curves
Thread
Date
Earlier messages
Messages by Thread
Re: [curves] Switch to post-quantum cryptography
Robert Ransom
Re: [curves] Switch to post-quantum cryptography
Robert Ransom
Re: [curves] Switch to post-quantum cryptography
Robert Ransom
Re: [curves] Switch to post-quantum cryptography
Robert Ransom
[curves] nist free curves
Gabx
Re: [curves] nist free curves
Ben Harris
Re: [curves] nist free curves
Tanja Lange
Re: [curves] nist free curves
taxinfo
[curves] encoding points -> bitstrings: indistinguishability, PAKE?
Trevor Perrin
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Rene Struik
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Mike Hamburg
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Joe
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Joe
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Trevor Perrin
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Mike Hamburg
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Ben Harris
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Trevor Perrin
Re: [curves] encoding points -> bitstrings: indistinguishability, PAKE?
Joe
[curves] Moving On... What about knots?
Brad Klee
Re: [curves] Moving On... What about knots?
Brad Klee
[curves] Webpage on pairing-friendly curves
Aurore Guillevic
[curves] BN254 and SPEKE
Van Gegel
Re: [curves] Webpage on pairing-friendly curves
Brad Klee
Re: [curves] Webpage on pairing-friendly curves
Brad Klee
[curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Björn Haase
Re: [curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Rene Struik
Re: [curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Björn Haase
Re: [curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Rene Struik
Re: [curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Björn Haase
Re: [curves] Is there an established name for the hardness assumption capturing twist security of a curve?
Mike Hamburg
[curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
Greg Maxwell
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
D. J. Bernstein
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
Conrado P . L . Gouvêa
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
Trevor Perrin
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
Conrado P . L . Gouvêa
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
Ben Harris
Re: [curves] Ed25519 / EdDSA key leakage due to fragility in recommended nonce procedure
steve
[curves] Schnorrkel
Jeff Burdges
[curves] Verifiable Delay Functions from Supersingular Isogenies and Pairings
Antonio Sanso
[curves] Curve cycles
Jeff Burdges
Re: [curves] Curve cycles
Michael Scott
Re: [curves] Curve cycles
Watson Ladd
Re: [curves] Curve cycles
Jeff Burdges
[curves] Finished series about simple Weierstrass form
Dominik Pantůček
[curves] New paper on Elliptic Curve attacks
Nick Sullivan
[curves] New paper on Elliptic Curve attacks
Antonio Sanso
[curves] Curve with group order 2^255-19
Andrew Poelstra
[curves] Schnorr NIZK over Curve 25519
Stojan Dimitrovski
Re: [curves] Schnorr NIZK over Curve 25519
Ben Smith
[curves] Montgomery/Edwards curve generation
Conrado P . L . Gouvêa
Re: [curves] Montgomery/Edwards curve generation
Mike Hamburg
Re: [curves] Montgomery/Edwards curve generation
Conrado P . L . Gouvêa
[curves] ECC introduction: point addition on simple Weierstrass form
Dominik Pantůček
Re: [curves] ECC introduction: point addition on simple Weierstrass form
Dominik Pantůček
[curves] ECC introduction: point addition on simple Weierstrass form
Dominik Pantůček
Re: [curves] ECC introduction: point addition on simple Weierstrass form
Dominik Pantůček
[curves] curve25519 without clamping
David Lazar
Re: [curves] curve25519 without clamping
David Lazar
[curves] Jacobi Quartic "Distortion Map"
Brad Klee
[curves] Generalized Mersenne Numbers
Antonio Sanso
[curves] Introduction to ECC
Jan Dušátko
Re: [curves] Introduction to ECC
Brad Klee
Re: [curves] Introduction to ECC
Dominik Pantůček
Re: [curves] Introduction to ECC
Brad Klee
Re: [curves] Introduction to ECC
Dominik Pantůček
Re: [curves] Introduction to ECC
Brad Klee
Re: [curves] Introduction to ECC
Jan Dušátko
Re: [curves] Introduction to ECC
Brad Klee
Re: [curves] Introduction to ECC
Cecilia Tanaka
Re: [curves] Introduction to ECC
Brad Klee
[curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
Re: [curves] new 25519 measurements of formally verified implementations
D. J. Bernstein
Re: [curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
Re: [curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
Re: [curves] new 25519 measurements of formally verified implementations
Armando Faz Hernández
Re: [curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
Re: [curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
Re: [curves] new 25519 measurements of formally verified implementations
Armando Faz Hernández
Re: [curves] new 25519 measurements of formally verified implementations
Jason A. Donenfeld
[curves] PrivacyPass
Trevor Perrin
Re: [curves] PrivacyPass
z...@manian.org
Re: [curves] PrivacyPass
Jeff Burdges
Re: [curves] PrivacyPass
Joe
Re: [curves] PrivacyPass
Mathias Hall-Andersen
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Björn Haase
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Andy Isaacson
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Gregory Maxwell
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Björn Haase
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Arasch Honarbacht
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Mike Hamburg
Re: [curves] Fwd: Re: Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Björn Haase
[curves] SPEKE using Curve25519 - elligator2 required or recommended?
Arasch Honarbacht
[curves] Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Björn Haase
Re: [curves] Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Arasch Honarbacht
Re: [curves] Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Mike Hamburg
Re: [curves] Fw: Aw: SPEKE using Curve25519 - elligator2 required or recommended?
