Light

Episode #964 Quiz

PQ3
Date: 2024-03-05 | Length: 2 hrs | Episode page at twit.tv

About this episode

Apple’s PQ3 upgrades iMessage with hybrid post-quantum and elliptic-curve cryptography, using Kyber768 for initial key establishment and periodic rekeying. Device-generated public keys live in Secure Enclave, while formal verification with Tamarin and game-based proofs claims secrecy and authenticity. Rekeying overhead exceeds 2 KB, so it amortizes roughly every 50 messages or weekly.

Your name and email are stored only in your browser local storage for convenience. They are not retained server-side.

Question 1: According to the episode, what fixed-size transformation did Steve recommend for handling a backend that only accepts an 8-character password drawn from a 64-character alphabet?
Question 2: What did Apple say was the main reason PQ3 does not use the post-quantum ratchet on every message?
Question 3: How did Steve characterize the relationship between Signal's prior design and Apple's claim that PQ3 uniquely reaches Level 3 security?
Question 4: What did Steve recommend Robert do after the company failed to properly address the vulnerable server-banner issue?
Question 5: What did Apple say its PQ3 design uses for the initial post-quantum key establishment?
Cancel