>Still, some real-world systems continue to use blind-signature, also known as textbook, RSA.
I think those are two different things.
6,998 karma · joined December 17, 2013
>Still, some real-world systems continue to use blind-signature, also known as textbook, RSA.
I think those are two different things.
In New York, increases in the use of ride services like Uber mostly came from bus and subway riders[1]. If we are being charitable to Google, we might assume that this initiative is intended to reduce the same sort of trend. If we are not being charitable, we might assume that this initiative is intended to encourage current bus riders to expose themselves to the product.
[1] https://www.6sqft.com/mta-says-uber-use-is-the-cause-of-nyc-...
A Third Party Breached The Intercept’s Signal Tip Line and Has Been Soliciting Whistleblowers https://www.dropsitenews.com/p/intercept-signal-tip-line-bre...
Twilio Incident: What Signal Users Need to Know https://support.signal.org/hc/en-us/articles/4850133017242-T...
Russian State-Backed Hackers Intensify Attacks on Signal Messenger Accounts https://thecyberexpress.com/signal-attacks-russian-fackers-t...
Anonymous messengers have no real choice and have to use some sort of number for identity. See Briar, Session or Tox for examples.
My comments on Signalgate 1.0:
2048 Bit RSA and the Year 2030 https://articles.59.ca/doku.php?id=em:20482030
We don't have any way to predict when and if 2048 bit RSA would be factorable at this time. We would need a breakthrough in hardware and/or algorithms. The common estimation that it is equivalent to the difficulty of brute forcing symmetrical 112 bit encryption seems to be based on some sort of straightforward extrapolation. It doesn't take into account the amount of memory required for the poorly reducible matrix reduction step in the currently known best algorithm. That's 10^18 bytes of memory, or a million terabytes, somehow coupled to enough processing power to actually make anything possible.
Even if you accept the 112 bit estimate, that works out to something like 400 thousand years using the Bitcoin network as a reference to what we could reasonably achieve.
A Cost-Based Security Analysis of Symmetric and Asymmetric Key Lengths https://cr.yp.to/bib/2000/silverman.pdf
It was a response to the idea that 1024 bit RSA was under threat at the time.
https://towardsdatascience.com/where-are-we-with-shors-algor...
If you run it over and over again you will eventually get 3 or 5...
2048 Bit RSA and the Year 2030 https://articles.59.ca/doku.php?id=em:20482030
I guess it could be updated to include this latest factoring result. Said result would not change the conclusion of the article.
If, say, Gmail was using some static 1024 bit RSA based scheme things would be different. Then an attacker would get the messages of billions of users.
So you control your instance by sshing into a BSD account on the server. You configure your reverse DNS the same way. It's OpenBSD all the way down. So, as mentioned, pretty cool. Possibly not for the OBSD user who prefers some sort of web based configuration for their VPS.
It comes with access to a server you can copy your backups to. You of course do that from your instance using ssh.
Twitter has something like a half a billion users. So it wins I guess...
HTML email is just something that people semi-randomly do. It should be rejected/ignored if you are at all concerned about privacy and/or security.
Something like this would be good for transferring the public key(s) associated with some cryptographic messaging identity. This would allow that to happen entirely offline. The optical nature of the transfer would prevent a potential MITM. The idea that an identity is being transferred would be fairly easy to impart to the user.
So the lack of encryption would be a feature and not a bug. This would enable later encryption which could then use any medium for the transfer in a completely secure way.
* https://futurism.com/science-energy/us-military-gps-jamming-...
That isn't true for either thermal or electrical conductivity. So I don't know what is meant here.
The definition is quite clear. It does not apply when the implementation is not distributed by the same entity that creates it for example. There are other related issues but the message here is that web based cryptography has a particular weakness when it comes to things like end to end encrypted messaging which makes it so bad as to be worthless.
This effect was seen in the Apple vs FBI incident described in the article. The public perception of Apple as a brave defender of user privacy was greatly increased due to that dispute. For all we know, the FBI was in on the conspiracy. In return they might receive the fruits of such surveillance with the only limitation that they would have to disguise the source with parallel construction[2].
I think we should wait to see how the first satellite data centre works out. It seems fairly unlikely that it could be practical. It seems kind of nuts...
>Reflect Orbital, a US start-up, aims to launch a constellation of very large mirror-like satellites to provide sunlight at night, with reflected beams that span at least five kilometres on Earth's surface.
Straight up nuts with no practical value, even if it did work out.