235 entries in 0.574s
asciilifeform inclined to reject koch's optimization ( which diana_coman retained ) where witness consists of rng(bitness_of_n - 2) , and actually make witness equal to rng(width) mod (n - 2) for full range
asciilifeform: the folx who shat out apache & co., i suspect were at least as aggressively retarded as koch.
asciilifeform: koch's turd, despite being implemented in c, with no bounds checks, actually loses to ch14 ffa , for inputs of same ~width~ -- despite fact that he doesn't constanttime and thereby gets to skip massive work
asciilifeform: it 'works' in the same way as other 'nobus-maintenance' kludges (e.g. koch's 2016 patch) 'work' -- raise bar so that nobus
asciilifeform: it is difficult to dispell even the most outrageous lulhypothesis re koch-gpg. sorta what makes it 'speshul', what, 40MB of ???.
mircea_popescu: (the view that gpg aka koch-rsa leaks bits via signature isn't entirely dispelled even today)
asciilifeform: ( yet aaanother thing that koch didn't give )
asciilifeform: ( recall, diana_coman uncovered various lulz re koch's variant )
a111: Logged on 2019-01-09 15:36 asciilifeform: last night i re-read diana_coman's piece on m-r , it is interesting just how much sweat diana_coman had to put in simply on account of koch gnarl
asciilifeform: last night i re-read diana_coman's piece on m-r , it is interesting just how much sweat diana_coman had to put in simply on account of koch gnarl
asciilifeform: mircea_popescu: mpi is subset of gmp that koch cut ( and ate $mil of microshit payola to do it, somehow ) , aha.
asciilifeform: i've been referring to mpi and gmp interchangeably as 'koch rsa', but this is unscientific, i must remind that they are diff items.
asciilifeform: the 1 application where ffa defo dunwork, and koch -- does, is phuctor.
asciilifeform: also recall the (surprising to asciilifeform , but apparently nobody else) discovery that ffatron as-is-stands is ~2.5x faster than koch.
asciilifeform: mircea_popescu: correct. the item that needs padtron, is mircea_popescu's specced 'fuckng replace gpg already' ; and possibly also koch-free euloratrons.
asciilifeform: diana_coman implemented prototype, using koch
asciilifeform: the only folx for whom 'mystery' and 'requires' 50,000 ln of overflowlang -- are koch et al
mircea_popescu: yeah, and their name is collectively "koch" and "the gnu foundation"
asciilifeform: ( the punchline is that koch, ssl, etc are ~in this set~ )
asciilifeform: in other noose, earlier this wk , asciilifeform tried to repeat http://www.loper-os.org/?p=2906 test , but using 'gmp', the 'uncut' version of koch's thing, with asmism etc. but lo and behold, it is apparently impossible to repeat the full test battery, because :
mircea_popescu: so your reasoning was that if some bits get left out the koch is gonna eat them ?
asciilifeform: gpg itself is substantially moar crippled than koch's mpi lib
asciilifeform: test was re koch's arithm engine (which does take arbitrary exps etc, and a patched ver is used in e.g. phuctor)
a111: Logged on 2016-11-26 16:31 asciilifeform: koch's shitball per se is written in such a way that the cruft is glued on with broken glass (all the ciphers are modularized in very gnarly multilayered way, whole thing relies through and through on his weirdo streams thing, 1,001 idiocies)
asciilifeform: but i expect ffa-cum-asmism will still beat shit out of koch-cum-asmism
asciilifeform: incidentally, it's a 'fair fight', i.e. both ch14 ffa and mpi-koch lack asmism
asciilifeform: if only merely 'spun in desert'. these are the folx who gave us 'i lost mah keyz' zimmarman, who then pupated into 'rng, what rng' koch, et al
asciilifeform: koch loses surprising amt of cycles to variablewidthisms/heapism.
asciilifeform: ^ which is about on par with koch's, interestingly
asciilifeform: ( and , in fact ~to the credit of~ koch, at least the latter didn't fuck about with 'proofs' )
asciilifeform: approx on par with e.g. koch.
