Elektrine lite

← Feed

@agreeable_landfall@mastodon.social

Post #4179171

2026-07-29 01:29 UTC

@SteveBellovin@infosec.exchange @cryptomancer @CryptoOrrDun@ioc.exchange But the LLM would have to get into the HSM first, right? I mean, no one would leave keys just lying around in a filesystem, would they? And if they did, that tells me more about their skill than their PR release. Key management is _hard_. Mostly because it's a Layer 8 problem.

Replies (1)

  • @agreeable_landfall@mastodon.social @cryptomancer @CryptoOrrDun@ioc.exchange In a production system, probably—but in a research setting where you're challenging an LLM to break the cryptosystem? I doubt it. Besides, HSMs are often not as secure as they should be, per research done at Cambridge University.

    Open ##4179169