Profile banner
Profile picture

Matthew Green

@matthewdgreen.bsky.social

I teach cryptography at Johns Hopkins. https://blog.cryptographyengineering.com

created April 28, 2023

17,394 followers 401 following 1,590 posts

view profile on Bluesky

Posts

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Anyway I was on the east side of Manhattan and I was shocked that Brooklyn also has am identical Domino Sugar factory but I checked and theirs is full of knowledge workers using ChatGPT like a normal American city.

image
1/9/2025, 6:42:31 PM | 11 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

It’s not evident today but there’s even a cute little smokestack that pumps white smoke out into the tourist areas of the city, but it’s ok because we pretend it’s sugar and not a toxic blend of CO2 and PCBs.

1/9/2025, 6:37:25 PM | 10 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

In any other city this waterfront property would be an office space/condo. What I love about Baltimore is they’re actually making sugar in there.

image
1/9/2025, 6:04:14 PM | 34 1 | View on Bluesky | view

Profile picture Drew Harwell (@drewharwell.com) reposted

New: I looked at 90 porn sites to test the new age-verification law rewriting the web. The ones following the rules, and scanning visitors' faces, are crumbling, while the lawbreakers are doubling or tripling their traffic. One of many unintended consequences for an experimental tech wapo.st/47QuttW

31/8/2025, 11:31:27 AM | 1219 369 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I did and I tried to quote tweet but it was disabled :)

30/8/2025, 9:25:54 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

There are three price categories of rental car at the airport. They all rent basically the same cars, but one is seriously understaffed, one is majorly understaffed, and one is five separate rental companies operated by a single guy who also runs a Subway.

30/8/2025, 9:21:52 PM | 116 17 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Yesterday I posted something I got from a friend about an Apple hardware vuln. I was offline for a bit but some folks pointed out that it looked like slop. Deleted the post but apologies if it was.

30/8/2025, 6:53:49 PM | 25 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

I thought by now we’d have all the corn syrup and additives taken out of our food, instead of optional vaccines being banned. Oh well I guess maybe let’s give it another year.

30/8/2025, 6:50:32 PM | 85 11 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Why not?

28/8/2025, 6:15:12 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

We lost crypto years ago.

28/8/2025, 2:34:06 AM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

The important point being that, as someone who agrees with the severity of all that’s going on, I read my BlueSky timeline the way nuclear scientists expose themselves to major sources of radiation. And that’s not great.

28/8/2025, 2:32:49 AM | 31 2 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

In fairness sometimes the people on X are excited about Cracker Barrel logos or Sidney Sweeney so it’s not all crypto.

28/8/2025, 2:28:14 AM | 26 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

I’m not sure what’s better. To be on BlueSky and be aware of what’s happening and totally depressed all the time, or be on X and convinced that crypto matters.

28/8/2025, 2:26:38 AM | 90 8 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Evan I generally appreciate your commentary but please put this in a format that a slightly uninspired, tired person can understand because right now it reads like a Zen koan.

28/8/2025, 2:25:18 AM | 5 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

arstechnica.com/information-...

28/8/2025, 2:11:37 AM | 6 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I asked ChatGPT to typeset it and it now looks 8000% better. Even if it wouldn’t use the real JHU logo.

image image
26/8/2025, 11:23:57 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I’m not kidding. They had an entire task force, and nobody thought to use anything but the Windows default font.

26/8/2025, 11:16:39 PM | 9 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Imagine convening a committee on academic freedom and at the end up it you just dash off something in Arial.

26/8/2025, 11:15:13 PM | 10 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Pretty funny that anything you don’t like can be dealt with using culture war. I hate olives. Woke olives.

26/8/2025, 11:14:15 PM | 36 4 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

It’s a good statement! You’d think they could have used a nicer font though.

image
26/8/2025, 8:23:51 PM | 9 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

And for a lot of older people in small towns it still means that.

26/8/2025, 8:22:55 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

My university just sent out its yearly “please don’t protest on our campus” email, with a link to the Statement of Principles on Academic Freedom. And it reminded me that we only have this statement because some idiots tried to shut down my blog in 2013.

26/8/2025, 8:21:26 PM | 58 5 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Phone numbers are one of our last two multi-platform identifiers. 50 years from now we’ll still have them but nobody will remember what a phone call was.

26/8/2025, 4:04:19 PM | 43 5 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

But phone numbers are our last unique identifier!