a111: Logged on 2018-11-29 19:21 diana_coman: asciilifeform, and the loc is not the whole story either; I'd much rather read *your* 1000 loc than Koch's 100 loc
diana_coman: although ofc it's more like Koch's 1mn loc ~always
diana_coman: asciilifeform, and the loc is not the whole story either; I'd much rather read *your* 1000 loc than Koch's 100 loc
asciilifeform: 'Feb. 5, 2015, 8:10 p.m.: After this article appeared, Werner Koch informed us that last week he was awarded a one-time grant of $60,000 from Linux Foundation's Core Infrastructure Initiative. Werner told us he only received permission to disclose it after our article published. Meanwhile, since our story was posted, donations flooded Werner's website donation page and he reached his funding goal of $137,000. In addition, Facebook an
asciilifeform: ( archaetypical ill-conceived 'smart' -- koch's 'keychain' nonsense )
asciilifeform: mircea_popescu: presumably cuz koch stuck a gpl sticker on it
asciilifeform: mircea_popescu: stallman has plenty to answer for, but i dunno what he has to do specifically with koch's gpg
asciilifeform: maybe ilsa koch had one ?
asciilifeform: somehow on koch planet, is seen as acceptable..
mircea_popescu: but yes, as far as anyone knows 2048 bit keys perfectly safe, now and for the foreseable future (this isn't a comment on koch faux-pgp, which unsafe at any length as well documented in logs qntra and so on).
mircea_popescu: i should have thought of that! think alfie, a future world wherein all thart's left is nostalgia for the past. a past which is no longer accessible, except in the limited sense, that victorian novels about prim sad ladies have pages steeped in koch solution ; whereas italian fiction of the plague will gladly give you it.
asciilifeform: pretty sure nobody has any other gpg eater than callout to koch
asciilifeform: recall , similarly, koch's 'fix' for his mpi bug.
mircea_popescu: all that code SHOULD NOT have been shared. not with fucking red hat, not with fucking koch, not with fucking drepper and so on.
mircea_popescu: you know, EXACTLY HOW KOCH GPG WORKS ?
mircea_popescu: "extension scripts", fancy that wonder. koch put ethereum in gpg before ethereum was even "a thing"
asciilifeform: meanwhile, in other koch gpg2isms : https://archive.li/FWdDD >> '...signature verification routine parses the output of GnuPG with an incomplete regular expression, which allows remote attackers to spoof file signatures on configuration files and extensions scripts. Modifying the configuration file allows the attacker to inject additional encryption keys under their control, thereby disclosing passwords to the attacker. Modifying the
lobbesbot: trinque: Sent 13 hours and 6 minutes ago: <asciilifeform> might be worth testing whether koch's latest lul affects deedbot's gpg hose
asciilifeform: !Q later tell trinque might be worth testing whether koch's latest lul affects deedbot's gpg hose
deedbot: http://qntra.net/2018/06/koch-burns-gpg-signature-version-vulnerability/ << Qntra - Koch Burns GPG Signature Version Vulnerability
asciilifeform: diana_coman: it was a specific chumpatronic term used by koch et al
asciilifeform: it so happens that i've designed exactly such a device. but it will be filled with ffaware, not koch. and all things in their proper time.
pete_dushenski: http://trilema.com/2016/werner-koch-lies/#selection-165.0-168.0 << "4096-bit Republican standard"
ben_vulpes: hey, pete_dushenski how didja plug the fg into the koch-rsa keygenerator?
ben_vulpes: pete_dushenski: you don't want a 4096 bit key; i can't find the relevant logs at the moment but koch-rsa does bad shit when generating keys > 2048 bits
asciilifeform: sometimes, trivial fix. ( koch's gpg had at least 1 case, iirc ) but doesn't generalize to a mechanical fixer.
asciilifeform: the difference b/w http://btcbase.org/log/2018-01-26#1776941 and e.g. koch-rng remains apparent to anybody with half a brain ☝︎
ben_vulpes: he is also in my koch-rsa l1, what of it?
asciilifeform: ^ for anybody else who stepped on same koch mine
mircea_popescu: what is your standard of proof anyway ? suppose x claims that koch works for weimer ; and y claims weimer works for koch. how do you distinguish these claims ?
mircea_popescu: how about this "mechanical borrowing" system you proposes ACTUALLY weakens responsibility, because the 15, instead of taking seriously their true deed, which IS in fact authorship-indistinguishable, rather aim to hide behind a claim of "hey, we merely work here, signing signatures" a sort of "well i really wanted to X and the only part Y available was Koch's so don't blame me"
asciilifeform: just like all cmachineism eventually converges to koch.
mircea_popescu: http://btcbase.org/log/2018-01-08#1766977 << i don't see the problem with using the actual spec. koch "optimizations" not really useful. ☝︎
asciilifeform: i suspect that koch was blindly following the schoolbook here.
