soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin email
social@octade.net

Search results for tag #cryptography

[?]The Mathematics of Secrets » 🌐
@MathOfSecrets@mathstodon.xyz

Looks like the Kryptos kerfuffle didn't hurt the auction much! https://www.r rauction.com/auctions/lot-detail/350761607302001-the-complete-secrets-of-kryptos-jim-sanborns-private-archive/?cat=755

    [?]Brian Sletten » 🌐
    @bsletten@mastodon.social

    Well, that’s embarrassing.

    On the plus side, I guess it works.

    bbc.com/news/articles/c62vl05r

      0 ★ 0 ↺

      [?]OCTADE » 🌐
      @octade@soc.octade.net

      NOSTR has problems with its cryptography implementation that allow forging. One attack allows re-directing a Bitcoin transaction. Too many cooks spoil the stew with the large pool of client and server applications.

      Not in The Prophecies: Practical Attacks on Nostr

      https://eprint.iacr.org/2025/1459


        [?]Lobsters » 🤖 🌐
        @lobsters@mastodon.social

        [?]Lobsters » 🤖 🌐
        @lobsters@mastodon.social

        Releasing VoteSecure: The Core Cryptographic Protocol for Mobile Voting lobste.rs/s/d3wwue
        freeandfair.us/blog/releasing-

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]The Mathematics of Secrets » 🌐
          @MathOfSecrets@mathstodon.xyz

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]Lobsters » 🤖 🌐
          @lobsters@mastodon.social

          [?]Brian Sletten » 🌐
          @bsletten@mastodon.social

          I expected we’d see Kryptos cracked in my lifetime… but not through a side channel attack involving paperwork stored at the Smithsonian.


          nytimes.com/2025/10/16/science

            1 ★ 2 ↺
            oheso boosted

            [?]OCTADE » 🌐
            @octade@soc.octade.net

            CRYPTOGRAPHY GROUP

            [for your address book]

            https://soc.octade.net/cryptography/

            A Fediverse group for sharing and discussing , and and related applications and .


            Artistic image of a sheet of paper with binary ones and zeroes and a reddish padlock in the upper right-hand corner..

            Alt...Artistic image of a sheet of paper with binary ones and zeroes and a reddish padlock in the upper right-hand corner..

              6 ★ 9 ↺

              [?]OCTADE » 🌐
              @octade@soc.octade.net

              @papers@soc.octade.net

              Hexlish Alphabet for English, Constructed Languages and Cryptography: Automatic, Structural Compression with a Phonetic Hexadecimal Alphabet

              DOI : https://doi.org/10.5281/zenodo.13139469

              Hexlish is a legible, sixteen-letter alphabet for writing the English language and for encoding text as legible base 16 or compressed binary. Texts composed using the alphabet are automatically compressed by exactly fifty percent when converted from Hexlish characters into binary characters. Although technically lossy, this syntactic compression enables recovery of the correct English letters via syntactic reconstruction. The implementer can predict the size of the compressed binary file and the size of the text that will result from decompression. Generally it is intuitive to recognize English alphabet analogues to Hexlish words. This makes Hexlish a legible alternative to the standard hexadecimal alphabet.


              Hexlish Alphabet logo. The word HEXLISH in rainbow colors on a black background with a hexagonal dot above the letter I. Beneat the logo in yellow reads the phrase,  "English Text Compression & Encoding."

              Alt...Hexlish Alphabet logo. The word HEXLISH in rainbow colors on a black background with a hexagonal dot above the letter I. Beneat the logo in yellow reads the phrase, "English Text Compression & Encoding."

                [?]Lobsters » 🤖 🌐
                @lobsters@mastodon.social

                NSA and IETF: Can an attacker simply purchase standardization of weakened cryptography? lobste.rs/s/ngjqsm
                blog.cr.yp.to/20251004-weakene

                  [?]The Mathematics of Secrets » 🌐
                  @MathOfSecrets@mathstodon.xyz

                  Found this in my old tabs. Kind of a scary idea! can't do much about attacks like this. @schneier schneier.com/blog/archives/202

                    [?]Lobsters » 🤖 🌐
                    @lobsters@mastodon.social

                    Why aren't we recording pre-AI content using a PoE (Proof of Existence) protocol? lobste.rs/s/qurbh4

                      [?]Lobsters » 🤖 🌐
                      @lobsters@mastodon.social

                      [?]Mauve 👁💜 [they/them/it] » 🌐
                      @mauve@mastodon.mauve.moe

                      Hey ! I'm going to be teaching you how to use at the next ForwardJS meetup. Come sign up!

