Groups
Groups
Sign in
Groups
Groups
pqc-forum
Conversations
About
Send feedback
Help
Group path
pqc-forum
Contact owners and managers
1–30 of 1249
Mark all as read
Report group
0 selected
Demi Marie Obenour
, …
Natalia
6
3:56 PM
Design goals for future KEMs
On 7/26/26 14:21, DJ Bernstein wrote: >>>> Since real protocols generally give >>
unread,
Design goals for future KEMs
On 7/26/26 14:21, DJ Bernstein wrote: >>>> Since real protocols generally give >>
3:56 PM
Demi Marie Obenour
3:49 PM
Should HQC use explicit rejection?
Explicit rejection was recommended by Sophie Schmieg at the end of <https://keymaterial.net/2024/
unread,
Should HQC use explicit rejection?
Explicit rejection was recommended by Sophie Schmieg at the end of <https://keymaterial.net/2024/
3:49 PM
Demi Marie Obenour
, …
Bo Lin
9
5:34 AM
HQC deployment scenarios
Lightweight Authenticated Key Exchange In the above post, the application scopes of ML-KEM and HQC
unread,
HQC deployment scenarios
Lightweight Authenticated Key Exchange In the above post, the application scopes of ML-KEM and HQC
5:34 AM
Steve Weis
, …
Cong Ling
22
Aug 1
HAWK-n Key Recovery Reduces to SVP in Dimension n/2 + 1
AI has now also surpassed humans in lattice theory... Today, OpenAI announced a new upper bound of
unread,
HAWK-n Key Recovery Reduces to SVP in Dimension n/2 + 1
AI has now also surpassed humans in lattice theory... Today, OpenAI announced a new upper bound of
Aug 1
dustin...@nist.gov
2
Jul 31
Guidelines for tweaks for the Onramp Round 3 Candidates
All, A few of the candidate submission teams have asked for some more time to finalize their updated
unread,
Guidelines for tweaks for the Onramp Round 3 Candidates
All, A few of the candidate submission teams have asked for some more time to finalize their updated
Jul 31
Markku-Juhani O. Saarinen
, …
Simo Sorce
21
Jul 31
ENISA opens a call to participate in the public review of “Agreed Cryptographic Mechanisms” until end of July
John, the initial two general sections are to be applauded. I have reviewed the same documents
unread,
ENISA opens a call to participate in the public review of “Agreed Cryptographic Mechanisms” until end of July
John, the initial two general sections are to be applauded. I have reviewed the same documents
Jul 31
Décio Luiz Gazzoni Filho
,
D. J. Bernstein
2
Jul 31
[OFFICIAL COMMENT] SQIsign lives
John Mattsson writes (in another thread): > As stated in the paper: > "The impact on
unread,
[OFFICIAL COMMENT] SQIsign lives
John Mattsson writes (in another thread): > As stated in the paper: > "The impact on
Jul 31
Demi Marie Obenour
Jul 30
Classic McEliece ISO standard is compatible with the official specification on the website
While the Classic McEliece ISO standard is paywalled, https://classic.mceliece.org/iso.html is clear
unread,
Classic McEliece ISO standard is compatible with the official specification on the website
While the Classic McEliece ISO standard is paywalled, https://classic.mceliece.org/iso.html is clear
Jul 30
atsec information security
Jul 29
Registration and the Call for Presentations is open for the FIPS 'n' Chips Conference
Hello from Austin... This might be of interest, since PQC will feature heavily due to the CNSA 2.0
unread,
Registration and the Call for Presentations is open for the FIPS 'n' Chips Conference
Hello from Austin... This might be of interest, since PQC will feature heavily due to the CNSA 2.0
Jul 29
Biochain
Jul 29
Small ML-DSA-44 based L1 chain — open for review if anyone's interested
Hi all, We've built a small, early-stage Layer-1 blockchain using ML-DSA-44 (CRYSTALS-Dilithium3)
unread,
Small ML-DSA-44 based L1 chain — open for review if anyone's interested
Hi all, We've built a small, early-stage Layer-1 blockchain using ML-DSA-44 (CRYSTALS-Dilithium3)
Jul 29
Doge Protocol
, …
Kevin Chadwick
23
Jul 28
Hypothetical scenario; Post AI cryptography?
