

Cruel Summer: hybrid signatures, Downfall, Zenbleed, 2G downgrades
Sep 13, 2023
The hosts discuss their summer vacation experiences and touch on topics like pixel attacks, 2G deprecation, and writing modem firmware. They explore vulnerabilities Zenbleed, Downfall, Spectre, and Meltdown, discussing technical details, risks, and potential exploitation. They also talk about software and firmware vulnerabilities, downgrade attacks, and crypto talks at conferences. The chapter covers lattice-based Kyber and dilithium schemes, the need to check old papers, and explore alternatives in cryptography. They discuss issues with authentic code, X-509, SSL slippery slope, and call for reviews.
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8
Introduction
00:00 • 2min
Vulnerabilities Zenbleed, Downfall, Spectre, and Meltdown
01:45 • 13min
Software and Firmware Vulnerabilities
15:06 • 5min
Downgrade Attacks and Crypto Talks at Conferences
20:18 • 25min
Kyber, Dilithium, and the Quest for Post-Quantum Secure Signatures
45:18 • 6min
Exploring Papers, Alternatives, and Metaphors in Cryptography
51:47 • 2min
Discussion about X-509, SSL lipery slope, and the mess of authentic code
53:25 • 2min
Casual Conversation and Call for Reviews
55:35 • 3min