TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Show HN: filippo.io/mlkem768 – Post-Quantum Cryptography for the Go Ecosystem

315 点作者 FiloSottile超过 1 年前

11 条评论

tgkudelski超过 1 年前
Hello from Kudelski Security. This is super timely, because we recently had to discontinue one of the other only existing Go libraries for quantum-resistant cryptography in Go! Full story at <a href="https:&#x2F;&#x2F;research.kudelskisecurity.com&#x2F;2024&#x2F;02&#x2F;01&#x2F;the-kyberslash-vulnerability-and-the-crystals-go-library-a-retrospective-story&#x2F;" rel="nofollow">https:&#x2F;&#x2F;research.kudelskisecurity.com&#x2F;2024&#x2F;02&#x2F;01&#x2F;the-kybersl...</a>
评论 #39217993 未加载
hattmall超过 1 年前
So what is the actual state of Quantum computing in regards to the level that would make something like this necessary?<p>Is it become like AI where instead of actually coming into existence the definition is mostly just changing to bring forth a new product under a previously existing name?
评论 #39216701 未加载
评论 #39216682 未加载
评论 #39216678 未加载
评论 #39215943 未加载
评论 #39219112 未加载
评论 #39215997 未加载
评论 #39218225 未加载
teleforce超过 1 年前
Perhaps relevant to the discussions is this friendly book on crypto systems implementation in the latest version of Go by John Arundel. Inside the last section there is a passing mention on post quantum crypto. Perhaps if John can update the book later with this library once the NIST PQ is standardized.<p>Explore Go: Cryptography (Go 1.22 edition):<p><a href="https:&#x2F;&#x2F;bitfieldconsulting.com&#x2F;books&#x2F;crypto" rel="nofollow">https:&#x2F;&#x2F;bitfieldconsulting.com&#x2F;books&#x2F;crypto</a>
bennettnate5超过 1 年前
Correct me if I&#x27;m wrong, but if it&#x27;s written in pure Go, wouldn&#x27;t that make it susceptible to timing&#x2F;power side channel attacks?
评论 #39216741 未加载
评论 #39215655 未加载
评论 #39218216 未加载
mooreds超过 1 年前
Anyone aware of such implementations for other languages (java, c#, etc)?
评论 #39215192 未加载
评论 #39216628 未加载
tux3超过 1 年前
Neat that it can also work as draft00&#x2F;kyber v3 =)<p>How hard would it be to support a fast Kyber 90&#x27;s mode, without SHA-3? (I suppose you would have to break the abstraction for that one).
评论 #39215626 未加载
mauricesvp超过 1 年前
Unrelated, but c&#x27;mon Filo, the 32 bit syscall table is still &#x27;coming soon&#x27; :&#x27;)
评论 #39218594 未加载
gnfargbl超过 1 年前
I have no ability to judge the quality of this algorithm or implementation, but I do thoroughly approve of the usage of unicode in variable names:<p><pre><code> ρ, σ := G[:32], G[32:] </code></pre> Somehow much better than seeing &quot;rho&quot;, &quot;sigma&quot;.
评论 #39215950 未加载
评论 #39215940 未加载
评论 #39216178 未加载
评论 #39216519 未加载
vbezhenar超过 1 年前
The same guy that brought us <a href="https:&#x2F;&#x2F;github.com&#x2F;FiloSottile&#x2F;age">https:&#x2F;&#x2F;github.com&#x2F;FiloSottile&#x2F;age</a><p>I really like this tool.
评论 #39216409 未加载
评论 #39216925 未加载
评论 #39216526 未加载
评论 #39216132 未加载
dorianmariefr超过 1 年前
Spec: <a href="https:&#x2F;&#x2F;nvlpubs.nist.gov&#x2F;nistpubs&#x2F;FIPS&#x2F;NIST.FIPS.203.ipd.pdf" rel="nofollow">https:&#x2F;&#x2F;nvlpubs.nist.gov&#x2F;nistpubs&#x2F;FIPS&#x2F;NIST.FIPS.203.ipd.pdf</a> (linked from the article)
评论 #39215440 未加载
lopkeny12ko超过 1 年前
Whatever happened to &quot;don&#x27;t roll your own crypto&quot;? Isn&#x27;t this work best left to OpenSSL for example.
评论 #39217008 未加载
评论 #39217007 未加载
评论 #39216997 未加载
评论 #39220224 未加载
评论 #39217193 未加载
评论 #39217222 未加载
评论 #39218627 未加载
评论 #39216996 未加载