On Tue, 4 Mar 2025, 22:07 Oscar Smith, <oscard...@gmail.com> wrote: This is very much a side
unread,
Hypothetical scenario; Post AI cryptography?
On Tue, 4 Mar 2025, 22:07 Oscar Smith, <oscard...@gmail.com> wrote: This is very much a side
Jul 28
Demi Marie Obenour
, …
Bas Westerbaan
4
Jul 27
ML-KEM-BIND: A wrapper around ML-KEM with better binding properties
Neat idea, but is the squeeze worth the juice? ML-KEM has pretty good binding properties already:
unread,
ML-KEM-BIND: A wrapper around ML-KEM with better binding properties
Neat idea, but is the squeeze worth the juice? ML-KEM has pretty good binding properties already:
Jul 27
Mohit Rai
, …
Demi Marie Obenour
4
Jul 26
Investigating the Quantum Safe Migration of IETF protocol suite
On 7/26/26 10:40, Mohit Rai wrote: > Hello Everyone, > > My name is Mohit and I am working
unread,
Investigating the Quantum Safe Migration of IETF protocol suite
On 7/26/26 10:40, Mohit Rai wrote: > Hello Everyone, > > My name is Mohit and I am working
Jul 26
John Mattsson
,
Loganaden Velvindron
4
Jul 25
Government–Industry Dialogue Public Side Meeting at IETF 126 Vienna
Hi, Thanks to everyone who participated in the side meeting! The meeting was a great success, with
unread,
Government–Industry Dialogue Public Side Meeting at IETF 126 Vienna
Hi, Thanks to everyone who participated in the side meeting! The meeting was a great success, with
Jul 25
Dinesh Mendhe
, …
Demi Marie Obenour
5
Jul 25
[Deployment] ML-DSA-65 as the default signature for a federated identity and content-provenance protocol (TIP)
On 6/25/26 01:11, Raymond Chang wrote: > Dinesh, > > Glad it was useful. Quick takes on your
unread,
[Deployment] ML-DSA-65 as the default signature for a federated identity and content-provenance protocol (TIP)
On 6/25/26 01:11, Raymond Chang wrote: > Dinesh, > > Glad it was useful. Quick takes on your
Jul 25
Becker, Hanno
, …
Natalia
8
Jul 23
ML-DSA signing failure rate
Short video on where we're at: https://youtube.com/watch?v=3b8dsXnDZ3Y&is=A1CtfXi1zgIMbWC5
unread,
ML-DSA signing failure rate
Short video on where we're at: https://youtube.com/watch?v=3b8dsXnDZ3Y&is=A1CtfXi1zgIMbWC5
Jul 23
Samyuktha M
Jul 21
Bitsliced Jasmin Implementation of Mayo - Round 2 Specification
Dear All, I have implemented the Mayo signature scheme in Jasmin based on the NIST Additional call
unread,
Bitsliced Jasmin Implementation of Mayo - Round 2 Specification
Dear All, I have implemented the Mayo signature scheme in Jasmin based on the NIST Additional call
Jul 21
Watson Ladd
, …
Falko Strenzke
41
Jul 20
Use cases for small signatures and keys
Hi Patrick, very short hash-based signatures can be achieved with the scheme introduced in https://
unread,
Use cases for small signatures and keys
Hi Patrick, very short hash-based signatures can be achieved with the scheme introduced in https://
Jul 20
Nalini Elkins
Jul 20
Webinar: Dr. Vadim Lyubashevsky: co-author of ML-KEM / ML-DSA
Industry Network Technology Council, a nonprofit 501(3)(C) organization is proud to present awebinar
unread,
Webinar: Dr. Vadim Lyubashevsky: co-author of ML-KEM / ML-DSA
Industry Network Technology Council, a nonprofit 501(3)(C) organization is proud to present awebinar
Jul 20
Demi Marie Obenour
,
Krzysztof Kwiatkowski
3
Jul 18
Meta: Is this forum for PQC in general, or just for the NIST standardization process?
Thank you. Are ideas from people who aren't professional cryptographers welcome? I'm just an
unread,
Meta: Is this forum for PQC in general, or just for the NIST standardization process?
