asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ Profile Banner
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ Profile
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ

@asanso

5,871
Followers
1,776
Following
578
Media
14,937
Statuses

Researcher @ethereum , #cryptography addicted, in elliptic we trust. Opinions are my own

Basel, Switzerland
Joined March 2009
Don't wanna be here? Send us removal request.
Pinned Tweet
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 months
Major update: with coauthor @YoussefElHousn3 we generalized the previous result to more family of curves like BLS/BN/KSS (finding a general solution to the diophantine equation) and we also showcase 2 new curves
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
9 months
Posted on eprint a modest paper (Family of embedded curves for BLS) preview basically shows how to build embedded curves (ร  la JubJub/Bandersnatch) having GLV endomorphism (ร  la Bandersnatch) providing general formulas derived from the BLS curveโ€™s seed.
Tweet media one
2
8
41
0
13
52
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Happy to share that starting june 1st Iโ€™ll join the @ethereum foundation as researcher. Looking forward trying to contribute to the success of Ethereum 2
Tweet media one
40
48
1K
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Nice thread from IOTA's developer @hus_qy . tl'dr of his statement: IOTA is a different place now both at technical and personal level. If true KUDOS! My take: Everyone deserves a second chance
@hus_qy
Hans Moog ๐Ÿฆ‹
3 years
@asanso @pobserver2 @TheBiostarfly @benediktbuenz I am an IOTA developer so I want to take the chance to respond to what you just wrote. You are 100% correct with your assessment. IOTA was a huge shit show. The technology was broken (not just the cryptographic part) and the way the project treated critics was shameful.
8
30
246
6
59
354
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
Towards practical post quantum Single Secret Leader Election (SSLE) - Part 1
Tweet media one
263
164
209
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Secured no. 1: "Protecting the #Ethereum consensus-layer"
Tweet media one
62
68
218
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Dear bug bounty hunters do not forget the Eth2 bug bounties program Looking forward some of your great submissions...
42
110
226
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Critical vulnerability in JSON Web Encryption ( #JWE ) - RFC 7516 Invalid Curve Attack #crypto #ec
Tweet media one
Tweet media two
9
221
228
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
No way, this is finally happening thanks @danboneh
7
34
164
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
#Ethereum Critical Altair bugs in both clients and specs are now worth up to $100k.
Tweet media one
2
31
123
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
#Slack #SAML authentication bypass
Tweet media one
2
77
127
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Happy and proud to finally see published "In search of CurveSwap: Measuring elliptic curve implementations in the wild." written by @ltv511 @grittygrease @nadiaheninger and myself ( appearing in @IEEEEUROSP in April.)
Tweet media one
1
44
121
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Billion Laugh Attack in sites google com - #VRP #Google โ€ฆ Thanks again @GoogleVRP !
Tweet media one
2
49
112
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
facebook RCE
1
48
94
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
8 years
All your Paypal #OAuth tokens belong to me - localhost for the win -
Tweet media one
2
72
91
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
@rafbarberio @nonnusquam @raistolo @AlfonsoFuggetta @MarcoCantamessa la mia era una domanda seria non un "attacco ad hominem". Detto cio si documenti lei e non io. Se ancora non l'ha visto io faccio ricerca accademica sulla crittografia (e la matematica) delle blockchain ed ovviamente non sono certo contro. Quindi non so chi si deve documentare...
7
4
87
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
So you wanna learn IQ Cryptography-IQC (aka cryptography based on class groups of imaginary quadratic orders). Wait what? Ok let's slow down.Why should I want to learn this in a first place?It turns out that it seems that last year was the Reinassence of IQC.Some key papers 1/14
1
33
84
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
Should you want to start learning the beautiful subject of elliptic curves, this is the best book ever!
