero, but failed to have invented the battlecow.
dadrian··on The V8 Sandbox
It doesn't matter if the JIT itself is written in a memory-safe language or not if you're exploiting miscompiled JIT output. If the machine code emitted by a JIT is wrong, it can be exploited regardless of if the JIT itself is memory safe or not.
dadrian··on Stop Killing Games
> There is no technological reason this is the case, but pure greed by publishers.

Ah yes, because server-side infrastructure is notoriously free and cheap to run, with no ongoing operational costs, and requires no employees to maintain.

dadrian··on Is social media behind an epidemic of teenage mental illness?
All this article says is that Haidt's analysis is just correlation, and then cites a single metastudy from 2019, and doesn't go on to explain what Haidt did wrong. This is despite extensive writing from Haidt that deconstructs that specific metastudy.
← PreviousPage 4 of 8Next →