Groups
Groups
Sign in
Groups
Groups
pqc-forum
Conversations
About
Send feedback
Help
Group path
pqc-forum
Contact owners and managers
1–30 of 1243
Mark all as read
Report group
0 selected
Demi Marie Obenour
, …
Bas Westerbaan
4
Jul 27
ML-KEM-BIND: A wrapper around ML-KEM with better binding properties
Neat idea, but is the squeeze worth the juice? ML-KEM has pretty good binding properties already:
unread,
ML-KEM-BIND: A wrapper around ML-KEM with better binding properties
Neat idea, but is the squeeze worth the juice? ML-KEM has pretty good binding properties already:
Jul 27
Mohit Rai
, …
Demi Marie Obenour
4
Jul 26
Investigating the Quantum Safe Migration of IETF protocol suite
On 7/26/26 10:40, Mohit Rai wrote: > Hello Everyone, > > My name is Mohit and I am working
unread,
Investigating the Quantum Safe Migration of IETF protocol suite
On 7/26/26 10:40, Mohit Rai wrote: > Hello Everyone, > > My name is Mohit and I am working
Jul 26
Demi Marie Obenour
,
D. J. Bernstein
4
Jul 26
Design goals for future KEMs
> > > Since real protocols generally give > > > a plaintext confirmation oracle,
unread,
Design goals for future KEMs
> > > Since real protocols generally give > > > a plaintext confirmation oracle,
Jul 26
John Mattsson
,
Loganaden Velvindron
4
Jul 25
Government–Industry Dialogue Public Side Meeting at IETF 126 Vienna
Hi, Thanks to everyone who participated in the side meeting! The meeting was a great success, with
unread,
Government–Industry Dialogue Public Side Meeting at IETF 126 Vienna
Hi, Thanks to everyone who participated in the side meeting! The meeting was a great success, with
Jul 25
Dinesh Mendhe
, …
Demi Marie Obenour
5
Jul 25
[Deployment] ML-DSA-65 as the default signature for a federated identity and content-provenance protocol (TIP)
On 6/25/26 01:11, Raymond Chang wrote: > Dinesh, > > Glad it was useful. Quick takes on your
unread,
[Deployment] ML-DSA-65 as the default signature for a federated identity and content-provenance protocol (TIP)
On 6/25/26 01:11, Raymond Chang wrote: > Dinesh, > > Glad it was useful. Quick takes on your
Jul 25
Décio Luiz Gazzoni Filho
Jul 23
[OFFICIAL COMMENT] SQIsign lives
The SQIsign team would like to bring your attention to https://ia.cr/2026/1486, where a new attack
unread,
[OFFICIAL COMMENT] SQIsign lives
The SQIsign team would like to bring your attention to https://ia.cr/2026/1486, where a new attack
Jul 23
Becker, Hanno
, …
Natalia
8
Jul 23
ML-DSA signing failure rate
Short video on where we're at: https://youtube.com/watch?v=3b8dsXnDZ3Y&is=A1CtfXi1zgIMbWC5
unread,
ML-DSA signing failure rate
Short video on where we're at: https://youtube.com/watch?v=3b8dsXnDZ3Y&is=A1CtfXi1zgIMbWC5
Jul 23
Markku-Juhani O. Saarinen
, …
William Whyte
19
Jul 21
ENISA opens a call to participate in the public review of “Agreed Cryptographic Mechanisms” until end of July
Agree with Markku — the use of the ACM in CRA is that there are certain cases where the use of an ACM
unread,
ENISA opens a call to participate in the public review of “Agreed Cryptographic Mechanisms” until end of July
Agree with Markku — the use of the ACM in CRA is that there are certain cases where the use of an ACM
Jul 21
Samyuktha M
Jul 21
Bitsliced Jasmin Implementation of Mayo - Round 2 Specification
Dear All, I have implemented the Mayo signature scheme in Jasmin based on the NIST Additional call
unread,
Bitsliced Jasmin Implementation of Mayo - Round 2 Specification
Dear All, I have implemented the Mayo signature scheme in Jasmin based on the NIST Additional call
Jul 21
Watson Ladd
, …
Falko Strenzke
41
Jul 20
Use cases for small signatures and keys
Hi Patrick, very short hash-based signatures can be achieved with the scheme introduced in https://
unread,
Use cases for small signatures and keys
Hi Patrick, very short hash-based signatures can be achieved with the scheme introduced in https://
Jul 20
Nalini Elkins
Jul 20
Webinar: Dr. Vadim Lyubashevsky: co-author of ML-KEM / ML-DSA
Industry Network Technology Council, a nonprofit 501(3)(C) organization is proud to present awebinar
unread,
Webinar: Dr. Vadim Lyubashevsky: co-author of ML-KEM / ML-DSA
Industry Network Technology Council, a nonprofit 501(3)(C) organization is proud to present awebinar
Jul 20
Demi Marie Obenour
,
Krzysztof Kwiatkowski
3
Jul 18
Meta: Is this forum for PQC in general, or just for the NIST standardization process?
