2021.12.10 12:35:22 (1469269504643727362) from Daniel J. Bernstein:
A paper just presented at Asiacrypt (https://www.iacr.org/cryptodb/data/paper.php?pubkey=31450) exploits another mistake in the Kyber security analysis to chop off several bits of security. Kyber's claimed security margin (1) was already very small and (2) admitted several other known speedup possibilities. Hmmm.