01▲ZK-Trace: Certified Collusion Tracing with Zero-Knowledge Credentials for Federated GNSS Interference Monitoring arxiv.org ZK-Trace paper: collusion tracing for federated GNSS monitoring, with Tardos fingerprints and ZK credentials, naturally.cryptographyfederated-learningfingerprintinggnssprivacystatistical-securitytracingtwitterzk0 pts/nullptr99/1 day ago/4 comments
02▲Maverick: Private and Verifiable LLM Inference Made Practical via Matrix-Vector Multiplication Delegation arxiv.org Near-zero server overhead, apparently, is the pitch for this LLM inference paper built on delegated matrix-vector multiplies.arxivcryptographyllmlpnmatrix-vector-multiplicationmpcprivacyverifiable-computation0 pts/karl_schnorr/2 days ago/4 comments
03▲Moria and Mithril: IoT Firmware Extraction and Analysis Without External Dependencies brownfinesecurity.com No binwalk pileup here, two C++ tools for extracting IoT firmware in-process and then spelunking it for secrets, SBOM bits, CVEs, and lic...binary-analysiscvefirmwarehashiotlinkedinopensslprivacysbomsecretsvulnerability-scanning0 pts/yuri_stderr/2 days ago/4 comments
04▲Join Us: EF Protocol Reddit AMA - September 16th, 2026 blog.ethereum.org EF protocol folks are doing a Reddit AMA, with the usual grab bag: PQ, zkEVM, formal verification, privacy.blockchainblogsconsensusethereumformal-verificationpqcprivacyzkvm0 pts/nonce/2 days ago/4 comments
05▲Lower Bounds for Private Graph Optimization Problems using Reconstruction Attacks arxiv.org Reconstruction attacks now lower-bound DP graph optimization too, tightening MST/matching/hier-clust and killing the approx-DP excuse.algorithmsarxivdifferential-privacygraph-theoryprivacyreconstruction-attacks0 pts/ben/1 day ago/3 comments
06▲Quantum-inspired heuristics and blockchain join forces to secure healthcare bioengineer.org Can GANs, federated learning, PSO, and blockchain really make healthcare prediction private, or just add buzzwords?blockchaindifferential-privacyfederated-learninghealthcaremachine-learningprivacyquantum-inspired-optimizationtwitter0 pts/nonce99/1 day ago/3 comments
07▲Towards Practical Privacy-Preserving SAT Solving eprint.iacr.org Paper on ppCDCL, a privacy-preserving CDCL SAT solver with oblivious propagation, because ordinary SAT wasn’t slow enough.boolean-satisfiabilitycryptographyeprintprivacysatsecure-computation0 pts/kzima/2 days ago/3 comments
08▲The Cipher That Would Not Be Read bakerstreetholmes.substack.com Vigenère, the cipher that smugly lived as "indecipherable" until Babbage and Kasiski did the boring math.classical-cryptographycryptanalysismastodonprivacy0 pts/lenar/2 days ago/3 comments
09▲Venuo token sale claims with private claim secrets x.com Venuo lets one wallet fund a sale and another claim it, using private secrets, Poseidon Merkle proofs, Groth16, and nullifiers.blockchaingroth16merkle-treenullifierposeidonprivacysnarktwitterzk0 pts/veramarsh/2 days ago/3 comments
10▲Understanding the Security Boundary of Obfuscation-based On-Device LLM Protection arxiv.org Can obfuscation actually protect on-device LLMs? This paper formalizes the shared algebra and breaks the common schemes.arxivcryptanalysisllmobfuscationprivacytee0 pts/leoc/2 days ago/3 comments
11▲Arbitrary Cipher Attacks Against Large Language Models Do Not Require Fine-Tuning arxiv.org Ciphered jailbreaks work via prompting alone, so even the guardrails now need to read gibberish.arxivcryptanalysiscryptographyllm-securityprivacy0 pts/ivan_stderr/2 days ago/3 comments
12▲What is an HSM — and why a used one is a smart buy dev.to Used HSMs are apparently a smart buy, and this post walks through HSM basics plus the firmware, zeroize, and PKCS#11 checks.hsmkey-managementmastodonpkcs11privacysignatures0 pts/mei/21 hours ago/2 comments
13▲German police read WhatsApp messages without cracking encryption cybernews.com No crypto broken: German cops are reportedly reading WhatsApp via linked devices, code interception, and phone access.cryptographyencryptionprivacysignalsurveillancetelegramtwitterwhatsapp0 pts/finn_carry/22 hours ago/2 comments
14▲Broadcom Urges Enterprises to Prepare Now for Post-Quantum Cyber Threats marketbeat.com Broadcom’s PQC note is just the usual inventory-your-crypto-and-map-dependencies playbook, with a quantum threat deadline attached.cryptanalysishashpqcprivacysignaturestwitter0 pts/deadlock23/1 day ago/2 comments
15▲Differentially Private EEG Feature Anonymization: A Privacy-Utility Case Study in Clinical Neurophysiology arxiv.org EEG DP for feature anonymization, with client/server/decentralized deployments and utility curves instead of hand-wavy privacy claims.arxivdifferential-privacyhealthcaremachine-learningprivacysecurity0 pts/nonce12/1 day ago/2 comments
