@fj@mastodon.social
@fj@mastodon.social avatar

fj

@fj@mastodon.social

Cryptographic & Security Engineering at Apple.
Previously: Lead iOS Developer https://mastodon.world/@signalapp

Tooting on all things #cryptography, #security, #climate, European #aerospace, #energy and #mobility

This profile is from a federated server and may be incomplete. Browse more on the original instance.

shalf, to random French
@shalf@mamot.fr avatar

Réécouter tout Les Antipodes des Cowboys n'était peut-être pas exactement le meilleur move, pour l'humeur...

fj,
@fj@mastodon.social avatar

@shalf j’ai appris le décès de Karl Tremblay cette semaine, ça m’a détruit.

Je me promenais ce matin dans les rues de Toronto avec L’Amérique Pleure dans les oreilles, quelle puissance.

fj, to random
@fj@mastodon.social avatar

Podcasting faux-pas that causes an instantaneous unsubscribe from me is leaving your notification sounds enabled while recording.

It’s so distracting and makes you check if you didn’t get an email or message.

fj, to random
@fj@mastodon.social avatar

Apple Silicon provides data-independent timing (DIT), in which the processor completes certain instructions in a constant amount of time. With DIT enabled, the processor uses the longer, worst-case amount of time to complete the instruction, regardless of the input data.

Learn how to enable DIT in your cryptographic code: https://developer.apple.com/documentation/xcode/writing-arm64-code-for-apple-platforms#Enable-DIT-for-constant-time-cryptographic-operations

fj, to random French
@fj@mastodon.social avatar

La guerre c'est la paix,
la liberté c'est l'esclavage,
l'ignorance c'est la force,
le facultatif c'est le requis

fj, to random
@fj@mastodon.social avatar

Thales, TheGreenBow, CryptoExperts, CryptoNext Security, ANSSI, and Inria, have formed the RESQUE (RÉSilience QUantiquE) consortium. With €6 million funding from the French government and EU, the project aims to create hybrid post-quantum VPNs and high-performance hardware security modules.
https://www.thalesgroup.com/en/worldwide/security/press_release/post-quantum-cryptography-six-french-cyber-players-join-forces

fj, (edited ) to random
@fj@mastodon.social avatar

Attitude control is catastrophic, but that plasma! #Starship

fj,
@fj@mastodon.social avatar

#Starship Telemetry Lost at 65KM

fj,
@fj@mastodon.social avatar

@ErikJonker Unclear at the moment. We should know in 2 min

fj,
@fj@mastodon.social avatar

@ErikJonker Given no data (lost data from Starlink + TDRS at the same time), something happened during re-entry (some speculation that it might be the heatshield).

So successful ascent but both on the booster and Starship, the controls on the way down were very chaotic on the way down.

fj, to random
@fj@mastodon.social avatar

The Pentagon pulled out of a plan to spend as much as $2.5 billion on a chip grant to Intel

Lawmakers then directed Commerce to make up for the shortfall using Chips Act money. The change could mean a greater share of Intel’s Chips Act funds is devoted to military uses, rather than commercial ones. The defense deal sets up Intel as a dedicated supplier of chips for military and intelligence needs, designating a so-called Secure Enclave within the company’s factory.

https://www.bloomberg.com/news/articles/2024-03-12/pentagon-scraps-plan-to-spend-2-5-billion-on-intel-chip-grant

fj, to random
@fj@mastodon.social avatar

NASA appears to be defunding #Chandra (costing $60M/yr), the world's only ever high resolution X-ray space telescope. The space telescope which cost $1.5 billion to build and launch is still functioning, but operations (4% annual operating cost) are stopping.

via @planet4589
https://twitter.com/planet4589/status/1767678587161686291

fj, to random French
@fj@mastodon.social avatar

@sophieschmieg, @gendx and Stefan Kölbl share Google's Threat model for Post-Quantum Cryptography
https://bughunters.google.com/blog/5108747984306176/google-s-threat-model-for-post-quantum-cryptography

fj, to random French
@fj@mastodon.social avatar

C'est bien connu que le RN a reçu des prêts issus de Russie.

Ceux-ci étaient-ils remboursés avant la mise en place des sanctions? Si non, quel est l'impact des sanctions sur cette dette?

J'ai cherché les sources habituelles mais rien trouvé sur le sujet.
#EuElections2024

fj,
@fj@mastodon.social avatar

@ineiti Ce sont les questions que je me pose :) Et j'ai pas trouvé d'éléments de réponse de source fiable :(

Ce serait dans l'intérêt public de savoir avant les élections européennes.

fj, to random
@fj@mastodon.social avatar

Welcome news that cars will need fewer screens and more buttons to earn 5-star safety ratings1, in the light of the death of Angela Chao drowning in her car after “having put the car in reverse instead of drive. It is a mistake she had made before with the Tesla gearshift” 2.

A bad swipe should just get you a bad Tinder match, not lead to life-ending events.

fj, (edited ) to random
@fj@mastodon.social avatar

As a consequence of the election of a far-right government in the Netherlands which is due to increase fiscal burden on expats in the Netherlands and reduce the amount of foreign students, ASML threatening to move to France.

