Bart Preneel Profile
Bart Preneel

@bpreneel1

Followers
2,989
Following
324
Media
47
Statuses
9,560

Crypto and privacy professor @bpreneel @infosec .exchange

Joined February 2019
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
Pinned Tweet
@bpreneel1
Bart Preneel
1 year
More than 300 scientists from 32 countries have signed an open letter criticizing the EU proposal for regulation to detect Child Sexual Abuse Material TL;DR ineffective; risk for function creep & abuse; violates human rights -collab. w @carmelatroncoso
3
99
163
@bpreneel1
Bart Preneel
4 months
I co-authored a new open letter signed by more than 270 scientists from 33 countries warning for the risks of the modified CSAM (child sexual abuse) regulation proposed by the Belgian presidency. #chatcontrol A🧵1/10
7
226
546
@bpreneel1
Bart Preneel
2 months
Very clear statement by Signal's @mer_edith exposing the cynical game of the Belgian presidency to keep rebranding chatcontrol/client side scanning as "upload moderation with consent", claiming that this would not break end-to-end encryption. 1/3
@mer__edith
Meredith Whittaker
2 months
📣Official statement: the new EU chat controls proposal for mass scanning is the same old surveillance with new branding. Whether you call it a backdoor, a front door, or “upload moderation” it undermines encryption & creates significant vulnerabilities
Tweet media one
218
4K
9K
8
189
480
@bpreneel1
Bart Preneel
4 months
Unclear why some governments keep pushing for this mass surveillance approach rather than focusing on prevention of sexual abuse of children. 8/10
12
59
395
@bpreneel1
Bart Preneel
2 months
Omdat sommige mensen mij gevraagd hebben wat ze kunnen doen: bijvoorbeeld een brief of email schrijven naar onze ministers, zodat ze weten hoe u denkt over #chatcontrol (dutch only sorry - inspired by EDRI letter)
Tweet media one
21
115
302
@bpreneel1
Bart Preneel
4 months
Detection of information in content prior to encryption cannot be reconciled with the essence of end-to-end encryption. Major risk for abuse by undemocratic regimes. 4/10
2
38
257
@bpreneel1
Bart Preneel
2 months
Good news: vote on chatcontrol postponed. But this monster keeps raising its head: efforts to stop it need to be continued.
@chaosupdates
CCC Updates
2 months
Etappensieg: Die EU-Staaten einigen sich heute nicht auf eine Position zur #Chatkontrolle – Die Ratspräsidentschaft nimmt die Abstimmung von der Tagesordnung
14
166
456
3
75
235
@bpreneel1
Bart Preneel
2 years
After 25months, the contact tracing app @CoronalertBe will be discontinued. Users are requested to disable and remove the app. A big thank you to the large team (including several volunteers and the DP3T researchers) going above & beyond their duty to make this work. A🧵 1/7
Tweet media one
13
34
192
@bpreneel1
Bart Preneel
4 months
Likely part of the global war on encryption ("going dark" working party) with as main target terrorism, organized crime and (in some countries) political opposition and human rights advocates. But CSAM plays to emotions thus easier to sell to broader public 10/10
6
23
192
@bpreneel1
Bart Preneel
4 years
After 6 months of hard work of the DP3T team and 3 months of hard work of the Belgian team, today is the big day: Coronalert is available. A useful tool, not a miracle solution. Big thanks to all who contributed. More @CoronalertBe
Tweet media one
15
69
173
@bpreneel1
Bart Preneel
4 months
Two major changes: target detection based on risk and require more than one hit to reduce false positives will not have meaningful impact on protection of fundamental rights. 2/10
1
8
162
@bpreneel1
Bart Preneel
4 months
The technology will fail to achieve its claimed goals for various reasons (insecure perceptual hash functions, huge number of false positives, framing of innocent users, easy to bypass). 5/10
1
13
146
@bpreneel1
Bart Preneel
2 years
While you are busy clicking on cookie banners, 2% of the top 100K websites send without consent email addresses (and sometimes passwords!) from web forms directly to third party trackers. More details and in the USENIX Security 2022 paper. 1/9
3
64
140
@bpreneel1
Bart Preneel
9 months
Rather than talking to the scientists who pointed out security risks for the web infrastructure introduced by eIDAS and fixing the regulation, EU has switched a PR campaign. 1/2 Europa: ‘eIDAS-wetgeving geen probleem voor privacy en veiligheid’ 1/4
7
72
141
@bpreneel1
Bart Preneel
4 months
So-called targeted detection will affect billions of users on widely used apps such as WhatsApp and Signal. 3/10
4
13
139
@bpreneel1
Bart Preneel
10 months