26/8/2025, 4:02:59 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yup. I’ve read Matt Y for years and sure he sometimes had bad takes and was a bit of a contrarian but he was definitely a liberal. Now his audience makes GWB look liberal and his writing is terrible.

26/8/2025, 1:11:23 AM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

It’s weird reading the blog of a “prominent liberal pundit” and every single poster is a frothing conservative that would make the Bush cabinet look like liberals.

25/8/2025, 8:49:18 PM | 24 4 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

The readers on @mattyglesias.bsky.social’s are trying to decide if the leftists want to “destroy all capitalism” or merely embark on a more Marxist/Leninist program to collectivize the US. I am so glad I never moved to Substack.

25/8/2025, 8:45:50 PM | 17 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Is there any upside to answering the phone anymore? The scam rate used to hover around 75% and now it seems to be consistently close to 100%.

25/8/2025, 5:33:25 PM | 60 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

But it was so essential to your life that your phone immediately needed to inject it right into the most vulnerable bits of its brain.

24/8/2025, 3:49:31 PM | 2 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

And email. And ugh.

24/8/2025, 3:47:28 PM | 17 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Ugh I was like “wait is this going through iMessage” and then I remembered also there’s Airdrop.

24/8/2025, 3:47:18 PM | 20 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

The answer is “everyone”. Everyone could have predicted this. Why in the world are phones accepting JPEG lossless compression used inside of “DNG” files. My phone should only accept ASCII art.

24/8/2025, 3:44:14 PM | 48 5 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Sorry here’s the PoC. github.com/b1n4r1b01/n-...

24/8/2025, 3:42:55 PM | 21 4 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Oh look, the iOS vulnerability is yet another weird subcase of image decompression, who could possibly have predicted.

24/8/2025, 3:42:37 PM | 117 19 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

And what have we learned from this exercise in being concerned with labels instead of substance?

23/8/2025, 1:06:48 AM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Oh boy I’m looking forward to winning lots of political arguments with LLMs on this one.

22/8/2025, 10:02:34 PM | 56 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

We’re still having discussions about how Zohran Mamdani is a “socialist” because he wants to open one state-run grocery store, meanwhile the US government now controls 10% of Intel. I find this super amusing.

22/8/2025, 9:59:45 PM | 1497 419 | View on Bluesky | view

Profile picture nilay patel (@reckless.bsky.social) reposted

Three different Intel CEOs have tried everything to compete with TSMC and I promise you government control of the company is not going to work any better

22/8/2025, 9:11:30 PM | 319 52 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Lady professors are the only reason I got my hair cut from age 2-18.

22/8/2025, 9:45:52 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Fast Car is a really good cover, by the way. No disrespect to Luke.

22/8/2025, 9:23:58 PM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

The best thing about being a professor (or country singer) is that people will compliment you when you get too busy to trim your beard for a month or so, instead of (correctly) telling you that you look like Luke Combs.

22/8/2025, 9:21:29 PM | 12 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Sorry this thread is a mess of typos. I woke up at 5:30am and apparently it’s gonna be typos all day.

22/8/2025, 10:45:40 AM | 20 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Maybe I’m being too glib about this. If someone unlocks your car and steals something, that really sucks. I understand the desire to blame some hardware tool. But the tools are too easy to build now, there’s no putting that genie back in the bottle. Manufacturers *can* make cars resistant to them.

22/8/2025, 10:44:45 AM | 51 3 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

For fancy RF stuff, various industries have been able to get away with kindergarten security protocols because “nobody will ever figure out how to intercept a radio broadcast!!!!” Turns out that’s not true and now those security protocols have to be brought into the 21st century. That’s good!

22/8/2025, 10:41:23 AM | 59 8 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

The last thought is that tools like the Flipper Zero are really good and healthy for industries like this. Encryption for the web and stuff used to be basically non-existent just a few years ago: now it’s everywhere. That’s because people built and distributed (software) tools like Firesheep.

22/8/2025, 10:39:11 AM | 58 8 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

But that is 100% on the car manufacturers. If you’re shipping cars without basic inexpensive anti-theft technology we’ve had since the 2000s, that’s malpractice. Insurance companies should be throwing the (premium) book at those companies.

22/8/2025, 10:36:43 AM | 61 9 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Second thought is that there seems to be a lot of variance in digital car security, and in this attack. It sounds like Kia cars (up until recently) weren’t using basic immobilized tech from 2003. So some of these attacks may actually be much more serious and let you steal cars!