Thank you. Are ideas from people who aren't professional cryptographers welcome? I'm just an
Jul 18
Lorenz Panny
,
Meena Singh Dilip Thakur
2
Jul 14
MathPQC '26 in Germany (September 7 to 11)
TCS Confidential Can we have virtual option. Many Thanks, Meena, Scientist, Cybersecurity and Privacy
unread,
MathPQC '26 in Germany (September 7 to 11)
TCS Confidential Can we have virtual option. Many Thanks, Meena, Scientist, Cybersecurity and Privacy
Jul 14
dustin...@nist.gov
, …
Ryad Benadjila
55
Jul 13
Announcement of the 3rd Round Onramp Candidates
Hi Bas, Thanks for the clarifications and for the normalization proposal. Agreed that the numbers
unread,
Announcement of the 3rd Round Onramp Candidates
Hi Bas, Thanks for the clarifications and for the normalization proposal. Agreed that the numbers
Jul 13
Demi Marie Obenour
Jul 9
API for OW-CPA only KEMs
IND-CPA only KEMs have advantages when UDP must be used as a transport, as they are more compact and
unread,
API for OW-CPA only KEMs
IND-CPA only KEMs have advantages when UDP must be used as a transport, as they are more compact and
Jul 9
Demi Marie Obenour
, …
Tony Arcieri
4
Jul 7
Generating ML-KEM z from d to prevent rebinding attacks
Some previous discussion on 32-byte seeds: https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/
unread,
Generating ML-KEM z from d to prevent rebinding attacks
Some previous discussion on 32-byte seeds: https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/
Jul 7
Thom Wiggers
, …
John Mattsson
6
Jul 5
PQ KEM comparison tool
Thanks Damien for the heads-up. MIKE looks very promising. If the reported key sizes and performance
unread,
PQ KEM comparison tool
Thanks Damien for the heads-up. MIKE looks very promising. If the reported key sizes and performance
Jul 5
Markku-Juhani O. Saarinen
Jul 5
On the recent "Guessing Game" Attack (2026/1318) on Hawk
Hi All, A recent preprint "Cryptanalysis of HAWK: a Guessing Game" ( https://eprint.iacr.
unread,
On the recent "Guessing Game" Attack (2026/1318) on Hawk
Hi All, A recent preprint "Cryptanalysis of HAWK: a Guessing Game" ( https://eprint.iacr.
Jul 5
Nalini Elkins
, …
John Gray
11
Jul 3
Merkle Tree Certificates and Enterprises
John, Great! I may do a draft at PLANTS also. I will contact you privately as our nonprofit (Industry
unread,
Merkle Tree Certificates and Enterprises
John, Great! I may do a draft at PLANTS also. I will contact you privately as our nonprofit (Industry
Jul 3
Nalini Elkins
Jul 2
Webinar: How Quantum Computing Will Break Today’s Encryption & What is PQC?
https://us06web.zoom.us/meeting/register/NRIh1qUVRyqRfJOfMdhFwQ#/registration Modern digital security
unread,
Webinar: How Quantum Computing Will Break Today’s Encryption & What is PQC?
https://us06web.zoom.us/meeting/register/NRIh1qUVRyqRfJOfMdhFwQ#/registration Modern digital security
Jul 2
dustin...@nist.gov
, …
Thom Wiggers
4
Jul 1
Call for comments: ipd SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
The comments received on ipd SP 800-230 have been posted at: https://csrc.nist.gov/pubs/sp/800/230/
unread,
Call for comments: ipd SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
The comments received on ipd SP 800-230 have been posted at: https://csrc.nist.gov/pubs/sp/800/230/
Jul 1
Hamilton Silberg
,
dustin...@nist.gov
2
Jul 1
Call for comments: ipd SP 800-133r3 Recommendation for Cryptographic Key Generation
The comments NIST received on ipd SP 800-133r3 have been posted: https://csrc.nist.gov/pubs/sp/800/
unread,
Call for comments: ipd SP 800-133r3 Recommendation for Cryptographic Key Generation
The comments NIST received on ipd SP 800-133r3 have been posted: https://csrc.nist.gov/pubs/sp/800/
Jul 1