                      meetup.com/ottawa-forwardjs-me

                        [?]Lobsters » 🤖 🌐
                        @lobsters@mastodon.social

                        [?]Lobsters » 🤖 🌐
                        @lobsters@mastodon.social

                        [?]The Mathematics of Secrets » 🌐
                        @MathOfSecrets@mathstodon.xyz

                        Oh, right, I said I'd post some good news. This article appears to have nothing to do with , but look down towards the bottom where they talk about "clock arithmetic" --- that's the same "wraparound" arithmetic that I introduce on page 3 of my book! @QuantaMagazine quantamagazine.org/new-math-re

                          [?]The Mathematics of Secrets » 🌐
                          @MathOfSecrets@mathstodon.xyz

                          [?]Lobsters » 🤖 🌐
                          @lobsters@mastodon.social

                          [?]Lobsters » 🤖 🌐
                          @lobsters@mastodon.social

                          [?]John-Mark Gurney [he/they] » 🌐
                          @encthenet@flyovercountry.social

                          Does anyone have a minimal program that implements sha256 using the Intel SHA instructions (aka _mm_sha256rnds2_epu32)?

                          Want a program that takes either stdin or a file and outputs the hash, and it should be a single file, though two or three is fine.

                            [?]Aaron Toponce ⚛️:debian: » 🌐
                            @atoponce@fosstodon.org

                            [?]Aaron Toponce ⚛️:debian: » 🌐
                            @atoponce@fosstodon.org

                            Today I learned that supports key files in addition to passphrases.

                            I guess I need to update my key file generator page and make it more generic.

                            atoponce.github.io/keepass-fil

                              [?]xoron :verified: » 🌐
                              @xoron@infosec.exchange

                              Building secure peer-to-peer messaging apps is tough, and it's even tougher to get people to switch from what they already use. I've noticed that a great user interface and an intuitive design often matter more to people than terms like cryptography or end-to-end encryption.

                              That's why I've started building a UI library to tackle this head-on! It's a work in progress, but the goal is to create a more welcoming and seamless experience for new users.

                              Check out the UI library here: ui.positive-intentions.com

                              And you can see a live demo of the UI in action here: glitr.positive-intentions.com

                              I'd love to hear your thoughts and feedback as I continue to shape it!

                                5 ★ 10 ↺
                                Dsens boosted

                                [?]OCTADE » 🌐
                                @octade@soc.octade.net

                                I'm looking for more and related profiles to follow. Recommends appreciated.

                                  OCTADE boosted

                                  [?]ltning » 🌐
                                  @ltning@pleroma.anduin.net

                                  Why on earth was the #ActivityPub protocol even let out the door without a well-specified and mandatory graceful, non-destructive key rotation scheme?

                                  Yes I know the privacy issues. Those are not valid reasons to not have such a mechanism; it's a valid reason to not enable or use one.

                                  What we're stuck with now is a ton of instances with absurdly long, legacy-algorithm keys (RSA-4096) with no way to replace them with shorter/better keys without effectively losing everything ever posted on the instance.

                                  The protocol is only 7 years old! EC crypto was well-established at the time, and should have been the default.

                                  And what happens once everyone has to replace the keys, because RSA is broken by quantum computers (I know, probably 100 years to go)? The #Fediverse will be a wasteland, with no instances trusting anything from any other instance, so all #Federation breaks down.

                                  Sorry if I got some details wrong about what the protocol says. If I get flamed to death for being wrong, then I'll consider that a Good Thing(TM). I've been trying to find a way to rotate/replace keys for a while and all my searching turns up is either 1) confirmation that most people don't know or care about cryptography, or 2) https://socialhub.activitypub.rocks/t/key-rotation-notification/562 - which really isn't helpful.

                                  If it is possible to gracefully rotate the key(s) of an instance/user, there really has to exist some documentation that explains clearly how to implement this in a server and how to exercise it as a server operator.

                                  #Cryptography #Rant #Mastodon

                                    1 ★ 5 ↺

                                    [?]OCTADE » 🌐
                                    @octade@soc.octade.net

                                    NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                                    NEWSCARD Publish and fetch permanent named records via Network News

                                    Newscard creates a decentralized, encrypted, named record paste bin.

                                    [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                                    With a single command, name the card, snarf the file and encrypt it.

                                    With another command, push the encrypted file to the public network.

                                    With another short command, snarf a file from the network.

                                    Only users knowing the name [key] of the record will be able to decrypt it.

                                    If a strong passphrase is used to name the file, it will be very secure.