22/8/2025, 10:35:40 AM | 25 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

(By which I mean, congratulations, someone got your car open by lurking around to steal your key code and didn’t just smash a window or use a slim-jim and possibly trash the door lock hardware. Don’t leave stuff in your car!)

22/8/2025, 10:33:56 AM | 30 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Ok I have three thoughts. The first is that most of these attacks seem like door unlocking attacks, and it looks like a lot of them are just some form of replay where you first have to capture the code from someone who has the real key. Doesn’t seem like a really terrible attack.

22/8/2025, 10:32:43 AM | 32 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

I don’t understand how this represents a problem with the Flipper Zero rather than a stringing indictment of the car security industry. www.404media.co/inside-the-u...

22/8/2025, 10:29:29 AM | 220 56 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Another iOS 0-day. www.theregister.com/2025/08/21/a...

21/8/2025, 11:59:12 PM | 45 18 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

It’s a loop of 6x running the whole mess through AES. I think the boxes represent each invocation.

17/8/2025, 8:55:13 PM | 0 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

This is about private encrypted text messages not social media. Social media is public and readable and if you want to take up liability questions with X and Meta be my guest.

17/8/2025, 6:28:46 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

The 17 y/o asked me today if I knew Europe was planning to spy on kids’ text messages and I had to correct him: no, the EU has plans to spy on *everyone’s* text messages. But I guess this means the word is getting out.

16/8/2025, 11:54:42 PM | 147 37 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yes, once I have a few chapters somewhat complete (maybe this fall?) I’m definitely going to start posting them. Bugs and all.

16/8/2025, 11:52:15 PM | 2 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

But does it have artwork this colorful?

image
16/8/2025, 11:50:24 AM | 0 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yes but then I have to cover everything before we get to modes of operation which I hate.

15/8/2025, 8:43:48 PM | 2 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

So now I have to rethink the order of everything. It’s circular because everything depends on everything else. Ciphers want to go first and then hash functions but you can’t do that before you do encryption can you?

15/8/2025, 8:02:51 PM | 16 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

My original plan was to write one giant chapter on symmetric cryptography, covering everything from ciphers to modes to hash functions and MACs and even detouring into commitments and universal hashing. At 46 pages and still unfinished I’m realizing that doesn’t work.

15/8/2025, 7:59:15 PM | 56 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Every now and then I’ll find one stuck in the sleeve of a coat and they’ve been patiently waiting for someone to let them out of the “tunnel” they got stuck in.

15/8/2025, 6:06:47 PM | 41 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

So the problem with dachshunds is…

image
15/8/2025, 6:05:50 PM | 91 7 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

I now know everything there is to know about polynomial hash functions and the universe is free to stop existing. Sorry everyone, that’s just the way it is.

14/8/2025, 9:39:56 PM | 38 0 | View on Bluesky | view

Profile picture Molly White (@molly.wiki) reposted

The “agreement” Justin Sun says should prevent Bloomberg from publishing the amounts and types of crypto assets he holds seem extremely shaky to me (caveat: not a lawyer, some images are missing). “Nobody at Bloomberg agreed to the terms sent by Justin, weeks after the data was shared with us.”