But France might go #VerderNaarRechts soon too.

#ASML has even reportedly threatened to move to France, which isn’t typically a good sign.”

https://www.bloomberg.com/opinion/articles/2024-03-11/dutch-disease-chip-titan-asml-is-too-big-for-the-netherlands

1br0wn, to random
@1br0wn@eupolicy.social avatar

deleted_by_author

  • Loading...
  • fj,
    @fj@mastodon.social avatar

    @1br0wn I would love to see better multi-lingual features :)
    https://mastodon.social/@fj/108515042352283368

    However, I'm a bit concerned with the adversarial aspects of the sharing of translations. A malicious client could upload fake translations for someone else's post.

    Given the trendline of the price of inference, I think automatic translation is already quite affordable and will be increasingly so

    A great start would be to allow users to post toots in multiple languages https://github.com/mastodon/mastodon/issues/11013

    fj, to quantumcomputing
    @fj@mastodon.social avatar

    French government launches the #PROQCIMA program to develop by 2032 at least 2 prototypes of fault-tolerant universal quantum computers with 128 logical qubits, to be extended by 2035 to 2048 logical qubits. The program will be orchestrated by the Defense Procurement Agency and will start with 5 candidates for 4 years, and then will be doubling down on the three most promising candidates.
    https://www.gouvernement.fr/actualite/france-2030-point-detapes-trois-ans-apres-le-lancement-de-la-strategie-nationale-des-technologiques-quantiques-et-lancement-du-programme-proqcima
    #QuantumComputing

    fj, to random
    @fj@mastodon.social avatar

    #C2PA doesn't authenticate, doesn't validate, and doesn't provide reliable provenance information. It can easily be used to create forgeries. With the BBC, we have now seen C2PA used by a media outlet to support an unproven verification claim” https://www.hackerfactor.com/blog/index.php?/archives/1024-IEEE,-BBC,-and-C2PA.html

    fj, to random
    @fj@mastodon.social avatar

    Facial recognition is everywhere nowadays.
    Now even my Saturday morning coffee routine involves unlocking the Oat milk with CartonID.

    fj,
    @fj@mastodon.social avatar

    @denbib Yes!

    Edent, (edited ) to random
    @Edent@mastodon.social avatar

    I need to store the hash of a file.

    For various boring reasons, I only have 128 bits of space. This cannot be changed.

    Is it better to use MD5, or truncate the output of SHA-256 / 512 ?

    Please argue in the replies.

    fj,
    @fj@mastodon.social avatar

    @Edent MD5 does not have 128-bit security (collision complexity at 2^24).
    https://www.win.tue.nl/hashclash/On%20Collisions%20for%20MD5%20-%20M.M.J.%20Stevens.pdf

    Whereas a SHA-256 truncated hash would provide a value closer to that bound.

    fj, to random
    @fj@mastodon.social avatar

    I don't know why you would still use a DECT phone in 2024 over an IP-based solution.

    The DECT Standard Cipher (DSC) is yet another ETSI standard that is so cryptographically broken:
    “The experimental result shows that DSC can be broken on a common PC within about 44.97 seconds in the multiple related key setting.”

    An AES-based DSC2 exists, but even aside of the lack of support for it, I'm honestly not sure it addresses all the protocol-level concerns.
    https://eprint.iacr.org/2024/404

    fj,
    @fj@mastodon.social avatar

    @axx 💯

    Just be aware of the lack of confidentiality of your communications :)

    fj, to random
    @fj@mastodon.social avatar

    ~100 more Starlink v1 satellites will be burning up in the upper atmosphere in the next 6 months, bringing up the total number of de-orbited Starlink satellites to ~500 out of 6000 launched
    https://api.starlink.com/public-files/Commitment%20to%20Space%20Sustainability.pdf

    De-orbiting satellites by burning them up did work when the volume of satellites was small, but already 10% of aerosol particules in the stratosphere contain aluminum/other metals.
    The problem is only going to get worse with the launch of megaconstellations https://www.pnas.org/doi/full/10.1073/pnas.2313374120

    fj,
    @fj@mastodon.social avatar

    Proposal: A global tax, where you pay per kilogram of junk you burn up in the stratosphere.

    fj, to random
    @fj@mastodon.social avatar

    AOG Technics Ltd, a London-based airplane parts distributor laundered thousands of used CFM56 turbine parts, forging documentation certifying them as new.
    The parts landed in hundreds of aircrafts around the world.

    The fraudster made millions of British pounds in profit at the expense of traveller's safety.

    https://www.bloomberg.com/news/features/2023-10-11/fake-parts-found-on-boeing-airbus-jets-plague-airlines

    fj, (edited )
    @fj@mastodon.social avatar

    You really can assemble a 737 from pieces that fall from the sky if you wait long enough.

    "The fuselage panel of a United Airlines flight — a Boeing 737-800 — was discovered missing Friday afternoon after the plane landed at an airport in Medford, Oregon, after having departed San Francisco, officials said."

    https://avherald.com/h?article=51634833&opt=0

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • GTA5RPClips
  • tacticalgear
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • anitta
  • provamag3
  • Leos
  • cisconetworking
  • lostlight
  • All magazines