I've been seeing a lot of complaints that CVE-2020-0601 didn't have a fancy logo and website, so my colleagues @trailofbits and I did our best to pitch in.
whosecurve.com
- RSVP before the entropy runs outNext week is Real World Crypto 2020 right on @trailofbits's home turf, NYC. If you're in town and want to enjoy free food, drinks, and a venue brimming with high quality entropy come and join us on Thursday January 9 from 7-10pm at Prohibition: evite.me/S3NVbKZR8x
- Before 2019 ends, I wanted to release my current research with @trailofbits: Umberto, a "poststructural fuzzer" built with fancy Haskell tricks. It lets you apply simple mutators (defined on numbers or strings) inside large structures (like xml entities)
- My team is hiring! If you want to discover, analyze, and explain bugs in cryptographic software, link below has details. Incredible people, fascinating problems, lots of flexibility, great benefits jobs.lever.co/trailofbits/e9…
- This summer, I mentored @anneouyang while she did some incredible work rigorously analyzing CBC Casper. This kind of work is critical for broad adoption of proof of stake, and imo doesn't receive nearly as much attention as it should.Formal Analysis of the CBC Casper Consensus Algorithm with TLA+ blog.trailofbits.com/2019/10/25/for…