Thank you. Are ideas from people who aren't professional cryptographers welcome? I'm just an
unread,
Meta: Is this forum for PQC in general, or just for the NIST standardization process?
Thank you. Are ideas from people who aren't professional cryptographers welcome? I'm just an
Jul 18
Lorenz Panny
,
Meena Singh Dilip Thakur
2
Jul 14
MathPQC '26 in Germany (September 7 to 11)
TCS Confidential Can we have virtual option. Many Thanks, Meena, Scientist, Cybersecurity and Privacy
unread,
MathPQC '26 in Germany (September 7 to 11)
TCS Confidential Can we have virtual option. Many Thanks, Meena, Scientist, Cybersecurity and Privacy
Jul 14
dustin...@nist.gov
, …
Ryad Benadjila
55
Jul 13
Announcement of the 3rd Round Onramp Candidates
Hi Bas, Thanks for the clarifications and for the normalization proposal. Agreed that the numbers
unread,
Announcement of the 3rd Round Onramp Candidates
Hi Bas, Thanks for the clarifications and for the normalization proposal. Agreed that the numbers
Jul 13
Demi Marie Obenour
Jul 9
API for OW-CPA only KEMs
IND-CPA only KEMs have advantages when UDP must be used as a transport, as they are more compact and
unread,
API for OW-CPA only KEMs
IND-CPA only KEMs have advantages when UDP must be used as a transport, as they are more compact and
Jul 9
Demi Marie Obenour
, …
Tony Arcieri
4
Jul 7
Generating ML-KEM z from d to prevent rebinding attacks
Some previous discussion on 32-byte seeds: https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/
unread,
Generating ML-KEM z from d to prevent rebinding attacks
Some previous discussion on 32-byte seeds: https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/
Jul 7
Thom Wiggers
, …
John Mattsson
6
Jul 5
PQ KEM comparison tool
Thanks Damien for the heads-up. MIKE looks very promising. If the reported key sizes and performance
unread,
PQ KEM comparison tool
Thanks Damien for the heads-up. MIKE looks very promising. If the reported key sizes and performance
Jul 5
Markku-Juhani O. Saarinen
Jul 5
On the recent "Guessing Game" Attack (2026/1318) on Hawk
Hi All, A recent preprint "Cryptanalysis of HAWK: a Guessing Game" ( https://eprint.iacr.
unread,
On the recent "Guessing Game" Attack (2026/1318) on Hawk
Hi All, A recent preprint "Cryptanalysis of HAWK: a Guessing Game" ( https://eprint.iacr.
Jul 5
Nalini Elkins
, …
John Gray
11
Jul 3
Merkle Tree Certificates and Enterprises
John, Great! I may do a draft at PLANTS also. I will contact you privately as our nonprofit (Industry
unread,
Merkle Tree Certificates and Enterprises
John, Great! I may do a draft at PLANTS also. I will contact you privately as our nonprofit (Industry
Jul 3
Nalini Elkins
Jul 2
Webinar: How Quantum Computing Will Break Today’s Encryption & What is PQC?
https://us06web.zoom.us/meeting/register/NRIh1qUVRyqRfJOfMdhFwQ#/registration Modern digital security
unread,
Webinar: How Quantum Computing Will Break Today’s Encryption & What is PQC?