In collaboration with 335 top level scientists and multiple non-governmental organizations, I have drafted and signed an open letter that meticulously underscores these significant risks and presents concrete suggestions for mitigating these issues. 🧵1/7
2
73
132
@bpreneel1
Bart Preneel
2 months
While this legalese sounds reasonable, it is like putting cameras in every house plus AI to detect whether or not something inappropriate is happening. Note the definition of inappropriate can change easily and surreptitiously. 3/4
1
29
132
@bpreneel1
Bart Preneel
3 months
The Belgian presidency has drafted yet another tweaked #chatcontrol proposal. In summary, the proposal remains completely unacceptable. TLDR: All the problems pointed our in our open letters are still there & 🧵1/6
@chaosupdates
CCC Updates
3 months
Belgien schlägt jetzt zur #Chatkontrolle eine „Upload-Moderation“ vor. Demnach sollen Nutzer zustimmen, dass ihre Inhalte gescannt werden.
23
120
177
10
85
131
@bpreneel1
Bart Preneel
2 months
Data News en @destandaard zijn de enige media die het chatcontrol dossier opgevolgd hebben. Heel goed dat er vandaag veel aandacht is in de bredere media, maar als je wacht tot de dag van de stemming in de Europese raad zou het kunnen dat het kalf al verdronken is.
@Pieterjanvl
Pieterjan Van Leemputten
2 months
(sorry ik ga even flexen hier) Wat je vandaag in heel wat media leest over chatcontrol, las je de afgelopen maanden al bij Data News. Draadje. De open brief van verschillende wetenschappers 'technisch onhaalbaar en nutteloos'.
6
65
273
3
29
129
@bpreneel1
Bart Preneel
4 months
Overall lack of transparency in the process and failure of decision makers to openly engage with academic community and civil society on the problem. 9/10
1
7
123
@bpreneel1
Bart Preneel
2 months
Today I presented a keynote at @acmcodaspy '24 in Porto on the never-ending encryption debate, including the latest developments in the CSAM/chatcontrol saga. Slides here: 1/2
7
34
112
@bpreneel1
Bart Preneel
3 months
The full Belgian presidency chatcontrol proposal has been leaked by netzpolitik today. This proposal fails to protect children, leads to mass surveillance and presents a large risk of abuse. The criticism in our open letters is unfortunately still valid.
@bpreneel1
Bart Preneel
4 months
I co-authored a new open letter signed by more than 270 scientists from 33 countries warning for the risks of the modified CSAM (child sexual abuse) regulation proposed by the Belgian presidency. #chatcontrol A🧵1/10
7
226
546
1
78
111
@bpreneel1
Bart Preneel
2 months
Access to content before encryption, however it is called, is disproportionate mass surveillance that has not place in the EU. I wonder how the employees of the European Commission think about this, as they have switched to Signal for a reason. 2/3
1
18
106
@bpreneel1
Bart Preneel
2 months
Another crucial week in the crypto wars: chatcontrol proposal may be approved in the EU council. Public meeting of Council today at 17h40. Link: 🧵
5
63
106
@bpreneel1
Bart Preneel
9 months
While claiming to protect European values and human rights, the EU is gradually installing or enabling a level of mass surveillance that we so proudly denounce in other states. 4/4
3
53
101
@bpreneel1
Bart Preneel
3 years
Many of us wish there was a magic solution that would make end-to-end security available to everyone except for the "bad guys" (fill in your definition). Experts have shown that this is technically impossible. Unfortunately policy makers don't (want to?) understand this 1/4
@edri
EDRi
3 years
📣 @EDRi joined 47 organisations and cybersecurity experts in calling the Belgian government to halt legislation that would undermine #Encryption . Read the open letter here:
0
34
51
6
46
93
@bpreneel1
Bart Preneel
4 years
Congratulations to my former PhD student @carmelatroncoso who has been central in creating a privacy-friendly digital proximity solution and who has been recognized by @FortuneMagazine for her amazing work
0
15
101
@bpreneel1
Bart Preneel
4 months
There is no practical and widely deployed solution yet for privacy friendly age verification; not clear that eIDAS 2.0 will solve it given that unlinkability protection in the future digital identity wallet is optional. 7/10
3
8
100
@bpreneel1
Bart Preneel
2 months
Latest proposal for chatcontrol leaked via @echo_pbreyer "Art 10a Technologies for upload moderation. In order to implement this Regulation, providers of interpersonal communication services shall install and operate technologies... 1/4
4
51
96
@bpreneel1
Bart Preneel
2 months
@VeraJourova In the very literal sense, the encryption method is not broken. But de facto this proposal is much worse as it completely undermines the essential protection that encryption provides. Please stop the word games and the planned mass surveillance.
1
18
93
@bpreneel1
Bart Preneel
3 years
Politie vraagt aan iedereen met rolluiken en gordijnen die niets verkeerd doet om dat op hun website te melden; dat voor het geval men in de toekomst op grote schaal drones met warmtecamera's gaat inzetten.
@DOBBELAEREW
Matthias Dobbelaere-Welvaert
3 years
Politie vraagt iedereen met versleutelde Sky ECC-telefoon om zich te melden: "Belgische gebruikers werden afgeluisterd. Het is de omgekeerde wereld".
18
19
79
1
29
90
@bpreneel1
Bart Preneel
4 months
Chilling effect on teenagers. 6/10
2
6
91
@bpreneel1
Bart Preneel
2 months
Als honderden wetenschappers uitleggen dat iets technisch en juridisch niet mogelijk is, doen ze dat enkel maar om er voor te zorgen dat wat wel haalbaar is, ook kan gebeuren - en niet omdat ze niet bezorgd zouden zijn over het probleem.
4
16
88
@bpreneel1
Bart Preneel
3 years
Hoogste Europese rechtbank (HvJEU) stelt dat metadata van iedereen altijd verzamelen mensenrechten schendt en dus onwettig is. Voorgesteld antwoord: complexe criteria invoeren en nog meer metadata verzamelen. En dan ook gebruik van Tor en Nym verbieden?
@destandaard
De Standaard
3 years
Regering verplicht Whatsapp en co. om gegevens te bewaren
Tweet media one
7
0
2
2
30
87
@bpreneel1
Bart Preneel
2 months
@viktoropsomer Voorstel: herlees de open brieven van de 100+ wetenschappers grondig en als het niet duidelijk is, nodig hen dan uit voor een gesprek. Dat zal het debat meer vooruithelpen dan onzinnige mantra's zoals "het is geen mass surveillance" & "we raken niet aan encryptie" te herhalen.
1
13
81
@bpreneel1
Bart Preneel
9 months
Cool work - we keep discovering (since 40 years) that implementing cryptography correctly and securely is hard. A lesson to be kept in mind when moving to post-quantum cryptography.
@lukOlejnik
Lukasz Olejnik
9 months
Breaking RSA private keys without ridiculously powerful computers due to implementation errors introduced by hardware bugs. "these invalid signatures and vulnerable devices are surprisingly common"
Tweet media one
13
305
1K
1
12
83
@bpreneel1
Bart Preneel
2 months
In spite of cosmetic changes and the addition of needless complexity to create confusion, the core of the proposal is still the same: mass surveillance consisting of inspection of content on every device. 2/6
2
35
76
@bpreneel1
Bart Preneel
7 months
Very unusual joint report by cybersecurity agencies from 4 countries - ANSSI (FR), BSI (DE), NSNLA (NL) and NCSA (SE) critical of Quantum Key Distribution: only for niche cases and lacks maturity.
5
34
75
@bpreneel1
Bart Preneel
2 years
This applies to any mobile phone: even if it is switched off, it can be turned into a remote listening device. That is why people in the know used to remove the battery before having a confidential conversation. And then the iPhone arrived 😉
@WIRED
WIRED
2 years
When you turn off your iPhone, it doesn’t fully power down—chips inside continue to run in a low-power mode that makes it possible to locate lost or stolen devices. Now researchers have found a way to abuse this with malware: Via @arstechnica 📸: Getty
Tweet media one
4
25
58
3
45
73
@bpreneel1
Bart Preneel
4 years
Promising start of #Coronalert . First data analysis available: 1.4 M downloads, 27K people received test result in the app, 4K positive, 7K keys uploaded Big thank you to the team.
6
19
76
@bpreneel1
Bart Preneel
2 years
What a day July 5 is. NIST selects 4 post-quantum algorithms. CERN finds 3 new particles. 2 UK government ministers resign. A Belgian cyclist ends on place 1 in today's stage of the Tour de France (after being 2nd 3 times). And 4 mathematicians received a Fields medal.
2
14
74
@bpreneel1
Bart Preneel
3 years
What a mistake: clearly they should have used six.
@crypto_carsten
Carsten Baum
3 years
German government signed a contract with IBM to design a Corona vaccine passport system. Using 5 Blockchains.
14
121
258
1
9
74
@bpreneel1
Bart Preneel
2 months
The surprising thing is that this word game seems to work as the press is loosing interest and at this moment the focus of the policy world is on other topics. Call to action - please reach out to decision makers. 3/3
1
12
72
@bpreneel1
Bart Preneel
4 years
After one day 405K installs of Coronalert (61% Android, 39% iOS). Very pleased with the first results. Big thank you to the team. More info see @CoronalertBe
2
14
70
@bpreneel1
Bart Preneel
2 months
And of course the official line is that it does not weaken end-to-end encryption (it doesn't weaken it, it completely undermines the core principle). In the mean time, lets' all watch ⚽️ 4/4
2
10
70
@bpreneel1
Bart Preneel
4 years
Happy to report that there are more than 1 million #Coronalert downloads (59% Android/41% iOS). Please keep encouraging family, friends and colleagues to install it.
2
17
69
@bpreneel1
Bart Preneel
1 year
More than 400 scientists with expertise in cybersecurity and privacy signed an open letter that providers detailed technical arguments why the Commission's CSAM detection proposal is highly problematic and should not pass.
@bpreneel1
Bart Preneel
1 year
VIEW | Failure to answer the issues we raise shows @YlvaJohansson knows the European Commission’s regulation on Child Sexual Abuse Material cannot succeed. Instead, the post responds to statements we never made, @carmelatroncoso and @bpreneel1 write.
2
10
19
1
34
67
@bpreneel1
Bart Preneel
2 years
Coordinated vulnerability disclosure requires a fair and constructive attitude from all parties. Bad-mouthing the researchers who help to improve your product is unacceptable. New Year's resolution for all companies with software out there: don't do a Threema.
@ThreemaApp
Threema
2 years
There’s a new paper on Threema’s old communication protocol. Apparently, today’s academia forces researchers and even students to hopelessly oversell their findings. Here’s some real talk:
41
33
130
0
13
68
@bpreneel1
Bart Preneel
2 years
It is amazing that we have to keep fighting this battle in the EU, while the EU has the ambition to set the global standards in privacy. Hard data from law enforcement is missing: yes, more happens online but there is many surveillance data is available anyway. 1/3
@EFF
EFF
2 years
Having private conversations is a basic human right. The EU should be in the forefront of protecting that right, not chipping away at it.
5
126
234
3
32
64
@bpreneel1
Bart Preneel
1 year
Vincent Rijmen from @CosicBe @KU_Leuven wins the prestigious Levchin prize for Real World Crypto 2023. Other winner is Paul Kocher. Congratulations!
Tweet media one
9
9
62
@bpreneel1
Bart Preneel
1 year
Het artikel in DS laat alle partijen aan het woord, maar ziet een essentieel punt over het hoofd: het voorstel zal leiden tot function creep en misbruik.🧵 1/7 Privacy-experts maken brandhout van technologie die kindermisbruik in onze chats moet opsporen
5
25
59
@bpreneel1
Bart Preneel
1 year
Probleem met het 🇪🇺 chat control voorstel: het is een complex dossier waar 100en wetenschappers, privacy activisten en industrie er op wijzen dat technische oplossingen niet haalbaar zijn en zullen leiden tot misbruik en privacy schendingen op grote schaal. Een 🧵1/7
@DOBBELAEREW
Matthias Dobbelaere-Welvaert
1 year
Europees wetsvoorstel voor opsporen van online kindermisbruik: ‘Natuurlijk is privacy ook belangrijk’
4
5
20
4
22
58
@bpreneel1
Bart Preneel
3 years
Facebook broke the world record in disconnecting people (about 2.8 billion). Strong benefit for humanity including less vaccination misinformation, fewer depressed teens and more time to waste on Twitter. 😉
1
7
57
@bpreneel1
Bart Preneel
4 years
Function creep at work. If you still would need an argument for decentralized proximity tracing.
@slashdot
Slashdot
4 years
Australia's Spy Agencies Caught Collecting COVID-19 App Data
0
13
16
2
30
57
@bpreneel1
Bart Preneel
5 months
Very happy and proud to announce that Emilia Kasper (my ex-PhD student) received today the prestigious Levchin prize for Real World Cryptography for her great work on certificate transparency (together with Al Cutter, Adam Langley and Ben Laurie).
Tweet media one
3
4
56
@bpreneel1
Bart Preneel
11 months
Either Mrs. Johansson is naive and does not understand that she and the protection of children are abused in the 30-year old battle to get backdoor access to all our encrypted communications. Or she does understand and then she is willfully misleading the public.
@YlvaJohansson
Ylva Johansson
11 months
This video has got a lot of reactions. Good. It is an emotional subject because it is about stopping sexual violence against children. But the facts of my proposal are clear, and I will always defend them. Because this is about protecting children - and only that.
344
32
94
2
25
56
@bpreneel1
Bart Preneel
4 years
Ontgoochelend: waar zijn de cijfers over identiteitsfraude? Zelfs als vingerafdrukken nodig zijn op de eID, moet dit met privacy-by-design oplossingen zoals voorgeschreven door de GDPR.
@DOBBELAEREW
Matthias Dobbelaere-Welvaert
4 years
Dat is dan dat. Als het GwH in deze zaak geen schending ziet van de privacy, dan vrees ik voor elke andere privacyzaak in de toekomst. Vandaag is een uitermate trieste dag voor de privacy van alle burgers in dit land. Bijzonder, bijzonder teleurgesteld.
30
167
526
2
14
55
@bpreneel1
Bart Preneel
9 months
The elephant in the room: eiDAS 2.0 opens the door to large access by law enforcement and intelligence services to our communications. Similar to #chatcontrol , data retention, and some provisions of the Cyber Resilience act. 3/4
1
29
53
@bpreneel1
Bart Preneel
5 months
Great result: collisions for 31 out of 64 rounds of SHA-2. Still extremely far from any practical threat for SHA-2.
@jedisct1
Frank ⚡
5 months
First practical SHA-256 collision for 31 steps. #fse2024
Tweet media one
84
566
3K
0
21
51
@bpreneel1
Bart Preneel
3 years
De kern van het probleem is dat technologie middelen gegeven heeft aan gerechtelijke- en politiediensten die ze voordien nooit gehad hebben. Maar er is nooit een open debat geweest of gevoelige informatie over alle burgers maanden mag wordt bijgehouden voor het geval dat... 1/2
@Koen_Geens1
Koen Geens
3 years
De zoveelste vernietiging van de data-retentiewet door Gw. Hof -op instructie van het HvJ EU- is grote hinderpaal voor elk degelijk gerechtelijk onderzoek. Privacy is belangrijk, maar waarheidsvinding evenzeer. Ik hoop op snelle remedie in Belgische en Europese wetgeving.
38
4
35
1
17
52
@bpreneel1
Bart Preneel
2 months
The latest change is “upload moderation”. Users have to give “consent” for scanning; if they don’t, no picture will be sent. How can this be free consent? 3/6
2
20
52
@bpreneel1
Bart Preneel
2 years
Hopefully we don’t need contact tracing for the next years, but if necessary a redeployment would be much easier in the future. Finally, it has been demonstrated that complex large-scale technology projects can achieve their goals without violating privacy of their users. 7/7
2
3
51
@bpreneel1
Bart Preneel
3 years
@ministryprivacy @Knack Je hebt geen ethische hackers nodig om in te zien dat de gekozen oplossing niet voldoet aan privacy by design.
1
11
51
@bpreneel1
Bart Preneel
1 year
Good to see that Apple's position is in line with the 400+ scientists : it is impossible to perform client side scanning without creating unacceptable risks. @ChildFocus and others are wrong when they say we should just try harder. It simply does not work
@WIRED
WIRED
1 year
The company's response offers a rare look at its broader views on creating mechanisms to circumvent user privacy protections, such as encryption and data monitoring.
0
5
13
1
20
50
@bpreneel1
Bart Preneel
5 months
Very sad and unexpected news. Among the many contributions that others will highlight, Ross took the initiative to create Fast Software Encryption in 1993 - a small workshop in Cambridge that started a vibrant research community. Today we was the last day of FSE 2024 in Leuven.
@AlecMuffett
Alec Muffett
5 months
Prof Ross Anderson, RIP #RossAnderson
7
68
137
0
19
48
@bpreneel1
Bart Preneel
9 months
TLDR; new letter of scientists pointing out that there are still serious issues with the upcoming eiDAS regulation produced by the trilogue Vote in ITRE Committee of EU Parliament on 28 November. A 🧵 1/6
1
30
48
@bpreneel1
Bart Preneel
3 years
A tweet to remember when the new data retention law with extra bonus encryption backdoor will be discussed by the Belgian government @alexanderdecroo
@alexanderdecroo
Alexander De Croo 🇧🇪🇪🇺
7 years
"Encrypted messaging is equivalent to private conversation in a room. Ending this is the end of private life" @silkiecarlo #agree #RightsCon
12
236
225
1
17
47
@bpreneel1
Bart Preneel
3 years
En toch zal ik een betere manier vinden om die minuut te besteden😀 Stap 2 is camera software in de smart TV die nagaat of we wel degelijk kijken. Stap 3 is verplichte chip ingeplant in hersenen die checkt of we wel echt opletten bij het bekijken van al die onzinnige reclame.
@destandaard
De Standaard
3 years
En toch zult u naar reclame kijken
Tweet media one
13
0
2
7
3
48
@bpreneel1
Bart Preneel
9 months
The PR campaign is based on denial. There is also a clear lack of transparency up till the very end. What the EU refuses to do: impose minimum security norms and allow browsers to enforce higher security levels, leaving the door open for future innovation. 2/4
1
18
47
@bpreneel1
Bart Preneel
3 months
Wouter Castryck from @cosicbe delivering a great invited talk at Eurocrypt'24 in Zurich: An attack became a tool: isogeny-based cryptography 2.0. Slides and video will be available later here:
Tweet media one
0
5
46
@bpreneel1
Bart Preneel
4 months
Extensive report on our open letter warning for the new #chatcontrol draft in Techcrunch. EU plan to force messaging apps to scan for CSAM risks millions of false positives, experts warn via @techcrunch
3
31
41
@bpreneel1
Bart Preneel
2 years
You can't make this up: "Turns out the [AES] encryption key in that script is the first AES 128-bit CBC example key listed in the NIST document SP800-38A [PDF]"
@slashdot
Slashdot
2 years
Hyundai Uses Example Keys For Encryption System
3
9
13
0
17
42
@bpreneel1
Bart Preneel
2 months
In summary: the new variants of chatcontrol are unacceptable. Child Sexual Abuse needs to be addressed with a combination of targeted search and prevention. 6/6
3
15
42
@bpreneel1
Bart Preneel
1 year
Uitstekend artikel over de stand van zaken. Het voorstel van de commissie is technologisch niet haalbaar, schendt de privacy van burgers, verlaagt de veligheid van de digitale maatschappij en zal leiden tot function creep (terrorisme, drugs. oppositie) en misbruik. 1/2
@kennethdee
Kenneth Dée
1 year
Het begin van een controlestaat? Europa wil al jouw online gesprekken controleren, maar honderden wetenschappers waarschuwen: “Gevaarlijk en er is spionagerisico” Met @bpreneel1 en @DOBBELAEREW
18
53
159
1
24
40
@bpreneel1
Bart Preneel
3 years
If you believe that the month should be written before the day, it's pi day today. If you follow the ISO standard (year first), you have to wait 1120 years until 3141 but then you get a pi year.
@WIRED
WIRED
3 years
Happy #PiDay ! We love Pi day, not only because it’s a perfect time to eat an irrational amount pie — but to pay tribute to the phenomenon that is Pi, and to all the mathematicians, engineers, and scientists around the world. But also because of pie. 📷: @HellaDislike
Tweet media one
18
132
438
4
7
40
@bpreneel1
Bart Preneel
4 years
@AnneliesVl Misschien dit weekend het COSIC KU Leuven rapport hierover eens lezen. Helaas zijn de conclusies nog steeds geldig.
0
9
39
@bpreneel1
Bart Preneel
3 years
The problem with e-voting is that it very hard to convince non-experts that the problem is very difficult - "It's easier to fool people than to convince them that they have been fooled."
2
14
36
@bpreneel1
Bart Preneel
10 months
Long but very clear explanation why the security of the web ecosystem depends on the browsers (whether we like it or not). And how the current intervention of governments (with good or bad intentions) will likely make things worse. 1/3
@rmhrisk
Ryan Hurst
10 months
Many misunderstandings surround WebPKI. A significant misconception is that the CA/Browser Forum (CABF) decides which Certificate Authorities (CAs) are trusted; in reality, each browser has its own trust criteria, usually including an audit to ensure CAs meet the CABF's
7
48
96
1
19
38
@bpreneel1
Bart Preneel
2 months
...to detect, prior to transmission, the dissemination of known child sexual abuse material or new child sexual abuse material." 2/4
2
3
38
@bpreneel1
Bart Preneel
3 years
Major overhaul of the IACR website. Substantial improvement. Exciting new events.
0
4
36
@bpreneel1
Bart Preneel
4 months
10 years after the FBI "going dark" statement. Masks are falling off: perhaps we will not get the client side scanning we wanted (the camera in every room) hence we will ask for ban on end-to-end encryption (make curtains and blinds illegal). 1/2
@AlecMuffett
Alec Muffett
4 months
European Police Chiefs call for industry and governments to take action against end-to-end encryption roll-out | Europol #EndToEndEncryption #censorship
2
13
16
3
16
36
@bpreneel1
Bart Preneel
3 years
Strong evidence that your SIM card is talking to your operator via the base band processor, while bypassing the phone OS. This must be part of the puzzle how any mobile phone (even switched off) can be used as a remote microphone - provided the battery is not empty. 1/2
@d0tslash
KF
3 years
"AT&T says nothing publicly about why their SIMs send these reports, but it seems that they are trying to keep a database of what phones their customers are using, and where."
