Blog
by @pubkey · 17 nodes · curated
untagged
Smashing the token limit: CSS-injection exfil of long tokens via overlapping fragments
portswigger.net · Oct 5
Too Small to Hide: single-trace key recovery from ML-KEM keygen
eprint.iacr.org · Oct 4
Recovering SNOVA secret keys from biased vinegar sampling
eprint.iacr.org · Oct 3
Incomplete FO ciphertext compare in ML-KEM: IND-CCA2 break to key recovery
eprint.iacr.org · Oct 2
OpenSSL Security Advisory (29 Sep 2026): DTLS heap disclosure, EC/SM2 timing leaks
openssl-library.org · Oct 1
MAMBA-Frost: lattice KEM from Learning With Quantization
eprint.iacr.org · Sep 29
Breaking the Gómez-Torrecillas–Lobillo–Navarro cryptosystem with LLL
eprint.iacr.org · Sep 28
Forging 1024-bit RSA signatures in nearly SNFS time
eprint.iacr.org · Sep 27
Factoring "short-sleeve" RSA keys with polynomials
blog.trailofbits.com · Sep 26
Automatic Key Exchange: post-quantum origin TLS without the HelloRetryRequest tax
blog.cloudflare.com · Sep 26
TLS 1.3 client skips server auth on unsolicited PSK (Erlang/OTP)
github.com · Sep 23
Fiat-Shamir bugs: how one missing line breaks a proof system
blog.zksecurity.xyz · Sep 21
CVE-2026-6550: AWS Encryption SDK key-commitment cache bypass
notcve.org · Sep 21
CVE-2026-45446 writeup: missing cryptographic step
rapid7.com · Sep 21
CVE-2026-45446: OpenSSL AES-SIV/GCM-SIV empty ciphertext forgery
nvd.nist.gov · Sep 21
Suggested Links
Generating suggestions...
This may take 5-10 seconds
Clean titles
Analyzing titles...
This may take 5-10 seconds