[Cryptography] How to De-Bollocks Cryptography?

Viktor Dukhovni cryptography at dukhovni.org
Tue Aug 6 01:02:30 EDT 2024


On Mon, Aug 05, 2024 at 01:53:18PM +0200, Ralf Senderek wrote:

> I firmly believe that Peter's conclusion [1] is correct:
> 
>   "COMPLEXITY IS THE ENEMY OF SECURITY"
> 
> So we must find practical ways to solve the complexity
> problem or at least to tackle it. But bear in mind what
> Einstein once said:
> 
>   "Everything should be made as simple as possible *but no simpler.*"
> 
> There are limits to reducing complexity (to avoid the term
> simplicity). If we cannot find compelling answers to the
> complexity problem in Cryptography the churn will continue.
> 
> If you have any idea how to attack the complexity problem,
> hammer it out and post it here, it might be developed into
> a candidate for consent.
> 
> Be practical and be constructive.

Various simplified protocol designs have recently been based on the
sponge construction, for example: https://strobe.sourceforge.io/papers/

There are many others along the same lines.  I don't know whether any of
these have seen significant adoption, TLS is very well entrenched.

-- 
    Viktor.


More information about the cryptography mailing list