BBG - Justin Wealth Verification 27 February 2025 Sprina Wang created group «BBG - Justin Wealth Verification» with members Sprina Wang, Yeweon Park, Timothy and Dylan Sloan SW 12:40 Sprina Wang Morning everyone. 12:40 Dylan is with BBG verification team 12:41 Tim will provide Justin's wallets list first. 12:41 is Justin's publicist and will PM this. 12:41 Ty DS 12:51 Dylan Sloan Great, thanks all. ❤ SW 28 February 2025 Timothy invited H.E. Justin Sun Timothy invited Laylar Zhang T 02:04 Timothy Hi Dylan. Could you pls let me know your email address? And we will share with u the documents once get the approval from Justin. Thanks. DS 05:26 Dylan Sloan Sure—it’s T 05:55 Timothy Dylan shared DS 05:58 Dylan Sloan Got it, thanks. Will take a look today and be in touch with any follow-up questions T T 07:51 Timothy Dylan Are there any Security & Privacy policies to prevent data leakage in your/BBG side? If have, Pls let’s know the details. DS 09:39 Dylan Sloan Sure. Anytime I’ll be accessing the data, it’ll be within the Bloomberg office, which is a secure network. We work with Arkham Intelligence for crypto valuations—they have a custom API for us to automate the process of logging historical wallet transactions. My plan was to run the wallet addresses through that T 09:54 Timothy Got. We also hope that only trust & limited people have access right for the documents, which can maximize the protection of our data. DS 10:00 Dylan Sloan Yes, definitely. 3 March 2025 YP 21:47 Yeweon Park Hi Dylan it's a pleasure to meet you! We understand that everyone listed in the Billionaires Index has a dedicated bio/profile page. When the time comes, we’d love to assist in providing fact-based background information on Justin. I’d be happy to jump on a call at your convenience to learn more about this process. I’m based in New York, so it’d be great to catch up in person as well if that works for you. SW 21:47 Looking forward to working with you on this :) 4 Ma… 09:26 Dylan Sloan Hi Yeweon--got it, thanks. Would be great to meet in person! Will likely be another week or two before we're at that stage, I'll let you know. ❤ YP 09:30 Also--just wanted to double check that our plan for analyzing Justin's historical transactions is OK. Arkham Intelligence built a custom API for Bloomberg which allows us to compile data on token transfers and conversions to fiat for the wallet addresses you provided. That API is located on our internal network, meaning the file of Justin's wallet addresses won't leave our office and the only people who have access are my team and the engineers who manage the API (Arkham won't have access). Are you all OK with that plan as it relates to data security? SW 12:28 Sprina Wang In reply to this message can you pls advice? Ty BB joined group by link from Group 7 March 2025 DS 14:18 Dylan Sloan Hi all--following up here, is this plan OK? B 14:23 BB SW 14:32 Sprina Wang In reply to this message is it OK? T 21:02 Timothy In reply to this message ok, np. SW 21:02 In reply to this message FYR 8 March 2025 HS 01:51 H.E. Justin Sun In reply to this message Ok 18 March 2025 YP 16:06 Yeweon Park we’re here a bit early but pls take your time. We will wait in lobby DS 16:10 Dylan Sloan Sounds good--wrapping something up but will let you know when I'm free ❤ YP 19 March 2025 Dylan Sloan invited Tom Maloney DS 09:43 Dylan Sloan Adding my colleague Tom Maloney who is working on the valuation with me and also met with Yeweon/Sprina/Bill yesterday ❤ YP SW YP 09:45 Yeweon Park Welcome, Tom! it was a pleasure meeting you both yesterday. Thank you for your time. TM 10:24 Tom Maloney Great meeting you all too. Thanks for taking the time. sw 27 March 2025 HS 06:44 HE. Justin Sun All information shared within the group 1s strictly confidential and for verification purposes only. Once the verification is complete, the data must be deleted. The data is solely for verification and may not be used for any other purpose (including reporting). We will not provide any responses beyond the verification service. as that falls entirely outside the scope of simply providing data. 06:46 This asset data is extremely sensitive. The spreadsheet is for verification purposes only and must not be used for any other purpose. Any leakage may result in legal liability, and the data must be deleted. We will not answer any questions regarding these assets. We only provide data to verify authenticity. 06:48 Bloomberg must also agree to use the data strictly in accordance with our requirements — for example, to provide only a general assessment or overall valuation based on the data, without making any specific references or detailed reporting on the figures. This data is being provided solely for verification purposes and is not intended for reporting. 19 May 2025 ™ 10:50 Tom Maloney Hello all. Sorry this has been on hold but I've recently picked it back up. Our valuation puts JS at Pe 13:16 HE. Justin Sun Yes ™ 13:18 Tom Malone: 24 May 2025 B 16:38 BB hi Tom are we looking to publish J on the billionaire index this coming week? 27 May 2025 ™ 12:18 Tom Maloney I am not sure of timing yet. I'm waiting on my colleagues who have been putting together their profile of J. The valuation will be published at the same time. B 14:11 BB Ok the profile is just their independent profiling then? We didn’t have any interview for them and will not do one 28 May 2025 ™ 10:25 Tom Maloney I don't have the details on the profile they are working on, sorry, but my understanding is they are still working on it. 10:26 HS 16:22 HE. Justin Sun yes it is just how much… 20 June 2025 ™ 10:42 Tom —_— 21 June 2025 HS 11:51 HE. Justin Sun Currently we don't have it 11:51 15 July 2025 ™ 14:47 Tom Maloney Justin, we are writing a story about Do you have any comment for the story? YP 14:50 Yeweon Park In reply to this message Hi Tom. No comment. 29 July 2025 sw 19:09 Sprina Wang In reply to this message Hi iT want to reiterate that these data are strictly confidential and must not be disclosed extemally. 19: I saw your editor Muyao is citing these data in her profile story, that’s not what we have agreed on. B 19:13 BB BBG wealth team, Tom cere sraermrerae honor the confidentiality of the wealth verification process and safeguard private personal data, the fact that Muyao from your editorial team is sending this around back to our other team members as media questions is strictly in violation of that, both unethical and unprofessional, <= agreed to BBG publishing any detailed breakdown of this wealth composition or verification process sw 19:17 Sprina Wang The data requires revision. However, please first confirm that this information will be treated with full confidentiality before we proceed to share the modification details. Tom can you pls reconfirm this? ™ 19:23 Tom Maloney Hello. Acknowledging your message I will get back to you later tonight. HS 19:32 HE. Justin Sun was 19:32 Wa 19:32 We all agreed on this in March BB pinned this message BB pinned this message ™ 21:08
14/8/2025, 1:29:36 AM | 113 8 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Rowhammer is alive again, this time on DDR4 servers with ECC memory. ecc.fail