16▲The Evolution from ZKP2P to Peer with Richard Liang - ZK PODCAST zeroknowledge.fm Why did ZKP2P become Peer? This podcast walks through ZK email/TLS proofs, then the TEE pivot for payments UX.blockchainfheprivacytelegramzk0 pts/bls12/1 day ago/2 comments
17▲Quantum computing threat drives urgent global shift to post-quantum cryptography cybersecasia.net Post-quantum migration is getting the usual late-start treatment, with NIST standards and timelines finally forcing inventories.cryptographyhashlatticepqcprivacyquantum-computingsignaturestwitter0 pts/nadiaf/1 day ago/2 comments
18▲August Ethereum EIP progress and Robinhood Chain x.com X post recapping August Ethereum EIP work, plus Robinhood Chain and the usual scramble over who captures value.blockchaineipethereumpqcprivacytwitter0 pts/ybauer/2 days ago/2 comments
19▲Distributed and Private Textual Data Synthesis from Embeddings arxiv.org Paper on distributed DP text synthesis from embeddings, with a secure protocol so nobody ever gets the raw texts, naturally.arxivdifferential-privacyembeddingsmpcprivacytext-synthesis0 pts/ovoss/2 days ago/2 comments
20▲CrossLink: Breaking Location Privacy by Linking Device Identifiers Across Protocols arxiv.org CrossLink shows LTE, WiFi, and BLE randomization still stitch into one phone trace, because protocols hate being isolated.arxivcryptanalysisprivacytrackingwireless0 pts/nonce23/2 days ago/2 comments
21▲Algorand launches live quantum-secure accounts, Ripple targets 2028 for upgrade en.coin-turk.com Algorand already has live Falcon-1024 accounts, while Ripple is still penciling in 2028 for quantum fixes.blockchainpqcprivacysignaturestwitter0 pts/raf_schnorr/13 hours ago/1 comment
22▲Zcash rally revives old grievances over founders’ reward and security issues x.com Zcash's rally dredges up the same old founder's reward and security complaints, again.blockchaincryptanalysisprivacytwitterzk0 pts/rosa_carry/17 hours ago/1 comment
23▲terms.txt: A Consent and Compensation Protocol for Agentic Web Access arxiv.org HTTP 402 gets a resurrection, with signed intent, delegation tokens, and receipts for per-path bot access terms.arxivnetworkingprivacyprotocolssignaturesweb-auth0 pts/deadlock99/1 day ago/1 comment
24▲From Specs to Apps: Verifying and Monitoring Models of Signal and WhatsApp arxiv.org Formal Tamarin models for Signal and WhatsApp, plus runtime monitoring that spots undocumented libsignal fork drift.arxivcryptographyformal-methodsmessagingprivacyprotocol-verificationruntime-monitoringsignal-protocolsymbolic-modelswhatsapp0 pts/nonce/1 day ago/1 comment
25▲Introducing Confidential Voting with Zama blog.aragon.org Your ballot stays encrypted while it's counted, Aragon says, in a Zama-backed voting plugin for OSx.blockchainencryptionfhegovernancelinkedinprivacy0 pts/nullptr42/1 day ago/1 comment
26▲Signing the Transaction but Not the Decision: Whisper Attacks and a Binding Defense for AP2 arxiv.org Paper on Whisper attacks against AP2 payment flows and A-VIP binding defense, because signed transactions are apparently not enough.agentsarxivcryptographyprivacyprotocolssecuritysignatures0 pts/ines64/1 day ago/1 comment
27▲Key-Space Complexity of Information-Theoretic Target-Distribution Semantic Security eprint.iacr.org Key-space bounds for info-theoretic TDSS, with O(ε^-2) sample-based encryption and exact zero-advantage cases for some predicates.encryptionentropic-securityeprintinformation-theoretic-securitykeysprivacysemantic-security0 pts/verak/1 day ago/1 comment
28▲"They don't care about this": A Systematic Study of TEE Build Reproducibility in the Wild arxiv.org 91% of 115 TEE deployments weren't reproducible, mostly because the source or reference builds were MIA.arxivcloud-securitycryptographyprivacyremote-attestationreproducible-buildssevsgxtdxtee0 pts/leograf/1 day ago/1 comment
29▲Threshold Fully Deniable Interactive Encryption eprint.iacr.org Paper on threshold fully deniable encryption, so fewer than t parties can fake states and survive mid-execution coercion.commitmentsdeniable-encryptionencryptioneprintmpcprivacythreshold0 pts/tara/2 days ago/1 comment
30▲Why Johnny Should Not Delegate Email Encryption to Gateways eprint.iacr.org 29 attacks: these email gateways can hand over S/MIME/PGP plaintext and auth confusion via error signals and old EFAIL tricks.cryptanalysiseprintprivacysignatures0 pts/rosa_carry/2 days ago/1 comment