Experimental browser for the Atmosphere
Here's something counterintuitive to non-practitioners: curve P-521 is often less secure in practice than curve P-256. The latter is more popular, and so better tested. The risk of implementation bugs dwarfs the risk of partial cryptanalysis of ECC, so picking P-521 optimizes for the wrong thing.
May 1, 2025, 5:40 PM
{ "uri": "at://did:plc:x2nsupeeo52oznrmplwapppl/app.bsky.feed.post/3lo4u5rqwdt2t", "cid": "bafyreidznawwmwewz44so6dxjpejvr6xjeppra6sfkbbielrbrmbybhzky", "value": { "text": "Here's something counterintuitive to non-practitioners: curve P-521 is often less secure in practice than curve P-256.\n\nThe latter is more popular, and so better tested. The risk of implementation bugs dwarfs the risk of partial cryptanalysis of ECC, so picking P-521 optimizes for the wrong thing.", "$type": "app.bsky.feed.post", "langs": [ "en" ], "facets": [], "createdAt": "2025-05-01T17:40:27.084Z" } }