Arasch Honarbacht
[curves] Transformation of Jacobi Quartic
Brad Klee
[curves] Transformations of Edward's Curve
bradklee
[curves] Granger-Moss primes for 32 bit implementations
Kyle Butt
Re: [curves] Granger-Moss primes for 32 bit implementations
Mike Hamburg
Re: [curves] Granger-Moss primes for 32 bit implementations
Kyle Butt
Re: [curves] Granger-Moss primes for 32 bit implementations
Kyle Butt
Re: [curves] Granger-Moss primes for 32 bit implementations
Kyle Butt
Re: [curves] Granger-Moss primes for 32 bit implementations
Kyle Butt
[curves] Curve19119: A legacy-level little brother of Curve25519
Björn Haase
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Taylor R Campbell
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Mike Hamburg
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Taylor R Campbell
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Trevor Perrin
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Björn Haase
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Mike Hamburg
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Björn Haase
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Mike Hamburg
Re: [curves] Curve19119: A legacy-level little brother of Curve25519
Björn Haase
[curves] Constant-time big-integer support in Go standard library
Bryan Ford
Re: [curves] Constant-time big-integer support in Go standard library
Tony Arcieri
[curves] Collective Edwards-Curve Digital Signature Algorithm
Nicolas Gailly
Re: [curves] Collective Edwards-Curve Digital Signature Algorithm
Gregory Maxwell
Re: [curves] Collective Edwards-Curve Digital Signature Algorithm
Bryan Ford
[curves] Generalizing EdDSA
Trevor Perrin
Re: [curves] Generalizing EdDSA
Tony Arcieri
Re: [curves] Generalizing EdDSA
Oleg Andreev
Re: [curves] Generalizing EdDSA
Trevor Perrin
[curves] XEdDSA test vectors
Taylor R Campbell
[curves] Historical courses and resorts in Elliptic Curves Cryptography - Is Curve25519 dead?
Antonio Sanso
[curves] qDSA signatures
Joost Renes
Re: [curves] qDSA signatures
Mike Hamburg
Re: [curves] qDSA signatures
Joost Renes
Re: [curves] qDSA signatures
Mike Hamburg
[curves] Prime order curves vs Decaf
Tony Arcieri
Re: [curves] Prime order curves vs Decaf
Trevor Perrin
Re: [curves] Prime order curves vs Decaf
Henry de Valence
Re: [curves] Prime order curves vs Decaf
Joost Renes
[curves] Key reuse on different curves
_MiW
[curves] Computing an inverse scalar for Curve25519
Alexey Ermishkin
Re: [curves] Computing an inverse scalar for Curve25519
isis agora lovecruft
Re: [curves] Computing an inverse scalar for Curve25519
Alexey Ermishkin
Re: [curves] Computing an inverse scalar for Curve25519
Mike Hamburg
Re: [curves] Computing an inverse scalar for Curve25519
Max Skibinsky
Re: [curves] Computing an inverse scalar for Curve25519
Michael Scott
Re: [curves] Computing an inverse scalar for Curve25519
Max Skibinsky
[curves] Noise_IKpsk2_25519_ChaChaPoly_BLAKE2s first message benchmarks
Jason A. Donenfeld
[curves] CryptoNote and equivalent points
Trevor Perrin
Re: [curves] CryptoNote and equivalent points
Rene Struik
Re: [curves] CryptoNote and equivalent points
Mike Hamburg
Re: [curves] CryptoNote and equivalent points
Trevor Perrin
Re: [curves] CryptoNote and equivalent points
Tim Ruffing
Re: [curves] CryptoNote and equivalent points
Lee Clagett
Re: [curves] CryptoNote and equivalent points
Trevor Perrin
[curves] X25519 and zero outputs
Trevor Perrin
Re: [curves] X25519 and zero outputs
Brian Smith
[curves] To multiply or to add in HKD schemes?
Oleg Andreev
Re: [curves] To multiply or to add in HKD schemes?
Pieter Wuille
[curves] Scalar decomposition for FourQ
Chiraag Juvekar
Re: [curves] Scalar decomposition for FourQ
Watson Ladd
[curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Henry de Valence
Re: [curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Mike Hamburg
Re: [curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Oleg Andreev
Re: [curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Mike Hamburg
Re: [curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Taylor R Campbell
Re: [curves] Torsion-safe representatives (was: Ed25519 "clamping" and its effect on hierarchical key derivation)
Oleg Andreev
[curves] When is removing the cofactor (Decaf) a better choice?
Rosalie Tolentino
Re: [curves] When is removing the cofactor (Decaf) a better choice?
Mike Hamburg
[curves] Misc news (BLS12-381, VRFs, small subgroup attacks, workshop)
Trevor Perrin
[curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
z...@manian.org
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Gregory Maxwell
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Mike Hamburg
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Trevor Perrin
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Trevor Perrin
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Trevor Perrin
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Ron Garret
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Henry de Valence
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Taylor R Campbell
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Oleg Andreev
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Oleg Andreev
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Gregory Maxwell
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
D. J. Bernstein
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Ron Garret
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Oleg Andreev
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Tony Arcieri
Re: [curves] Ed25519 "clamping" and its effect on hierarchical key derivation
Ron Garret
[curves] Non-interactive zero knowledge proofs of discrete log equivalence
Tony Arcieri
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Philipp Jovanovic
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Trevor Perrin
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Oleg Andreev
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
isis agora lovecruft
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Watson Ladd
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Tim Ruffing
Re: [curves] Non-interactive zero knowledge proofs of discrete log equivalence
Tony Arcieri
[curves] How to find another generator on decaf_448?
Fan Jiang
Re: [curves] How to find another generator on decaf_448?
Mike Hamburg
Re: [curves] How to find another generator on decaf_448?
Fan Jiang
Re: [curves] How to find another generator on decaf_448?
Mike Hamburg
[curves] Elliptic curve primer
Ron Garret
Re: [curves] Elliptic curve primer
Björn Edström
Earlier messages