Live data from Hacker News

Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

tangleblog.com

81–90 of 162 posts

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#81
As a participant in the SHA hash function contest who broke one of the 51 Round-1 SHA-3 proposals and who worked on security proofs for another SHA-3 proposal I can say with some authority that using the sponge construction and showing statistical properties of the transformation function is not sufficient to ensure security. Of the 51 Round-1 SHA-3 proposals all of them passed statistical tests and at least one round of review by NIST yet 33/51 were broken.

A more general point is that you should never roll your own crypto and if you must then it should be submitted for peer review by cryptographers before using it in a security critical application.

I know this is a pretty standard way to carry a technical conversation in the crypto community, but this is a pure and unadulterated argument from authority. I don't think other fields of computer science get away with this bullshit (you can't invent anything new unless you get a blessing from "the community").

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#82

As a participant in the SHA hash function contest who broke one of the 51 Round-1 SHA-3 proposals and who worked on security proofs for another SHA-3 proposal I can say with some authority that using the sponge construction and showing statistical properties of the transformation function is not sufficient to ensure security. Of the 51 Round-1 SHA-3 proposals all of them passed statistical tests and at least one roun…

That’s because other fields of computer science can either prove or demonstrate that their solution works. Cryptography almost never has solid proofs, and demonstrations prove nothing.

When you’re working on something where “works great” and “completely broken” are almost indistinguishable, the only way to even have a hope of avoiding the second one is by having a lot of smart people bang on it for a long time.

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#83

As a participant in the SHA hash function contest who broke one of the 51 Round-1 SHA-3 proposals and who worked on security proofs for another SHA-3 proposal I can say with some authority that using the sponge construction and showing statistical properties of the transformation function is not sufficient to ensure security. Of the 51 Round-1 SHA-3 proposals all of them passed statistical tests and at least one roun…

You may dislike the listing of authority, but he's right, and you're kind of misconstruing what he's saying. You can "invent" all the crypto systems you want, you're just foolish to do so without proper review, because there will be flaws.

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#85
post #44

Interesting to see the range of opinions about IOTA. The conclusions on HN are (so far) completely at odds from those on the cryptocurrency subreddit: https://www.reddit.com/r/CryptoCurrency/comments/7zztey/full... Meanwhile the commercial world seems happy to engage with IOTA: "Volkswagen CDO will join the supervisory board of the IOTA foundation. And now, Volkswagen is going to utilise this technology in their auto…

Everyone that posts in r/cryptocurrency has an agenda (including myself).

Most of the posts there are ways of confirmation biases - it's very difficult to get someone to see what they don't want to see in his/her cryptocurrency.

There are certain coins that are exceptionally polarizing (Ripple and IOTA come to mind) - it leads to this my coin vs your coin behavior. It's so fascinating, yet odd at the same time.

I read about 3/4 of the emails before coming to the conclusion I had no idea what was going on.

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#87
post #22

> Hey Ethan, Did you receive the invite? We can also setup a chat with our ex-NSA post-Quantum hash function experts after we get the initial confusion out of the way. Best, David It is a great example of someone (the "expert") convincing a non-technical person that they are the "ninja rockstar 11x post-quantum hash function expert". I've seen this many times. Managers / owners don't have ability to assess who is an…

> I've seen this many times. Managers / owners don't have ability to assess who is an expert and who isn't. So whoever talks more convincingly is the "ninja rockstar". After that they can do no wrong. Also after that somehow admitting publicly that the person they picked is a scam artist becomes pretty hard, because it also means admitting to their own mistake of believing them.

I am seeing that a lot right now in public services (I entered a year and a half ago). I am looking at decade-old project going nowhere and managers trying to plug it into anything that would justify its existence (poisonning other agencies in the process).

> Others who see what's going on, leave and this this eventually leads to the whole ship sinking.

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#88
Maybe instead of whipping up a pdf like Manafort that requires trust in the authors copy/paste & editing process it would be better to see the real email conversations incl. message headers. Not saying this isn't how it unfolded but this isn't either.

Why go through the trouble of creating a pdf from different emails (he calls "letters") when he could just save the messages verbatim as plain text incl timestamps & other metadata. Some of the justifications for creating a homebrew-crypto says a lot. This sure is nonsense.

Re: Email exchange between MIT Media Lab and the IOTA Foundation [pdf]

#89
post #61

I made a post on the Iota subreddit which supported the MIT team, removed 30 minutes later. It honestly terrifies me how easy it is to manipulate discourse online - there are many other posts calling the MIT team frauds and the general tone is that Iota were saints defending against corrupt evil cryptography researchers.

Seems like there is no worse platform to discuss the merits and weaknesses of cryptocurrencies somewhat objectively than those specific subreddits. They are so full of greed and ideology, it's absurd. It's quite hard to look through the hype, so the academics are my best bet when trying to understand things.
Post reply on HN