π We are starting #2024 off right! π
With the latest update all Tuta accounts are now utilizing #Argon2 and #AES256 encryption by default.ππͺ
This security improvement is the next step towards full #postquantum encryption!
π tuta.com/blog/aes-256-encryptiβ¦
AES 256 Is Now Securing All Your Encrypted Tuta Emails
We have updated to AES 256 encryption by default, the next step towards full post-quantum encryption!Tutanota
Betelgeuse Vore
in reply to Tuta • • •That's good news! However, I do hope that you guys are not planning to rely solely on Kyber for the pq KEM. I've heard things from @djb . I think everyone would have a better peace of mind if you guys did what Mullvad have done and used two pq primitives: mullvad.net/en/blog/mullvads-uβ¦
Edited for clarity: I meant pq primitives specifically. It is assumed that you are already planning on a hybrid approach. I am suggesting using an additional pq primitive along with Kyber.
Orca π» | π | πͺ | π΄π³οΈββ§οΈ
in reply to Betelgeuse Vore • • •And I don't think @Tutanota@mastodon.social is anywhere near insane :)
Tuta
in reply to Orca π» | π | πͺ | π΄π³οΈββ§οΈ • • •Betelgeuse Vore
in reply to Tuta • • •Are you planning on doing what Mullvad did and use two pq KEMs in the hybrid protocol?
Quote:
> We use two quantum-secure key encapsulation mechanisms (Kyber and Classic McEliece) and mix the secrets from both.
Tuta
in reply to Betelgeuse Vore • • •Skyper π»π§βπ
in reply to Tuta • • •Hybrid Signal protocol for post-quantum email encryption
eprint.iacr.org