Tweet media one
4
16
80
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Today I feel like first day of school ๐Ÿ˜‚๐Ÿ˜‚
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Happy to share that starting june 1st Iโ€™ll join the @ethereum foundation as researcher. Looking forward trying to contribute to the success of Ethereum 2
Tweet media one
40
48
1K
6
0
80
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
Wohoo. Our paper with @luca_defeo @SimonMasson2 and C. Petit "Verifiable Delay Functions from Supersingular Isogenies and Pairings" has been accepted to #Asiacrypt . Blog post in #VDF
Tweet media one
44
18
76
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Cross-origin brute-forcing of Github #SAML and 2FA recovery codes -
Tweet media one
2
47
77
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
1 year
New paper with @ThomasDecru and @MainoLuciano . We used Kani's Lemma (the same used to break SIDH) to build a purely algebraic (weak) quantum-resistant VDF. Mind the "toward" in the title though.There are some open problems that make the implementation of it challenging 1/n
Tweet media one
8
15
68
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
The Curious Case of WebCrypto Diffie-Hellman on Firefox - Small Subgroups Key Recovery Attack on DH
Tweet media one
Tweet media two
1
37
72
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
TIL I will never be able to catch up with Zero Knowledge literature. This stuff is going soooooo fast at the moment
7
14
71
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
How to try to predict the output of Micali-Schnorr Generator (MS-DRBG) knowing the factorization #crypto #nist
Tweet media one
Tweet media two
0
36
68
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Current status while trying to develop a new researchโ€™s idea
Tweet media one
2
1
67
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
This is part of the "arsenal" I use to (try to) hunt for crypto and web vulnerabilities. Between the others there is : * The tangled web by @lcamtuf * Serious Cryptography by @veorq * Bullet Proof SSL And TLS by @ivanristic 1/n
Tweet media one
4
9
61
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Thanks a lot @GitHubSecurity I guess I am sorted "for life"!!! ๐Ÿ˜ฑ๐Ÿ˜ฑ๐Ÿ˜ฑ๐Ÿ˜ฑ
Tweet media one
5
1
60
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
CSRF in Facebook/Dropbox - "Mallory added a file using Dropbox" -
1
35
60
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
CVE-2017-7781/CVE-2017-10176:Issue with elliptic curve addition in mixed Jacobian-affine coordinates in Firefox/Java
Tweet media one
Tweet media two
1
56
59
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
Guess what? Thanks so much to everyone that helped me throughout this journey!
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
-7
3
0
9
13
0
57
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
aaaaand it happened!
@benjaminion_xyz
Ben Edgington
2 years
#TestingTheMerge - starting to feel like an historic event ๐Ÿ˜… Mainnet shadow-fork in 20 mins or so.
Tweet media one
3
19
153
1
5
53
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
OAuth Worm II - The revenge #OAuth #oauthworm
Tweet media one
0
32
52
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
"Cryptanalysis of an oblivious PRF fromsupersingular isogenies" Joint work with @andreavbasso @merzsp @kutasp and Christophe Petit . Poc code in
Tweet media one
@IACR_News
IACR
3 years
#ePrint Cryptanalysis of an oblivious PRF from supersingular isogenies: A Basso, P Kutas, S Merz, C Petit, A Sanso
0
6
18
3
16
52
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
Introducing Bandersnatch: a fast elliptic curve built over the BLS12-381 scalar field: joint work with @SimonMasson2
2
20
93
4
12
53
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
So it seems thet yours truly will try to defend his phd very soon. Wish me luck
5
0
51
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
1 year
Someone managed to break RSA-14 with a quantum computer!!! via PQC-forum
7
6
45
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
PSA: Tomorrow after over 10 years I will start my last week @Adobe . It has been quite a ride, thx!
10
1
46
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
9 months
Posted on eprint a modest paper (Family of embedded curves for BLS) preview basically shows how to build embedded curves (ร  la JubJub/Bandersnatch) having GLV endomorphism (ร  la Bandersnatch) providing general formulas derived from the BLS curveโ€™s seed.
Tweet media one
2
8
41
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Thanks again @GitHubSecurity ! It is great that I do not even need to write a blog post :p
Tweet media one
Tweet media two
2
6
41
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
And phd thesis printed!!
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Phd year++ . My notebook is almost full. I guess it is time to think about dissertation:p
Tweet media one
1
1
12
4
0
42
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Wow ! The isogeny DDH paper won best paper at #crypto2020 . Well deserved indeed!
Tweet media one
2
10
42
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
LKF: Few years ago I exploited the same identical Facebook endpoint ("View as"). This is also a continuation of another bug I discovered earlier where I proved that FB stores email address of non FB users!! cc @matthew_d_green
Tweet media one
Tweet media two
0
12
38
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
I was a semi-retired bug hunter until I have rediscovered the joy of finding vulnerabilities with the Eth2 bug bounties I'll blog about some of them in the following weeks.
Tweet media one
0
2
41
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
8 months
Bella serata ieri al @ilcryptopub_ . Grazie a tutti le persone che hanno partecipato.
@paolo_0x
Paolone
8 months
Liveeeeeeeee ๐Ÿšจ๐Ÿšจ๐Ÿšจ๐Ÿšจ๐Ÿšจ
0
1
3
6
1
39
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
@Leptan @real_or_random are you saying Prof. Dr. C. P. Schnorr claims he broke RSA?
0
5
39
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
1
32
39
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Project Wycheproof () is the AFL () of #crypto . Thanks a lot @XorNinja and team (notably including Bleichenbacher) for providing such a powerful tool
0
17
35
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
OH wow and I just spotted I got my 3rd nomination for Best Cryptographic Attack (but I am afraid I am not going to win also this time). Raccoon Attack it deserves way more and it is probably going to win! cc @jurajsomorovsky @ic0nz1 :)
Tweet media one
Tweet media two
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Enjoy the @PwnieAwards 2020 nominations and thanks @PwnieAwards crew to deliver this also in this painful weird year!
