#QIP2026 is coming to Riga in less than a week!
Very excited to find my university (pictured) at the epicenter of a global academic event.
PSA: Pack some *really* warm clothing - we've got a real winter this time โ๏ธ
@helger.bsky.social
Cryptography professor at the University of Tartu, Estonia. Zero-Knowledge. SNARKs.
#QIP2026 is coming to Riga in less than a week!
Very excited to find my university (pictured) at the epicenter of a global academic event.
PSA: Pack some *really* warm clothing - we've got a real winter this time โ๏ธ
By an ex student (Behzad)
22.01.2026 11:08 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0=== FOR trend summary (up/down counts across changed conferences) === FOR up down net 4608 4 0 4 4604 2 1 1 4605 0 1 -1 4607 0 1 -1 4602 1 3 -2 4612 1 4 -3 4606 1 5 -4 4613 2 13 -11
New ICORE conference rankings are out. Theory, logic and formal methods seem to have been heavily penalised. I vibe coded an analysis of, for each Field of Research (FOR), how many associated venues increased or decreased in rank. Here's the summary. FOR 4613 had 13 venues decrease their rank! 1/2
21.01.2026 06:43 โ ๐ 8 ๐ 4 ๐ฌ 1 ๐ 1What is wild to me is the defense, BY THE NEURIPS BOARD, that fabricated citations do not mean "the content of the papers themselves [is] necessarily invalidated"
It does. It very much does. What do you think citing other work is for? What do you think writing a paper is for? What do you *think*?
In 1943, Norwegian author Knut Hamsun gave his Nobel Prize to Joseph Goebbels. So history _does_ repeat itself.
17.01.2026 04:10 โ ๐ 0 ๐ 1 ๐ฌ 0 ๐ 0that's an interesting experiment (as a cryptographer, i am of course worried by adversarial authors)
12.01.2026 19:34 โ ๐ 2 ๐ 0 ๐ฌ 0 ๐ 0what do you mean by slow month? Christmas means no committee meetings.
06.01.2026 12:34 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0This sounds really cool
06.01.2026 12:32 โ ๐ 2 ๐ 0 ๐ฌ 0 ๐ 0New year, new pairing
03.01.2026 12:23 โ ๐ 14 ๐ 4 ๐ฌ 1 ๐ 03a didn't take long
03.01.2026 11:04 โ ๐ 2 ๐ 0 ๐ฌ 1 ๐ 0Super exciting work from Ziyi and Eylon! They construct the first SNARG for NP in the *plain* model (no random oracle) using *only* (subexponential) LWE!
Perhaps most surprisingly, the SNARG is one (very clever) instantiation of the classical Killian-Micali construction!
It was a big year for mathematics. youtu.be/hRpcWpAeWng
18.12.2025 20:18 โ ๐ 47 ๐ 18 ๐ฌ 0 ๐ 2Your quarterly reminder to submit a paper to Communications in Cryptology...
cic.iacr.org
It is Diamond Open Access (readers and authors do not pay) and it contains all your new cool cryptographic research.
Next deadline for submission is Feb 2nd.
2 tons of vegemite?
16.12.2025 02:24 โ ๐ 1 ๐ 0 ๐ฌ 1 ๐ 0Reviewers should also state if LLMs are permitted to be used, be coauthors, or main authors of the reviewed papers
11.12.2025 22:00 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0Ask the LLM to ignore the spam folder
11.12.2025 21:56 โ ๐ 2 ๐ 0 ๐ฌ 0 ๐ 0as those of a toddler, yes
11.12.2025 14:39 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0The entries of rebuttal that correspond to personal attacks will only be visible to the reviewers after your papers has been rejected
11.12.2025 12:05 โ ๐ 1 ๐ 0 ๐ฌ 2 ๐ 0The rebuttal only has to correct technical misunderstandings and not resort to personal attacks
11.12.2025 12:01 โ ๐ 1 ๐ 0 ๐ฌ 1 ๐ 0There's only one house so ugly...
