2023.10.05 20:16:54 (Mastodon 111184249755507262, Twitter 1710026210627973596, Nitter 1710026210627973596) from Daniel J. Bernstein:
Saw a Micciancio slide in an Intel event today advertising Kyber's sizes specifically for Kyber-512. Glanced at a NIST draft standard that includes Kyber-512. Then heard online that overestimating Kyber's security level is ok since everyone has moved to Kyber-768. Wait, what?