https://us06web.zoom.us/meeting/register/NRIh1qUVRyqRfJOfMdhFwQ#/registration Modern digital security
Jul 2
dustin...@nist.gov
, …
Thom Wiggers
4
Jul 1
Call for comments: ipd SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
The comments received on ipd SP 800-230 have been posted at: https://csrc.nist.gov/pubs/sp/800/230/
unread,
Call for comments: ipd SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
The comments received on ipd SP 800-230 have been posted at: https://csrc.nist.gov/pubs/sp/800/230/
Jul 1
Hamilton Silberg
,
dustin...@nist.gov
2
Jul 1
Call for comments: ipd SP 800-133r3 Recommendation for Cryptographic Key Generation
The comments NIST received on ipd SP 800-133r3 have been posted: https://csrc.nist.gov/pubs/sp/800/
unread,
Call for comments: ipd SP 800-133r3 Recommendation for Cryptographic Key Generation
The comments NIST received on ipd SP 800-133r3 have been posted: https://csrc.nist.gov/pubs/sp/800/
Jul 1
Stern, Morgan B
, …
Thom Wiggers
3
Jul 1
Public comments on SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
Hi all, I think that Chris very eloquently summarises why XMSS/LMS are very scary. Like him, I would
unread,
Public comments on SP 800-230: Additional SLH-DSA Parameter Sets for Limited Signature Use Cases
Hi all, I think that Chris very eloquently summarises why XMSS/LMS are very scary. Like him, I would
Jul 1
Arvin
Jun 30
Computationally Infeasible to break, pending peer review. I stand by that Statement.
Good afternoon Explorers, Let's save the world's sensitive data. Shall we? It is true, my
unread,
Computationally Infeasible to break, pending peer review. I stand by that Statement.
Good afternoon Explorers, Let's save the world's sensitive data. Shall we? It is true, my
Jun 30
Ahmet SINAK
Jun 30
LightSec 2026: Call for Papers and July 13 Deadline
Dear PQC Forum colleagues, We are pleased to invite you to submit your research papers to the 7th
unread,
LightSec 2026: Call for Papers and July 13 Deadline
Dear PQC Forum colleagues, We are pleased to invite you to submit your research papers to the 7th
Jun 30
rem
Jun 27
Remzar: Live ML-DSA / ML-KEM L1 Ledger for Verified Data.
Dear PQC Forum, I wanted to share a concrete implementation report from a live blockchain system,
unread,
Remzar: Live ML-DSA / ML-KEM L1 Ledger for Verified Data.
Dear PQC Forum, I wanted to share a concrete implementation report from a live blockchain system,
Jun 27
Hiroki Furue
2
Jun 17
Cryptanalysis on UOV and its Variants
Dear all, We would like to update our previous post: we have withdrawn the complexity analysis of
unread,
Cryptanalysis on UOV and its Variants
Dear all, We would like to update our previous post: we have withdrawn the complexity analysis of
Jun 17
sal rashid
2
Jun 17
PIQ applications for JWT, encryption
There's also specifications for MLKEM and MLDSA support for Trusted Platform Modules (TPM) in rev
unread,
PIQ applications for JWT, encryption
There's also specifications for MLKEM and MLDSA support for Trusted Platform Modules (TPM) in rev
Jun 17
Aiden Tejada
, …
Joshua Holden
3
Jun 16
SCRMBL POC: Reconstruction-Dependent Security for Post-Decryption Data Protection
Hi, Aiden, This list is supposed to be focused pretty tightly on PQC. I'm not actually sure if
unread,
SCRMBL POC: Reconstruction-Dependent Security for Post-Decryption Data Protection
Hi, Aiden, This list is supposed to be focused pretty tightly on PQC. I'm not actually sure if
Jun 16
Felix Sagaz
2
Jun 8
Exploratory Security Rationale and Tentative Parameter Mapping for a Fractal Spectral Construction
Thank you for the detailed and constructive questions. Below I provide a consolidated response
unread,
Exploratory Security Rationale and Tentative Parameter Mapping for a Fractal Spectral Construction
Thank you for the detailed and constructive questions. Below I provide a consolidated response
Jun 8