[messaging] Do quantum attacks/algos also lead to compromise of PFS?

Michael Rogers michael at briarproject.org
Mon Jan 26 03:54:43 PST 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 24/01/15 22:26, Joseph Bonneau wrote:
> There was a cool talk at Real World Crypto by Doug Stebila about
> doing post-quantum secure key exchange [1]. It was in the context
> of TLS but the ideas would apply equally to messaging.

A hybrid of ring-LWE and ECDH has also been proposed for Tor, with the
goal of maintaining forward secrecy of current traffic against future
quantum computers:

http://eprint.iacr.org/2015/008

Cheers,
Michael

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iQEcBAEBCAAGBQJUxisCAAoJEBEET9GfxSfMd+IIAJM4XHf/SIehrSsyZC38v2VH
tk6bp0OYut0zfoUyQX09V/eK9JwdmQOBYWxFsRv8xT2BQy9Hs5CdfKjfFkJPNOGz
4uuhPpv0sR1M7dQf7kay7+gFZerbyNPvvfO7NPcdAs+F39+dy+DYNoY2JsaZhBiM
C1LtYzxj4SvweuF/K8M9ALQFYd0f9j3209sj52vEbktyOh2IwSWF1m0FzXsPU+cC
xxIiZ/ftOz0gCRwl5RE5HeV7sNt2l+47ovpZHhxW1hfGthnWHPohyzOnCqUK4kgF
gojLUUYtTxsWiBcke/3WPSmWv+zkdaCpZZul4+nDoAS/C9/6i0NdDsPmIY9gWv0=
=p/wu
-----END PGP SIGNATURE-----


More information about the Messaging mailing list