Hacker News new | past | comments | ask | show | jobs | submit login

The final line refers to agl' "maybe skip SHA-3" blogpost. I think there is a lot of FUD about SHA-3 (including SHAKE) being too slow for mortals to use, I'm guessing the Keccak team is pushing back with some marketing. Honnestly this is how the world works. Nobody understand anything about crypto and people take decisions based on standards and public opinions (which are often based on articles and blog posts). If you want your primitive to have some weight, you have to give people an excuse to use it.



Bad press can kill a primitive even if it's incorrect. The Keccak guys had this happen to them with Noekeon.

They're still sore over it, presenting this about 10 years later: https://www.cryptolux.org/mediawiki-esc2010/images/7/7a/Noek...

To be honest, if I'd design something this elegant, and nobody considers if because of an irrelevant attack, I'd be very sore and alert for it happening again, too.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: