2020.01.18 19:53:05 (1218607259225411585) from Daniel J. Bernstein:
It's fascinating to compare how the same Salsa/ChaCha attack paper https://tosc.iacr.org/index.php/ToSC/article/view/574 is described in https://keccak.team/2017/not_arx.html ("very hard to estimate the security") and https://131002.net/data/talks/TMC-RWC20.pdf ("attacks don’t really get better"). How can we protect against confirmation bias?