Post #1164427
2026-04-15 12:51 UTC
I wrote up in the TLS mailing list why I think composite signatures (ML-DSA + ECDSA/RSA) are a net negative, will hurt the ecosystem, and should not be implemented.
Hybrid key exchange was simple and self-contained. Hybrid signatures would be a mountain of complexity in code responsible for half of sev:crit in crypto libraries since 2020.
https://mailarchive.ietf.org/arch/msg/tls/oh3jmmkHzHdp1hk4R4M9QjkmvBk/
Replies (1)
-
@ck@chaos.social 2026-04-15 13:05
@filippo@abyssdomain.expert Are you sure there is no NSA radio tower directed at your work station, coercing you to say that?