frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Don't pass on small block ciphers

https://00f.net/2026/02/10/small-block-ciphers/
27•jstrieb•2d ago

Comments

AlotOfReading•1h ago
I agree with the article, but I think it could go farther. Instead of having primitives for every 32/48/64/122 bit block, we need good format-preserving encryption. Then all of this advice boils down to "use as many bits as you need" and we can keep using the standard primitives with hardware support. If you need more security in the future, you only need to decrypt and reencrypt with the new size.
bflesch•13m ago
Are you suggesting a very large custom blocksize? I don't think this would be feasible beyond a few megabytes.
Dylan16807•7m ago
Small sizes have to be used with extra care, so I wouldn't want to make a generic function for all sizes. For bigger sizes we already have nice functions that take care of everything.
PunchyHamster•46m ago
Nowadays even many small microcontrollers get AES acceleration so I don't see much reason
avidiax•29m ago
If you want to encrypt a serial number, you don't want the output to be 256 bits.
chowells•25m ago
Basically all of the use cases in the article don't make sense with AES. That's not because it's AES. That's because its blocks are significantly larger than the data you want to protect. That's the point the article was making: in very specific circumstances, there is practical value in having the cipher output be small.
bflesch•18m ago
Slightly unrelated, but aren't these AES-specific custom CPU instructions just a way to easily collect the encryption keys? There is a speedup but is it worth the risks?

If I were a nation state actor, I'd just store the encryption keys supplied to the AES CPU instruction somewhere and in case the data needs to be accessed you just read the stored keys.

No need to waste time deploying a backdoored CPU firmware and wait for days or weeks, and then touch the hardware a second time to extract the information.

When all AES encryption keys are already stored somewhere on the CPU, you can easily do a drive-by readout at any point in time.

Linux kernel has a compile time flag to disable use of custom CPU instructions for encryption, but it can't be disabled at runtime. If "software encryption" is used, the nation state actor needs to physically access the device at least two times or use a network-based exploit which could be logged.

Claude Sonnet 4.6

https://www.anthropic.com/news/claude-sonnet-4-6
397•adocomplete•2h ago•318 comments

Using go fix to modernize Go code

https://go.dev/blog/gofix
143•todsacerdoti•3h ago•21 comments

Gentoo on Codeberg

https://www.gentoo.org/news/2026/02/16/codeberg.html
110•todsacerdoti•2h ago•22 comments

GrapheneOS – Break Free from Google and Apple

https://blog.tomaszdunia.pl/grapheneos-eng/
897•to3k•9h ago•591 comments

So you want to build a tunnel

https://practical.engineering/blog/2026/2/17/so-you-want-to-build-a-tunnel
77•crescit_eundo•2h ago•26 comments

Async/Await on the GPU

https://www.vectorware.com/blog/async-await-on-gpu/
82•Philpax•3h ago•18 comments

HackMyClaw

https://hackmyclaw.com/
175•hentrep•3h ago•90 comments

Show HN: I wrote a technical history book on Lisp

https://berksoft.ca/gol/
78•cdegroot•4h ago•14 comments

Chess engines do weird stuff

https://girl.surgery/chess
81•admiringly•2h ago•42 comments

I converted 2D conventional flight tracking into 3D

https://aeris.edbn.me/?city=SFO
156•kewonit•5h ago•39 comments

Show HN: AsteroidOS 2.0 – Nobody asked, we shipped anyway

https://asteroidos.org/news/2-0-release/index.html
11•moWerk•29m ago•3 comments

Trata (YC W25) Is Hiring Founding Engineers (NYC)

1•emc329•2h ago

Physicists Make Electrons Flow Like Water

https://www.quantamagazine.org/physicists-make-electrons-flow-like-water-20260211/
16•rbanffy•3d ago•0 comments

Is Show HN dead? No, but it's drowning

https://www.arthurcnops.blog/death-of-show-hn/
294•acnops•9h ago•249 comments

Don't pass on small block ciphers

https://00f.net/2026/02/10/small-block-ciphers/
27•jstrieb•2d ago•7 comments

Launch HN: Sonarly (YC W26) – AI agent to triage and fix your production alerts

https://sonarly.com/
15•Dimittri•2h ago•0 comments

Discord Rival Gets Overwhelmed by Exodus of Players Fleeing Age-Verification

https://kotaku.com/discord-alternative-teamspeak-age-verification-check-rivals-2000669693
72•thunderbong•2h ago•26 comments

Stephen Colbert says CBS forbid interview of Democrat because of FCC threat

https://arstechnica.com/tech-policy/2026/02/stephen-colbert-says-cbs-forbid-interview-of-democrat...
46•voxadam•33m ago•6 comments

Show HN: 6cy – Experimental streaming archive format with per-block codecs

https://github.com/byte271/6cy
21•yihac1•2h ago•4 comments

Tesla 'Robotaxi' adds 5 more crashes in Austin in a month – 4x worse than humans

https://electrek.co/2026/02/17/tesla-robotaxi-adds-5-more-crashes-austin-month-4x-worse-than-humans/
43•Bender•51m ago•23 comments

Climbing Mount Fuji visualized through milestone stamps

https://fuji.halfof8.com/
23•gessha•2h ago•4 comments

Show HN: Continue – Source-controlled AI checks, enforceable in CI

https://docs.continue.dev
25•sestinj•2h ago•5 comments

Four Column ASCII (2017)

https://garbagecollected.org/2017/01/31/four-column-ascii/
307•tempodox•2d ago•73 comments

Show HN: I taught LLMs to play Magic: The Gathering against each other

https://mage-bench.com/
59•GregorStocks•3h ago•47 comments

Semantic ablation: Why AI writing is generic and boring

https://www.theregister.com/2026/02/16/semantic_ablation_ai_writing/
159•benji8000•3h ago•136 comments

Labyrinth Locator

https://labyrinthlocator.org/
25•emigre•3d ago•4 comments

Hamming Distance for Hybrid Search in SQLite

https://notnotp.com/notes/hamming-distance-for-hybrid-search-in-sqlite/
58•enz•2d ago•10 comments

Russia's economy has entered the death zone

https://www.economist.com/by-invitation/2026/02/16/russias-economy-has-entered-the-death-zone
54•thelastgallon•47m ago•46 comments

Show HN: I built a simulated AI containment terminal for my sci-fi novel

https://vertex.flowlogix.ai
22•stevengreser•3h ago•12 comments

Students Are Being Treated Like Guinea Pigs: Inside an AI-Powered Private School

https://www.404media.co/students-are-being-treated-like-guinea-pigs-inside-an-ai-powered-private-...
58•trinsic2•2h ago•46 comments