Security Cryptography Whatever
@scwpod.bsky.social
1.3K followers 3 following 54 posts
@durumcrustulum.com, @sockpuppet.org, @dadrian.io “Freewheelin’ dynamic”. https://securitycryptographywhatever.com https://podcasts.apple.com/us/podcast/feed/id1578405214
Posts Media Videos Starter Packs
Pinned
scwpod.bsky.social
NEW EPISODE!

An OpenPGP.js bug gave us an excuse to tear encrypted email via PGP to shreds. William Woodruff joined us to explain the vuln & indulge our gnashing of teeth on why email was never meant to be encrypted:

securitycryptographywhatever.com/2025/08/22/s...
www.youtube.com/watch?v=IoL3...
Stop Using Encrypted Email with William Woodruff
YouTube video by Security Cryptography Whatever
www.youtube.com
scwpod.bsky.social
yw
zootm.bsky.social
I have just today discovered that podcasts can be chapterised, and that apparently @scwpod.bsky.social is painstakingly broken into chapters with often-joke names
Chapter view of a podcast app showing chapters named “pgp for encrypted email”, “fcking metadata”, “m-m-m-metadata”, “SMTP m-m-m-metadata”, and “dkim, spam”
Reposted by Security Cryptography Whatever
zootm.bsky.social
I have just today discovered that podcasts can be chapterised, and that apparently @scwpod.bsky.social is painstakingly broken into chapters with often-joke names
Chapter view of a podcast app showing chapters named “pgp for encrypted email”, “fcking metadata”, “m-m-m-metadata”, “SMTP m-m-m-metadata”, and “dkim, spam”
Reposted by Security Cryptography Whatever
dadrian.io
Come for the PGP dunks, stay for the broader discussion of why encrypted email doesn’t make sense
scwpod.bsky.social
NEW EPISODE!

An OpenPGP.js bug gave us an excuse to tear encrypted email via PGP to shreds. William Woodruff joined us to explain the vuln & indulge our gnashing of teeth on why email was never meant to be encrypted:

securitycryptographywhatever.com/2025/08/22/s...
www.youtube.com/watch?v=IoL3...
Stop Using Encrypted Email with William Woodruff
YouTube video by Security Cryptography Whatever
www.youtube.com
scwpod.bsky.social
NEW EPISODE!

An OpenPGP.js bug gave us an excuse to tear encrypted email via PGP to shreds. William Woodruff joined us to explain the vuln & indulge our gnashing of teeth on why email was never meant to be encrypted:

securitycryptographywhatever.com/2025/08/22/s...
www.youtube.com/watch?v=IoL3...
Stop Using Encrypted Email with William Woodruff
YouTube video by Security Cryptography Whatever
www.youtube.com
Reposted by Security Cryptography Whatever
simon.overgrown.garden
The first part of this interview with my ex-colleague Alex is a great listen if you're a software engineer (or otherwise technical) and are interested in what we were working on as technologists at the Federal Trade Commission.
scwpod.bsky.social
NEW EPISODE!

We chat with friend of the pod and special guest Alex Gaynor, former deputy chief technologist at the FTC and all around good Security Person™. Join for nerdery about WebAuthn, stay for accidentally melting down GitHub APIs around November 2020!

youtu.be/gBoGvyvsSi4
Alex Gaynor
YouTube video by Security Cryptography Whatever
youtu.be
scwpod.bsky.social
NEW EPISODE!

We chat with friend of the pod and special guest Alex Gaynor, former deputy chief technologist at the FTC and all around good Security Person™. Join for nerdery about WebAuthn, stay for accidentally melting down GitHub APIs around November 2020!

youtu.be/gBoGvyvsSi4
Alex Gaynor
YouTube video by Security Cryptography Whatever
youtu.be
scwpod.bsky.social
First round of invites going out tonight!
scwpod.bsky.social
Signups are still open! Sponsored by Teleport!
scwpod.bsky.social
We're throwing another SCWPodCon in Vegas! It's in the liminal space between BlackHat and DEF CON. Be there, or have FOMO.

We'll provide the drinks, you provide the conversation. Sign up here: securitycryptographywhatever.com/events/black...
SCWPodCon BlackHat 2025
"Security Cryptography Whatever" is hosting a party during BlackHat USA. Get tickets now!
securitycryptographywhatever.com
scwpod.bsky.social
We're throwing another SCWPodCon in Vegas! It's in the liminal space between BlackHat and DEF CON. Be there, or have FOMO.

We'll provide the drinks, you provide the conversation. Sign up here: securitycryptographywhatever.com/events/black...
SCWPodCon BlackHat 2025
"Security Cryptography Whatever" is hosting a party during BlackHat USA. Get tickets now!
securitycryptographywhatever.com
scwpod.bsky.social
Should we throw another BlackHat party?
Reposted by Security Cryptography Whatever
scwpod.bsky.social
Still have one more slot for a sponsor for our annual Vegas event, poke @dadrian.io if you have money.
scwpod.bsky.social
NEW EPISODE!

It seems like everyone that deploys E2EE encrypted cloud storage seems to mess it up, often in new and creative ways. Our special guests Matilda Backendal, Jonas Hofmann, & Kien Tuong Trong give us a tour & discuss how to actually build one securely:

www.youtube.com/watch?v=sizL...
www.youtube.com
Reposted by Security Cryptography Whatever
sockpuppet.org
This one was super fun. We talked with Jonas Hofmann, Kien Tuong Trong, and Matilda Backendal about a cross-section study of "E2EE" secure storage (not messaging, storage). Backendal is working to formalize that problem (it wasn't already!) Fun bugs!

securitycryptographywhatever.com/2025/05/19/e...
E2EE Storage Done Right with Matilda Backendal Jonas Hofmann and Kien Tuong Trong
It seems like everyone that tries to deploy end-to-end encrypted cloud storage seems to mess it up, often in new and creative ways. Our special guests Matild...
securitycryptographywhatever.com
scwpod.bsky.social
Our guest Nicholas Carlini and his coauthors just won Best Paper at Eurocrypt 2025:

eprint.iacr.org/2024/1580.pdf