asciilifeform: the nonsensical padding scheme used by rfc2440/4880/koch is on display , incidentally
asciilifeform: naturally koch methodically omitted it
asciilifeform: i mean ffs, koch dun even leave a knob to get ~key~ entropy trngistically.
mircea_popescu: dja understand motherfucking koch fixed one of the witnesses in mr ?
asciilifeform: there is such a thing as maliciously-ugly c. i.e. what koch et al write.
asciilifeform: which is monstrously retarded, but koch did not ask me, lol
asciilifeform: for what do we need an n-th koch
mircea_popescu: which yes, kock wouldn't be koch if he didn't live to try and befoul the tools of salvation through association with his turpitudes.
asciilifeform: koch wouldn't be koch if he did not write it like-so.
asciilifeform: ( it was perhaps 80% of how asciilifeform cut koch-mpi , by similar proportion )
asciilifeform: but it isn't clear to me why weaker koch test would have different answer than stronger m-r
mircea_popescu: was it ever checked whether it would appear prime to koch-gpg ?
asciilifeform: http://btcbase.org/log/2017-12-14#1751803 << at one time i linked to 'diff' src here, when hunting for ordering nonuniformity that turned out to be a uniturdism . it made koch's war crime, look clean. ☝︎
asciilifeform: i can even see the logic, 'why would i give half a shit what rngolade to feed to my koch whitenertron'
asciilifeform: and 'uses the components of elgamal' and 'leaks like a sieve if we use koch's routines, via side channel' required additional pedanticism somehow ?
asciilifeform: mircea_popescu: the linked item earlier is from when asciilifeform dug out and studied koch's proposed sidechannel countermeasure. proclaimed it nonsensical and useless, and bit the bullet, 'must bignum from scratch.'
diana_coman: mircea_popescu, we can do it yes; I guess the question is where to start i.e. no point in starting from koch that I can see; starting from asciilifeform 's sane-mpi would be one; adds and deletes stuff
asciilifeform: thing could shrink further, i left koch's buffering system , used by the logger ( also remained ), intact
mircea_popescu: anyway. my conclusion is ima do the eu-crypto as a new genesis, because really most of the koch crap in mpi (esp the prng crap) got dirtched
asciilifeform: so it is still entirely a koch product
asciilifeform: ( she is using my sanitized gpg bignum. but i did not preserve koch's faux-rng atrocity ; so anything pertaining to entropy, is new )
asciilifeform: you lose 1. but in koch's variant you lose 2 .
asciilifeform: aha, koch does
asciilifeform: mod6: noshit koch doesn't do this
mod6: <+mircea_popescu> in other news : it was established in teh minigame torture rooms that in point of fact 4096 bit keys contain only 4090 bits of entropy at the very most (minus whatever koch-gpg manages to shave off in other ways). << uugh. every time we peel a layer back...
mircea_popescu: the reason is that (in a translation of what koch-gpg does into sanity) you take 2045 bits of rng for each possible prime, stick 11 in front and 1 in the tail and THAT is your 2048 bit prime candidate.
mircea_popescu: in other news : it was established in teh minigame torture rooms that in point of fact 4096 bit keys contain only 4090 bits of entropy at the very most (minus whatever koch-gpg manages to shave off in other ways).
diana_coman: existing koch-rsa, simply once with co-prime e, the other time with prime e
asciilifeform: ang-st: asshole in C << koch, drepper, et al. but they're old and they ain't making more, for some reason.
mircea_popescu: http://btcbase.org/log/2017-11-08#1734650 << this is very much a koch-gpg problem in the vein of "lobbes warning people not to rely on the "control dials" as provided by koch-gpg, for being unreliable" and probably the most important example thereof. ☝︎
asciilifeform: ( unsurprising koch mechanics )
mircea_popescu: well, at first it was about lobbes warning people not to rely on the "control dials" as provided by koch-gpg, for being unreliable ; then you wanted to talk about fps and then at some point and without warning anyone apparently pivoted to talking about pubkeys and signatures.
mircea_popescu: yes, koch fps are ineptly chosen names. yes there's value in having a biunivocal name-item relation by default.
asciilifeform: observe the mendacious idiocy of koch's signature code, where if sha1 hash collision is found , can forge sigs ~regardless of what sig algo hashing was set to~
mircea_popescu: koch-gpg is an unreliable apparatus in the vein of random-shooting pistols etc.