0
1
1
3
1
35
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
@ProfLopalco @Tg3web @RobertoBurioni Io lo dico oramai da un po. Se non vi mettete daccordo fra voi esperti noi poveri mortali si impazzisce
1
1
37
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Today is the day (Do not forget kids :D)
@autumn_good_35
Autumn Good
4 years
12/8ใซSeverityใŒHIGHใฎ่„†ๅผฑๆ€งFIXใŒๅ‡บใ‚‹ไบˆๅฎšใจใฎใ“ใจใ€‚ ใ€ŽThis release will be made available on Tuesday 8th December 2020 between 1300-1700 UTC.ใ€ Forthcoming OpenSSL Release
Tweet media one
0
12
17
1
11
35
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 months
Just posted on eprint a really modest result (but I had really fun writing it): Breaking the decisional Diffie-Hellman problem in totally non-maximal imaginary quadratic orders. Preview ,
Tweet media one
2
4
35
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
Here we go. Be careful on what you ask :D
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
Can I/Should I put at least one meme on my PhD defense slides ? (only wrong answers)
3
1
4
3
4
31
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
@qwertyoruiopz Lol so u have a multimilion codebase :)
1
0
28
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
We just revised the paper adding result of the 67 bits attack. Took 1.89 days . attack succeeded!!! took 163869.15s lM = 2, eM = 169, queries = 13 recovered PV part took 53727.83s recovered QV part took 55706.49s recovered PV+QV part OK took 54427.47s second part took 7.36s
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
"Cryptanalysis of an oblivious PRF fromsupersingular isogenies" Joint work with @andreavbasso @merzsp @kutasp and Christophe Petit . Poc code in
Tweet media one
3
16
52
0
6
32
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Summer is coming, so I got a couple of t-shirts :) #infosec
Tweet media one
2
14
31
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Meh : CSRF in Facbook Delegated Account Recovery
Tweet media one
1
19
30
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
#COVID -19๐Ÿ‘ is๐Ÿ‘ a๐Ÿ‘ medical๐Ÿ‘ problem๐Ÿ‘ and๐Ÿ‘ will๐Ÿ‘ be๐Ÿ‘ solved๐Ÿ‘ by๐Ÿ‘ medicine.๐Ÿ‘ Thanks๐Ÿ‘ Machine๐Ÿ‘ Learning๐Ÿ‘ and๐Ÿ‘ privacy๐Ÿ‘ researchers๐Ÿ‘ but๐Ÿ‘ should๐Ÿ‘ I๐Ÿ‘ get๐Ÿ‘ sick๐Ÿ‘ I๐Ÿ‘ will๐Ÿ‘ rather๐Ÿ‘ reach๐Ÿ‘ a๐Ÿ‘ doctor
1
7
30
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Funny. Found in a forgotten drawer from the time I was a bug hunter :p #facebook #bug #bounty
Tweet media one
1
1
29
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
When quantum computer will be a reality the first number I will factor will be b66fbfdafbac2fd82eb13dc44fa170ffc9f7c7b51d55b2144cc2257b29df3f62b421b1580753f304a671ff8b55dd8abfb53d31aba0ad742f21857acf814af3f1e126d771a61eca54e62bfdb585c311b058e9cd3faab758a5e28968496ec1dd51d0355a...
2
6
29
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Historical courses and resorts in Elliptic Curves Cryptography #ECC #crypto - Is Curve25519 dead?
Tweet media one
Tweet media two
Tweet media three
1
16
28
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Just submitted a cryptographic bug report affecting a well known product after a loooooooong hiatus.
1
1
29
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
Side channel timing attacks against (EC)DSA in RSA BSAFE CVE-2019-3739/CVE-2019-3740 - Project Wycheproof is the AFL for Cryptography
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Project Wycheproof () is the AFL () of #crypto . Thanks a lot @XorNinja and team (notably including Bleichenbacher) for providing such a powerful tool
0
17
35
0
19
28
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
What has happened to @antisnatchor and @marver here is a security's researcher nightmare
@Yubico
Yubico | #YubiKey
6 years
Following responsible disclosure practices, we recently discovered a WebUSB vulnerability in Chrome that affected the entire ecosystem of FIDO U2F authenticators, now fixed in Chrome 67. The bounty we received was donated to @GirlsWhoCode . Details here:
Tweet media one
15
37
63
0
19
27
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Tweet media one
1
12
29
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Bug bounty left over (and rant) Part III (Google and Twitter) -
Tweet media one
Tweet media two
0
17
28
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
If you like isogenies keep an eye to the next eprint batch ;)
1
1
28
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
You are "into" #EllipticCurve (or even a professional algebraic geometer) you might really want to read this book: "Diophantus and Diophantine equations". Tl;dr Diophantus has the undeserved reputation that he has limited himself to finding a single solution... 1/3
Tweet media one
2
7
27
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Current status: writing a blog post about two different #OAuth related vulnerabilities that led to a persistent XSRF on #Kubernetes Dashboard. Stay tuned...
