The cr.yp.to microblog: 2026.02.19 18:45:38

2026.02.19 18:45:38 (Mastodon 116098776307522889, Twitter 2024556005036876226) from Daniel J. Bernstein:

https://eprint.iacr.org/2026/279 claims to chop another few bits out of the Kyber/ML-KEM security level. If the idea works then (given the attack structure) I think that it should straightforwardly combine with the larger security loss from the October paper https://eprint.iacr.org/2025/1910.