๐
Posts by Sabine Oechsner
A table listing total operations, number of qubits, and Toffoli-gate count for Google's low-gate and low-qubit implementations, and Trail of Bits' implementation. The Trail of Bits implementation beats Google's on every metric.
Two weeks ago, Google published a paper proving in zero-knowledge that they had an efficient implementation of Shor's algorithm.
Today, Trail of Bits can prove that we have an even better implementation which beats Google's on all metrics! ๐ซข
blog.trailofbits.com/2026/04/17/w...
I'm looking for a PhD student to work with me on formal verification for cryptographic protocols.
This is a 4-year position at VU Amsterdam, co-supervised with Kristina Sojakova. Send me an email if you want to know more!
Sadly, it appears Michael Rabin passed away on April 14. Among other achievements, Rabin received the Turing Award with Dana Scott in 1976 for their paper "Finite Automata and Their Decision Problems", a highly influential work in automata theory.
www.haaretz-evel.co.il/%D7%9E%D7%99...
It's liiiive www.youtube.com/watch?v=TLp9...
In honor of April Fool's Day (which has already started in Australia), I offer you debrisprint.iacr.org for AI-generated cryptology content.
We encourage undergraduate, masterโs, and early-stage PhD students interested in programming languages to apply for PLMW at PLDI 2026. It is a great opportunity to learn from researchers, build connections, and explore future directions in PL. Apply here: pldi26.sigplan.org/home/PLMW-PL...
The Signal protocol is well documented but hard to grasp the first time. Especially what's happening under the hood while using a messaging app. I built an educational tool that lets you chat on a simulated phone and see protocol details in real time, completely offline. Enjoy!
We're running a user study, maybe you can help!
We're studying the effect of new ways to show code diffs to programmers, and looking for participants for a 1-1.5hr virtual user study. In the study you will be shown several diffs and asked questions about them.
RWC 2028 will be in Bochum, Germany!
#realworldcrypto
Bas says Cloudflare has PQ internships in London Lisbon and Austin
LUNCH
#realworldcrypto
More information on our website mpcinthewild.github.io#workshop, or come talk to me or @schollster.bsky.social at RWC!
Speaker Nikolas Melissaris talks about What Is Cryptography Hiding from Itself? by Diego F. Aranha and Nikolas Melissaris.
RWCโs official unofficial scribe! Follow along with @durumcrustulum.comโs play-by-play.
Weโre live!
Watching remotely? You can follow Real World Crypto 2026 on YouTube livestreams (also available via the website):
Day 1 (Mar 9): youtube.com/live/QQhyxFj...
Day 2 (Mar 10): youtube.com/live/00zvMSW...
Day 3 (Mar 11): youtube.com/live/v_AFtbW...
Consider attending our CASA summer school on cryptography and distributed computing from June 22.-25. in Bochum! Registration is open until March 12.
casa.rub.de/en/events/ca...
**Call for Scholarship Applications**
Limited travel support available for students attending #FLoC26 Mentoring Workshop @floc2026.bsky.social.
Deadline: 13 April, 2026
Apply at: forms.gle/89q9AaNfZV3f...
Notification: 20 April, 2026
Help us spread the word!
More details: tinyurl.com/floc26mw
How do you suggest to deal with those papers during peer review?
If you have an IND-CCA2 scheme but you only want IND-CPA you can use the FAFO transform
If you liked this experiment, I published a full piece today in the same vein: a text that gets 100 years older with every section, from a modern blog post to a medieval chronicle.
It's a single story spanning 1000 years of English. See how far you get.
www.deadlanguagesociety.com/p/how-far-ba...
๐ข We have extended the deadline for our EC workshop to *Monday AoE*!
Submit your talk proposal on any topic related to cryptographic proofs and proof techniques ๐ค
Take the opportunity to advertise your ongoing, submitted or published work, or to share other insights related to security proofs
Remember to submit your ProTeCS talk. The deadline is on Thursday!
When Zero-Knowledge Proofs Are Not Enough: Lessons from a Real-World Zero-Knowledge Authorization System, a.k.a Analysis and Vulnerabilities in zkLogin (eprint.iacr.org/2026/227) (1/n)
(It's because back in the days, when your train had to stop all the time, you wanted a special type of train that could accelerate faster than a regular train... and then the name stuck.
TIL there is an actual historic reason for why the Dutch gave their slow local trains the very intuitive name "sprinter"
m.youtube.com/watch?v=gTjy...