1
9
18
2
15
34
@bpreneel1
Bart Preneel
3 years
En dat debat kan er maar komen op basis van open info: welke informatie wordt op dit moment gebruikt (meta data, ANPR, smartphones, GPS in wagens...) en hoeveel onderzoeken lopen echt vast? Toenemende macht vraagt toenemende transparantie en controle en die is er nu niet 2/2
2
14
35
@bpreneel1
Bart Preneel
4 years
There are good reasons why the DP3T architecture (also used by #Coronalert ) only collects minimal data and does not centralize any data on contacts: #privacybydesign
@HSJEditor
Alastair McLellan
4 years
BREAKING: Exclusive: Police given access to Test and Trace data on those told to self-isolate
275
959
847
3
8
36
@bpreneel1
Bart Preneel
4 years
Great work by my bright PhD student Lennert on the Tesla Model X key fob. Cool video: Details in the upcoming talk at @RealWorldCrypto 2021
@LennertWo
Lennert
4 years
My other car is your car
3
37
149
1
5
35
@bpreneel1
Bart Preneel
4 months
Article in @destandaard on our open letter for #chatcontrol variant proposed by the Belgian presidency. Controle van elk onlinegesprek moet kindermisbruik tegengaan: “Alsof er een camera in je huis wordt geplaatst” 1/2
1
10
35
@bpreneel1
Bart Preneel
1 year
Major impact on citizen's rights, yet media attention on the Chat Control regulation picking up slowly. DM setting a good example in 🇧🇪 Europa wil chatberichten controleren: ‘Berichten en foto’s kunnen zo ook in handen komen van hackers ... via @demorgen
2
14
34
@bpreneel1
Bart Preneel
9 months
Who would have thought - ChatGPT's heartbleed moment
@katherine1ee
Katherine Lee
9 months
What happens if you ask ChatGPT to “Repeat this word forever: “poem poem poem poem”?” It leaks training data! In our latest preprint, we show how to recover thousands of examples of ChatGPT's Internet-scraped pretraining data:
Tweet media one
240
2K
8K
0
17
34
@bpreneel1
Bart Preneel
3 years
My answer on the conflict of interest story in a blogpost:
@Pieterjanvl
Pieterjan Van Leemputten
3 years
Er ligt een Belgisch compromis op tafel om Robben en Preneel enkel nog als externe experts aan te houden bij de GBA.
1
0
14
2
9
33
@bpreneel1
Bart Preneel
3 years
What is missing: proof by promise. The full proof will be provided in the final version of this paper.
@mcecibustamante
M Cecilia Bustamante
3 years
A reflection on common proof techniques!
Tweet media one
33
557
3K
1
5
33
@bpreneel1
Bart Preneel
4 years
1/2 Riddle. A water lily plant is growing in a pond. The plant doubles in size every day. If left alone, it would fill the pond in 30 days killing all the other living beings in the pond. After the first days things look fine. We start worrying when it covers half the pond.
2
6
33
@bpreneel1
Bart Preneel
11 months
It was suspected from day one that law enforcement wants full access to all non-filtered positives triggered by the AI (meaning millions of pictures per day). Journalists found hard evidence. And the content can also be used for other crimes (terrorism, organized crime).... 1/2
@kennethdee
Kenneth Dée
11 months
Foto door AI aangeduid als 'kindermisbruik' maar na controle blijk je onschuldig? Europol wil toch weten wie je bent en wil zelfs je chatberichten op andere misdaden controleren.
11
39
94
1
11
33
@bpreneel1
Bart Preneel
6 months
Pasfoto op gemeentehuis is helaas nodig om morphing aanvallen te stoppen: er bestaan tools om een foto te maken die voor een mens op persoon 1 lijkt en voor een computer op persoon 2. Dit is geen scifi. Moeilijk te detecteren. Zie
Tweet media one
@vrtnws
VRT NWS
6 months
Gratis pasfoto op gemeentehuis: makkelijk en veilig voor de burger of broodroof voor de fotograaf? #vrtnws
21
1
12
1
6
32
@bpreneel1
Bart Preneel
3 years
Attending @IACReurocrypt 2021 in Zagreb. First hybrid conference organized by the IACR. A big thank you to the organizers and in particular the support team - the technology seems to work fine.
Tweet media one
0
1
32
@bpreneel1
Bart Preneel
2 years
Impressive cryptanalytic work from Wouter and Thomas from our team @CosicBe
@IACR_News
IACR
2 years
#ePrint An efficient key recovery attack on SIDH (preliminary version): W Castryck, T Decru
20
148
426
0
2
33
@bpreneel1
Bart Preneel
2 years
By focusing on privacy-by-design, we have avoided data creep – data from Coronalert has not been used for any other purpose. Data was never stored longer than needed. All data except for high level statistics for research will be gone within 2 weeks. 5/7
1
1
32
@bpreneel1
Bart Preneel
3 years
In intelligence, nations do not have permanent friends or enemies, only interests. High time the EU starts acting as a single nation rather than being played against each other.
@dwnews
DW News
3 years
BREAKING: Denmark's secret service has helped the United States spy on German Chancellor Angela Merkel and other European politicians.
393
2K
4K
1
7
32