frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Why One Key Shouldn't Rule Them All: Threshold Signatures for the Rest of Us

https://eric.mann.blog/why-one-key-shouldnt-rule-them-all-threshold-signatures-for-the-rest-of-us/
10•eamann•2d ago

Comments

bob1029•1h ago
The article does touch on HSMs but might be missing the point of them?

> A compromised server no longer means a compromised key

Proper use of an HSM means that even the owner of the private key is not allowed to access it. You sign your messages within the secure context of the HSM. The key never leaves. It cannot become compromised if the system is configured correctly.

tjoff•1h ago
You can't get the private key but you can sign with it, which is still plenty bad.
bob1029•1h ago
The private key should be tightly scoped to its context of use. I would definitely agree with you if it's one key that rules the entire kingdom.
tjoff•13m ago
Not sure I follow? Lets say it is limited to one use only, sign an app.

Since I've got control of the box I can now use it to sign any app. Isn't that bad enough?

poppadom1982•29m ago
> The Core Idea

> Enter X

> How It Works (Without the PhD)

> Why Y Should Care

...and an incredibly handwavy shallow explanation of why this actually works ("Through a clever sequence of oblivious transfers and what’s called multiplicative-to-additive share conversion, they each compute a partial signature.")

I don't get it. If you want a blog, write a blog. If you don't want a blog, don't write a blog. But why use an LLM to create a slopblog? It just wastes EVERYONE's time and energy. How disappointing.

OpenCode – Open source AI coding agent

https://opencode.ai/
834•rbanffy•13h ago•365 comments

Mamba-3

https://www.together.ai/blog/mamba-3
130•matt_d•3d ago•19 comments

FFmpeg 101 (2024)

https://blogs.igalia.com/llepage/ffmpeg-101/
89•vinhnx•8h ago•1 comments

A Japanese glossary of chopsticks faux pas (2022)

https://www.nippon.com/en/japan-data/h01362/
283•cainxinth•14h ago•218 comments

Molly Guard

https://bookofjoe2.blogspot.com/2026/02/molly-guard.html
113•surprisetalk•20h ago•45 comments

We rewrote our Rust WASM parser in TypeScript and it got faster

https://www.openui.com/blog/rust-wasm-parser
217•zahlekhan•13h ago•127 comments

Ghostling

https://github.com/ghostty-org/ghostling
223•bjornroberg•12h ago•37 comments

Fujifilm X RAW STUDIO webapp clone

https://github.com/eggricesoy/filmkit
58•notcodingtoday•2d ago•23 comments

Linux Applications Programming by Example: The Fundamental APIs (2nd Edition)

https://github.com/arnoldrobbins/LinuxByExample-2e
102•teleforce•11h ago•11 comments

The Los Angeles Aqueduct Is Wild

https://practical.engineering/blog/2026/3/17/the-los-angeles-aqueduct-is-wild
361•michaefe•3d ago•176 comments

Cryptography in Home Entertainment (2004)

https://mathweb.ucsd.edu/~crypto/Projects/MarkBarry/
49•rvnx•2d ago•29 comments

Attention Residuals

https://github.com/MoonshotAI/Attention-Residuals
180•GaggiX•16h ago•24 comments

The Story of Marina Abramovic and Ulay (2020)

https://www.sydney-yaeko.com/artsandculture/marina-and-ulay
4•NaOH•2d ago•1 comments

The worst volume control UI in the world (2017)

https://uxdesign.cc/the-worst-volume-control-ui-in-the-world-60713dc86950
138•andsoitis•3d ago•69 comments

Show HN: We built a terminal-only Bluesky / AT Proto client written in Fortran

https://github.com/FormerLab/fortransky
86•FormerLabFred•12h ago•45 comments

The Ugliest Airplane: An Appreciation

https://www.smithsonianmag.com/air-space-magazine/ugliest-airplane-appreciation-180978708/
73•randycupertino•2d ago•39 comments

An industrial piping contractor on Claude Code [video]

https://twitter.com/toddsaunders/status/2034243420147859716
56•mighty-fine•2d ago•17 comments

Turing Award Honors Bennett and Brassard for Quantum Information Science

https://amturing.acm.org
39•throw0101d•2d ago•0 comments

Padel Chess – tactical simulator for padel

https://www.padelchess.me/
24•AlexGerasim•3d ago•6 comments

Blocking Internet Archive Won't Stop AI, but Will Erase Web's Historical Record

https://www.eff.org/deeplinks/2026/03/blocking-internet-archive-wont-stop-ai-it-will-erase-webs-h...
27•pabs3•3h ago•1 comments

France's aircraft carrier located in real time by Le Monde through fitness app

https://www.lemonde.fr/en/international/article/2026/03/20/stravaleaks-france-s-aircraft-carrier-...
570•MrDresden•22h ago•464 comments

VisiCalc Reconstructed

https://zserge.com/posts/visicalc/
210•ingve•4d ago•77 comments

Lent and Lisp

https://leancrew.com/all-this/2026/02/lent-and-lisp/
61•surprisetalk•2d ago•3 comments

Our commitment to Windows quality

https://blogs.windows.com/windows-insider/2026/03/20/our-commitment-to-windows-quality/
528•hadrien01•15h ago•963 comments

ArXiv declares independence from Cornell

https://www.science.org/content/article/arxiv-pioneering-preprint-server-declares-independence-co...
759•bookstore-romeo•1d ago•265 comments

Entso-E final report on Iberian 2025 blackout

https://www.entsoe.eu/publications/blackout/28-april-2025-iberian-blackout/
196•Rygian•23h ago•92 comments

Delve – Fake Compliance as a Service

https://deepdelver.substack.com/p/delve-fake-compliance-as-a-service
686•freddykruger•1d ago•219 comments

Why One Key Shouldn't Rule Them All: Threshold Signatures for the Rest of Us

https://eric.mann.blog/why-one-key-shouldnt-rule-them-all-threshold-signatures-for-the-rest-of-us/
10•eamann•2d ago•5 comments

The Social Smolnet

https://ploum.net/2026-03-20-social-smolnet.html
125•aebtebeten•21h ago•13 comments

Show HN: Red Grid Link – peer-to-peer team tracking over Bluetooth, no servers

https://github.com/RedGridTactical/RedGridLink
45•redgridtactical•12h ago•16 comments