11.12.2025 11:58 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0If you swap each letter in โbombโ with the next letter in the alphabet, youโll get โcpnc.โ Recently, scientists showed that and other methods can bypass filters on LLMs like Gemini, DeepSeek and Grok. @peterha2l.bsky.social reports: www.quantamagazine.org/cryptographe...
10.12.2025 15:42 โ ๐ 23 ๐ 8 ๐ฌ 0 ๐ 1Abstract. We prove that SVP_(p) is NP-hard to approximate within a factor of 2^(log^(1โ โโ ฮต)n), for all constants ฮตโ>โ0 and pโ>โ2, under standard deterministic Karp reductions. This result is also the first proof that SVP_(p) is NP-hard in a finite โ_(p) norm. Hardness for SVP_(p) with p finite was previously only known if NP โ RP, and under that assumption, hardness of approximation was only known for all constant factors. As a corollary to our main theorem, we show that under the Sliding Scale Conjecture, SVP_(p) is NP-hard to approximate within a small polynomial factor, for all constants pโ>โ2. Our proof techniques are surprisingly elementary; we reduce from a regularized PCP instance directly to the shortest vector problem by using simple gadgets related to Vandermonde matrices and Hadamard matrices.
SVP_(p) is Deterministically NP-Hard for all pโ>โ2, Even to Approximate Within a Factor of 2^(log^(1โ โโ ฮต)n) (Isaac M Hair, Amit Sahai) ia.cr/2025/2181
02.12.2025 22:58 โ ๐ 7 ๐ 3 ๐ฌ 0 ๐ 0how many of them are virtual? Those should not really count...
08.12.2025 15:08 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0Abstract. Hash-based succinct non-interactive arguments (SNARGs) are a widely studied and deployed class of proof systems. The security of practical hash-based SNARGs relies on two combinatorial parameters of its underlying linear code ๐: a distance-preservation error ฮต(๐,โฮด) and the list size |ฮ(๐,โฮด)| (both parametrized by a proximity parameter ฮด). Optimistically, one might hope that these parameters are bounded all the way to the capacity regime: when the proximity parameter ฮด approaches the minimum distance of the code ฮด(๐). Perhaps too optimistically, several deployed hash-based SNARGs indeed operate in this regime, and initiatives such as the Ethereum Proximity Prize investigate to which extent soundness is preserved in this setting. We present a minimal toy protocol whose analysis captures most of the complexity of state-of-the-art hash-based SNARGs, and present a generic attack whose success probability depends on the list size |ฮ(๐,โฮด)|. Further, we investigate the common settings when the code ๐ is an extension code over a field ๐ฝ of a base code ๐_(๐น) over a small base field ๐น. In this setting, we show that classical combinatorial lower bounds on the list-size of the code yields strong attacks that affect the regimes in which hash-based SNARGs operate in practice.
Image showing part 2 of abstract.
Small-field hash-based SNARGs are less sound than conjectured (Giacomo Fenzi, Antonio Sanso) ia.cr/2025/2197
05.12.2025 11:03 โ ๐ 5 ๐ 2 ๐ฌ 0 ๐ 0I've been going over the responses to the survey from IACR members about publishing and conferences, and I keep coming back to the fact that I think there should be _fewer_ conferences and _more_ journals. This coupling of talks to papers is not healthy.
05.12.2025 22:04 โ ๐ 9 ๐ 3 ๐ฌ 1 ๐ 0i think you will now be famous only because of this picture and nothing else you did in your life
23.11.2025 13:33 โ ๐ 1 ๐ 0 ๐ฌ 1 ๐ 0(By ... an exstudent, Shuto)
22.11.2025 21:49 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0Look, ma, we are in the News www.nytimes.com/2025/11/21/w...
22.11.2025 02:51 โ ๐ 13 ๐ 3 ๐ฌ 2 ๐ 0by ex-student (Hamid)
21.11.2025 15:47 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0While I can understand how some reviewers in cryptography research are frustrated with the process, I cannot imagine how bad it is in machine learning. ncfrey.substack.com/p/publishing...
15.11.2025 08:30 โ ๐ 2 ๐ 2 ๐ฌ 0 ๐ 0