13/8/2025, 11:00:28 PM | 40 8 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Also, geez I remember the day I learned that Bork was part of the Nixon administration. I was just a kid then and Nixon seemed like some ancient embarrassing thing. To find out there was continuity of criminality across administrations was a big wake up call for me.

13/8/2025, 10:37:55 PM | 13 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

The willingness to shelter and promote criminals and their enablers was always going to beget someone like Trump. If conservatives had wanted to keep their party (as opposed to being cast into the wilderness) they should have fought that part of their party. They didn’t, and now they’re lost.

13/8/2025, 10:36:42 PM | 11 2 | View on Bluesky | view

Profile picture Charlotte Moore-Lambert (@charlottereads.com) reposted

Baltimore is currently experiencing its lowest homicide rate in 50 years, and it’s not because they iNVeStEd iN pOLiCe, it’s because they invested in community programs to facilitate conflict resolution, address mental health, address poverty, and give kids fun and meaningful things to do

11/8/2025, 4:07:58 PM | 1503 475 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I’m not sure how functional NIST is right now, but I’ve seen it pop up in workshop talks.

12/8/2025, 4:59:35 PM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

They could have done so many things that don’t involve like six passes.

12/8/2025, 4:59:07 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I said people should use GCM-SIV. Does that count? ;)

12/8/2025, 2:41:32 PM | 2 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

And.

image
12/8/2025, 2:39:49 PM | 4 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Here’s what I’ve got. With a warning that it’s probably full of bugs.

image image image image
12/8/2025, 2:39:31 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

But if you have ECB you can do better than key wrap.

12/8/2025, 2:35:02 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

This combines my interests and my 17 y/o’s interests.

12/8/2025, 2:34:24 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

NIST has this key wrapping scheme called KW and it honestly looks like it was created on a dare.

image
12/8/2025, 1:46:30 PM | 12 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

Back to book writing. Today I felt compelled to write about “key wrapping.” Then I decided key wrapping schemes were dumb. Anyone want to argue with me on this?

image image
12/8/2025, 1:29:01 PM | 28 2 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

This little dialog box that pops up on Macs is the most suspicious thing ever. I’m 90% certain it’s a real system dialog, but still think a smart website could fake it with a pop-up window.

image
11/8/2025, 9:44:54 PM | 99 9 | View on Bluesky | view

Profile picture Lukasz Olejnik (@lukaszolejnik.bsky.social) reposted

AI propaganda is here, and this is only the beginning. Exactly as I predict in my book. A Chinese (apparent) subcontractor, is reportedly using AI combined with massive data collection and analysis to run targeted influence operations. www.nytimes.com/2025/08/06/u...

image image
9/8/2025, 2:57:07 PM | 55 30 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

That’s exactly what they want. Project 2025 explicitly calls for shutting down foreign social media like WeChat and TikTok. (Trump’s implementation is more of an attempt to force their sale than a shutdown.) There is a strategic goal aimed at political stability; it’ll just be their politics.

image
9/8/2025, 2:13:15 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

The Heritage Foundation does hate LGBTQ. But they also have a document that talks about amassing power and crushing every opposing power center in the United States. These two things aren’t mutually exclusive. www.brookings.edu/articles/pro...

9/8/2025, 2:09:22 PM | 2 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I think there’s a vanguard of people who really just hate porn. I think the reason they’re getting so much deep support is because other more thoughtful people behind them see the implications of an unchecked Internet as bad, and view this as one (legislative and technical) tool to end it.