0
1
27
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Attacks in Crypto workshop videos are online #crypto2020 have fun
1
10
27
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
TIL @EllipticKiwi 's book Mathematics of Public Key Cryptography contains by far the best introduction on isogenies written in any book. Little caveat (not author's fault) isogeny based cryptography has grown sooo much in the latest few years!!
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
So you wanna learn supersingular isogeny crypto thread.1/5 If you are into reading papers then go for (via @durumcrustulum and @0x64616E69656C ) by @luca_defeo ,original #SIDH paper , MSR improvement to SIDH
1
12
29
1
1
26
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
1 year
Random Friday thought: We are almost reaching the one-year mark since SIDH's death. Isogenyland has been quite a ride ever since. I don't think any other field in cryptography has been as exciting in the past year. Enjoy the ride.
Tweet media one
1
3
25
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
10 months
The return of Torus Based Cryptography: Whisk and Curdleproof in the target group
Tweet media one
1
6
23
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
Verifiable Delay Functions from Supersingular Isogenies and Pairings with @luca_defeo @SimonMasson2 and Christophe Petit
Tweet media one
1
11
25
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
Home office :)
Tweet media one
2
0
25
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
How it started(my 7 years old boy). How it will hopefully) go
Tweet media one
Tweet media two
0
0
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Reminder to self: the Quadratic Reciprocity Law is the weirdest and powerfull Theorem in math
Tweet media one
4
4
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Asiacrypt accepted papers are online. Great time for isogenies including one of the best paper awards!!
0
5
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
TIL: you can watch @RealWorldCrypto video already at
0
11
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
2 years
Just in case, here are the slides of my yesterday's defense.
Tweet media one
3
2
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Well I guess i guess it is statting to pay off ๐ŸŒฑ๐ŸŽ‹
Tweet media one
Tweet media two
Tweet media three
Tweet media four
0
2
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
8 months
Itโ€™s again that time of the year. -5 degree and loving it
Tweet media one
2
0
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
invited talk by @DucasLeo "Lattices and Factoring": amazing
1
5
24
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
Current status
Tweet media one
4
0
23
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Professore La prego si attenga a fare il virologo. Anche se io un po' di matematica la mastico (probabilmente anche piu di Lei) non e' che mi metto a discutere con Lei di teoria matematica delle epidemie.
@RobertoBurioni
Roberto Burioni
4 years
@AlfonsoFuggetta @magellano83 Partita persa. Prima i no-vax, adesso i no-trax. Stesso atteggiamento mentale, stessa arroganza, stessa irresponsaible pericolositร .
90
18
227
2
2
22
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
9 months
Thanks so much Istanbul, it has been a blast! @EFDevconnect
Tweet media one
1
1
22
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
4 years
Well I guess the birds that stop in my garden canโ€™t complain about accomodation ๐Ÿ˜น
Tweet media one
1
0
22
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
3 years
How it started/ how it is going
Tweet media one
Tweet media two
4
0
22
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
People what a great time to work on cryptography!
1
1
22
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
if you are like me and you could not attend #36c3 here is the video's playlist
1
6
20
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
7 years
Here it is @veorq :) how about autogramm at rwc 18 :p ?
Tweet media one
4
2
20
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
PSA: (english translation) I am officially an external PhD Candidate @ruhrunibochum . Good luck to me (it might take a while to complete) and thanks @ruhrunibochum 's stuff for being so great!
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
6 years
PSA: "... Sie sind Doktorand unserer Fakultรคt."
0
0
1
3
0
21
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
10 months
August 75th 2023
Tweet media one
0
0
20
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
5 years
So here is the sage code for the isogenies VDF . Kudos to @SimonMasson2 ! Feel free to comment/constribute/extend/port to any language! cc @luca_defeo
0
9
20
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
10 months
tl;dr "The assumption that the round functions of MinRoot (2021), as well as those of Sloth++ (Boneh et al., 2018), and VeeDo (StarkWare, 2020), cannot be parallelized has been refuted."
Tweet media one
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
10 months
About VDF @ethereum ! Read carefully!!
103
298
327
1
9
20
@asanso
asanso.eth ๐Ÿฆ‡๐Ÿ”Š๐Ÿผ๐Ÿงฑ๐Ÿ”ฅ
1 year
Towards practical post quantum stealth addresses
Tweet media one
1
7
20