Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Hovav Shacham

@hovav@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Security, privacy, and tech policy at UCSD.

“[U]niquely among all government employees, lie[s] outside the scope of [the government speech] doctrine; […] stand[s] alone on a First Amendment pedestal, free to say what [he] please[s], no matter what [his] government employers, including even the State Legislature, think about it.”

Profile photo: Nox the tiercel peregrine, Cal Falcons class of '24, photographed by Billy Thein (California Raptor Center).

403 Followers
358 Following
21 Posts
Joined November 13, 2022
Website:
https://www.cs.utexas.edu/~hovav/
Backdoored compiler attack idea:
Karger and Schell, Multics security evaluation, 1974
Open post
Hovav Shacham @hovav@infosec.exchange
· 2mo ago
Recent advances in browser security, a thread! 🧵 TL;DR: Mohabi (OSDI 2026)¹ shows that we can build a principled in-process sandbox for a JavaScript runtime using SFI, at circa 25% runtime overhead in benchmarks. It’s not getting upstreamed, though. (1/x) __ ¹ Cf. @shravanrn@infosec.exchange’s post yesterday, https://infosec.exchange/@shravanrn/116972152609467885
infosec.exchange
22
1
10
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 2mo ago
This work contains an exposition of the seven foremost unsolved problems in the domain of isogeny-based cryptography, obtained by asking eleven experts in isogeny-based cryptography what they considered to be the most important unsolved problems in isogeny-based cryptography, and curated down to the seven problems in this document. For each problem, an expert wrote a short write-up giving the precise statements and descriptions per problem. https://eprint.iacr.org/2026/1431 Self-recommending!
The Isogeny Problems
IACR Cryptology ePrint Archive

The Isogeny Problems

This work contains an exposition of the seven foremost unsolved problems in the domain of isogeny-based cryptography, obtained by asking eleven experts in isogeny-based cryptography what they considered to be the most important unsolved problems in isogeny-based cryptography, and curated down to the seven problems in this document. For each problem, an expert wrote a short write-up giving the precise statements and descriptions per problem.

5
0
3
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 2mo ago
ETH is looking to recruit tenured faculty in security for its new campus in Heilbronn, Germany: https://ethz.ch/en/the-eth-zurich/working-teaching-and-research/faculty/faculty-affairs/ausgeschriebene-professuren/eth-zuerich-campus-heilbronn/professuren-fuer-cybersecurity--f-m-d-.html Applications from all areas within Cybersecurity, interpreted broadly, are encouraged. Potential topics include but are not limited to foundations for information security (including cryptography, and formal methods), system security (hardware, software, platforms) across a wide range of systems, network and wireless security, AI security, human factors in security, and privacy.
Professors of Cybersecurity (f/m/d)
ETH Zurich

Professors of Cybersecurity (f/m/d)

5
0
6
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago

RE: @tomrittervg@infosec.exchange

Respect to the Firefox team!

But: At what point do you conclude that our way of delivering security-critical software via ever-growing piles of trusted C++ isn’t working, and won’t?

infosec.exchange
7
3
1
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 35mo ago

The security hill I will die on: Credit for the “backdoored compiler” trick should go to Karger and Schell (“Multics Security Evaluation: Vulnerability Analysis,” 1974).¹ That’s the “Unknown Air Force Document” from which Thompson (1984) borrowed the idea.
__
¹ https://www.acsac.org/2002/papers/classic-multics-orig.pdf, §3.4.5

acsac.org
115
3
74
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 6mo ago
Replying to
@sophieschmieg Is it possible that the recipients have a history of discriminatory comments about Iranian students? I understand that is sometimes a positive factor for the award committee.
3
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 6mo ago
Replying to
@cxiao @Sempf Thanks! I learned how to footnote from @marasawr .
2
1
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 7mo ago
Replying to
@khaled @behdad I'm well aware. You are misinterpreting what Don wrote. Please don't drag him into this to justify your choices.
1
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 35mo ago
Replying to
@rsc Right! I remember that version used to be easier to find.¹ It’s too bad that the ACM HTML version it was based on was never updated to match.² __ ¹ Saved by the Archive: https://web.archive.org/web/20010410053444/http://cm.bell-labs.com/who/ken/trust.html ² Also saved by the Archive: https://web.archive.org/web/20070714062657/http://www.acm.org/classics/sep95/
web.archive.org
1
0
1
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago
Replying to
On her blog, Lisa Hirsch has a roundup of MTT obits, including the one she wrote for NPR. https://irontongue.blogspot.com/2026/04/michael-tilson-thomas.html
irontongue.blogspot.com

Iron Tongue of Midnight: Michael Tilson Thomas

0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago
Replying to
(Fashion report: Jean-Yves Thibaudet has apparently retired his trademark red socks, but the sparkly bits on his opera pumps were matched to the sparkly bits on the lapels and turnback cuffs of his dinner jacket.)
0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 7mo ago
Replying to
@behdad @khaled please don't drag Don into this, thanks.
0
1
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago

The fifth recording in Wild Up’s Julius Eastman survey, Gay Guerrilla, will be released in June and is available for preorder: https://wildup.bandcamp.com/album/julius-eastman-vol-5-gay-guerrilla

wildup.bandcamp.com
0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 6mo ago

Der Schwer­belastungs­körper und Die Schwer­belastungs­körperaussichts­plattform, from Greg Allen: https://greg.org/archive/2026/04/10/der-schwerbelastungskorper-und-die-schwerbelastungskorperaussichtsplattform.html

In 1941 Hitler’s architect Albert Speer got approval to build a giant triumphal arch on a main axis of a redesigned Berlin, and quickly built the Schwerbelastungskörper, or heavy load-bearing structure, to test the ability of the marshy soil to support such a ridiculously large structure.

greg.org

Der Schwer­belastungs­körper und Die Schwer­belastungs­körperaussichts­plattform – greg.org

0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago
Replying to
@aburka I want us to consider architecting software in a way that rules out entire classes of bugs, rather than hoping we have fixed the last 354 instances.
0
1
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 2mo ago
Derek Lowe: The Trump administration hates academic science funding, full stop. They hate where that money goes, and they hate who it goes to. They want to keep all that money for themselves, to hand out to favored cronies who can help them get elected and to steer yet more money and more power back into their hands. https://www.science.org/content/blog-post/assault-science-funding-continues
science.org
0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 2w ago
Context for the SF Opera orchestra contract dispute, from Lisa Hirsch: Currently, SFO says that ticket sales cover about 14% of the budget. The vast majority of the rest comes from fund-raising and draw from endowment. I know that the orchestra and many audience members are saying that more performances are the answer, but given that ticket sales cover only 14% of the overall cost of putting on opera, for every performance added, you need to somehow secure the other 86% of the budget from other sources. https://irontongue.blogspot.com/2026/09/san-francisco-opera-orchestra-strike.html
irontongue.blogspot.com

Iron Tongue of Midnight: San Francisco Opera Orchestra Strike

0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 5mo ago
Replying to
@jerry@infosec.exchange Mazel!!
0
0
0
0
Open post
Hovav Shacham @hovav@infosec.exchange
· 2mo ago
Replying to
@lindsey@recurse.social texting my friend that I was going to H-E-B and did they need anything https://www.reddit.com/r/GoingToHEB/
reddit.com
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 13:01:12 UTC