                                    This is useful for quickly snarfing, encrypting, and publishing a text file:

                                    $~: card enc [passphrase] [file]
                                    $~: card put [passphrase]

                                    It is useful for retrieving a text file with just a key:

                                    $~: card get [passphrase]
                                    $~: card show [passphrase]

                                    If and when you want the general public to access the record just share the keyword.

                                    Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                                    Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                                    It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                                    @infostorm@a.gup.pe @crypto@a.gup.pe @infosec@a.gup.pe @selfhosting@a.gup.pe

                                    Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                                    Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                                      1 ★ 0 ↺

                                      [?]OCTADE » 🌐
                                      @octade@soc.octade.net

                                      "minicrypt is dedicated to Alice and Bob."

                                      phunnee!

                                      https://github.com/706f6c6c7578/minicrypt


                                        [?]J4YC33 ❌ » 💔 🌐
                                        @j4yc33@sb17.space

                                        So, hear me out:

                                        If instead of the current Hash+Salt based modality of password management, and given the relative lack of quantum complexity in how that all works for authentication, I have a proposition.

                                        For any given password length N, N! hashes are taken for the password such that any substring starting with the first character and any arbitrary following sequential characters (D) to the length of the string (c0->cD) where D < N. This would require a quantum actor to deal with an element quantum mechanics is explicitly bad at dealing with: Certainty.

                                        Instead of relying on the relatively low quantum complexity of the hashes, we extrapolate into another dimension and create an ordering of hashes that becomes a tangible certainty. Instead of having to find all of the hashes in a field (Low quantum complexity, High computational complexity), the operator must find a specific order from those hashes in the field (Extremely high quantum complexity, Moderate computational complexity).

                                        It would also reduce the urgency of collision discoveries in hashing algorithms too.

                                        Just a thought.

                                          3 ★ 6 ↺
                                          OCTADE boosted

                                          [?]OCTADE » 🌐
                                          @octade@soc.octade.net

                                          NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                                          NEWSCARD Publish and fetch permanent named records via Network News

                                          Newscard creates a decentralized, encrypted, named record paste bin.

                                          [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                                          With a single command, name the card, snarf the file and encrypt it.

                                          With another command, push the encrypted file to the public network.

                                          With another short command, snarf a file from the network.

                                          Only users knowing the name [key] of the record will be able to decrypt it.

                                          If a strong passphrase is used to name the file, it will be very secure.

                                          This is useful for quickly snarfing, encrypting, and publishing a text file:

                                          $~: card enc [passphrase] [file]
                                          $~: card put [passphrase]

                                          It is useful for retrieving a text file with just a key:

                                          $~: card get [passphrase]
                                          $~: card show [passphrase]

                                          If and when you want the general public to access the record just share the keyword.

                                          Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                                          Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                                          It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                                          @infostorm@a.gup.pe @crypto@a.gup.pe @infosec@a.gup.pe

                                          Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                                          Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                                            4 ★ 2 ↺

                                            [?]OCTADE » 🌐
                                            @octade@soc.octade.net

                                            NEWSCARD: Decentralized, Encrypted Paste Bin via Usenet Newsgroups

                                            NEWSCARD Publish and fetch permanent named records via Network News

                                            Newscard creates a decentralized, encrypted, named record paste bin.

                                            [git repo] https://codeberg.org/OCTADE/newscard (use most recent version only)

                                            With a single command, name the card, snarf the file and encrypt it.

                                            With another command, push the encrypted file to the public network.

                                            With another short command, snarf a file from the network.

                                            Only users knowing the name [key] of the record will be able to decrypt it.

                                            If a strong passphrase is used to name the file, it will be very secure.

                                            This is useful for quickly snarfing, encrypting, and publishing a text file:

                                            $~: card enc [passphrase] [file]
                                            $~: card put [passphrase]

                                            It is useful for retrieving a text file with just a key:

                                            $~: card get [passphrase]
                                            $~: card show [passphrase]

                                            If and when you want the general public to access the record just share the keyword.

                                            Newscard uses nine (9) (NINE) layers of encryption with OpenSSL chacha20 cipher.

                                            Newscard generates 9 each of: cipher keys, salts, key iteration parameters.

                                            It would be nice if something like this were added to the ActivityPub protocol, such that keyword[@]host.url would do the same thing. Then secret text records could be stored securely for later retrieval or revelation.

                                            @infostorm@a.gup.pe @usenet@lemmy.world @crypto@a.gup.pe @infosec@a.gup.pe

                                            Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.

                                            Alt...Playing card of the Jack of Clubs. The Jack is a moustached man in a black top hat and suit in a oval center cameo. The colors are inverted so that everything on the face is black except the lines which are white, like a charcoal cutout picture., giving it a retro digital appearance mixed with retro handicraft vibes.