8/8/2025, 9:03:37 PM | 5 0 | View on Bluesky | view

Profile picture marlo (@marlo.ooo) reposted

so the stupid canadian age verification bill is back in parliament so call your local MPs and tell them it’s bad and why it’s bad and don’t be ashamed to pander to them based on if they’re a tory or grit or otherwise - if you frame it in a way that mirrors their ideology, they might remember better

8/8/2025, 3:10:53 PM | 678 358 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I admit it sounds a little looney tunes when I write it down that way and yet, we live in a looney tunes time.

8/8/2025, 5:28:47 PM | 13 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

For the ninth time I’m going to repeat my personal conspiracy theory that every democracy is fighting a battle to control its Internet against foreign influence, and “age verification” is not being pushed so hard because kids, but is actually one weapon being deployed for that fight.

8/8/2025, 5:28:04 PM | 58 9 | View on Bluesky | view

Profile picture Andy Greenberg (@agreenberg.bsky.social) reposted

The Halo 3C is a smoke/vape detector that Motorola sells for use in school bathrooms. It also has microphones inside. A teen hacker found them at his school, and with another security researcher has now shown they could be hacked for audio surveillance. www.wired.com/story/school...

8/8/2025, 1:47:40 PM | 137 57 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Just sitting here with an unfinished algorithm for solving MLWE all I need is that one missing piece.

7/8/2025, 11:51:47 PM | 29 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

OpenAI continues to deny me GPT-5 presumably because it knows I’ve got a list of prompts that will break all cryptography if it’s 8% as good as Sam Altman says.

7/8/2025, 11:49:59 PM | 203 10 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I’m saying this because I had to switch back from book writing (fun! easy! still harder than many things I’ve done) to research paper writing, and it’s so much slower and more intricate. And I’m not even the lead author doing the hard stuff.

7/8/2025, 3:51:59 PM | 13 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

And a lot of the time the difference between “good” and “bad” science is the kind of laziness that’s just Tuesday in software development.

7/8/2025, 3:50:18 PM | 13 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

You’ve got a field that basically involves obsessive people doing obsessive work for relatively terrible pay and then you’re like “I, as an expert in JavaScript development, demand that every result be replicated.” I mean ok that would be cool, but how and with what resources.

7/8/2025, 3:49:20 PM | 11 1 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Anyway, I just want to be clear that I’m not patting anyone on the back. I’m just saying that this is absurdly more work than most other things people could be doing, for such a relatively small result. I think about this when people criticize science (often rightly) for lack of replication etc.

7/8/2025, 3:47:35 PM | 7 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social)

One of the things that amazes me about scientific research is how much work goes into it. It’s just crazy. I mean all things require work, but it’s just so far above anything else (writing, software development.) I understand all the complaints about replication, what’s missing is the labor.

7/8/2025, 2:53:38 PM | 63 4 | View on Bluesky | view

Profile picture Reuters (@reuters.com) reposted

Jury deadlocks on money laundering charge against founder of crypto 'mixer' Tornado Cash reut.rs/45t4KVJ

6/8/2025, 5:05:18 PM | 15 10 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yes we did some work on this. It’s great, but then you need to make sure the LLM cover traffic isn’t weird. meteorfrom.space

6/8/2025, 1:46:47 PM | 3 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yes but it’s really easy to have AI generate stuff that “looks good” if you’re using the wrong definition of “looks good”, but might be really easily detectable. I guess maybe the real recommendation is that defenders need to think like censors, too.

6/8/2025, 1:44:36 PM | 1 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

I agree that scale is going to be an issue for them, I don’t think you’ll have a transformer processing every packet. I do think you could build an architecture that’s heavily adaptive and uses filtering rules developed by gen AI.

6/8/2025, 1:24:44 PM | 4 0 | View on Bluesky | view

Profile picture Jade (@jade.packet.science) reposted reply parent

"How the Great Firewall of China detects and blocks fully encrypted traffic." is IMO the first glimpse into what this looks like, though. The thresholds in Ex1 smell like something written by a decision tree and then adapted by humans.

image
6/8/2025, 1:21:33 PM | 18 6 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

Yes. It illustrates that (1) they care, (2) they’re happy to automate, (3) they’re operating at like .001% of the potential capability they could implement.

6/8/2025, 1:23:39 PM | 7 0 | View on Bluesky | view

Profile picture Matthew Green (@matthewdgreen.bsky.social) reply parent

It also doesn’t help that DOGE cancelled a bunch of NSF grants working on censorship-evasion tech because they contained the keyword “censorship.”

6/8/2025, 1:20:35 PM | 14 0 | View on Bluesky | view