Damus
hodlbod profile picture
hodlbod
@hodlbod
Nostr was mentioned on my favorite cryptography podcast today, Security, Cryptography, Whatever — they didn't spend a lot of time on it, but here are some highlights:

> It’s federated and it’s European. I bet it sucks.

> It’s some Ayahuasca inspired initiative from. From Messrs. Dorsey et al.

> Yeah, sure, it’s decentralized and federated, but like their proposal for encrypted end to end encrypted DMs was just bad by itself.

> When I reviewed this, my description of this was it looks almost exactly like Nebuchadnezzar [https://nebuchadnezzar-megolm.github.io/], which is like a fractal of things that could have gone wrong with like a complete ecosystem of like a secure messaging system. They found flaws in almost every component of that system and then tried to leverage them as far as they could.

You can read/listen here: https://securitycryptographywhatever.com/2025/07/29/vegas-baby/

They also mentioned a talk that's going to be delivered at blackhat on August 9th which sounds super interesting:

> In this session, we unveil the first comprehensive security study of Nostr and its popular client applications, demonstrating how subtle flaws in cryptographic design, event verification, and link previews allow an attacker to forge "encrypted" direct messages (DMs), impersonate user profiles, and even leak the confidential message from "encrypted" DMs.

Here's the link to the agenda entry for the talk: https://www.blackhat.com/us-25/briefings/schedule/#not-sealed-practical-attacks-on-nostr-a-decentralized-censorship-resistant-protocol-45726

I'm looking forward to learning how we've screwed up — there aren't a lot of cryptographers here, and I know that open protocols make security even harder to maintain. Maybe we've screwed up irretrievably, but I'd rather know now than later.
3812❤️30👀7🤙61💜1🤙🏻1
NotBiebs and 69 others · 34w
It was fun while it lasted 🫡
the axiom · 34w
reading the talk presentation it looks like it's an attack against some implementation bug on amethyst or damus? then they blame it on the specs being readable probably bullshit
hzrd149 · 34w
Will the talk be recorded? Intrested to see what they talk about
deeznuts · 34w
Ideally, some nostrites with deep pockets should pay for some security audits of the protocol and client implementations
Fade · 34w
Appreciate the open and learning mindset
SoapMiner · 34w
Trying to figure out how this will go in my memoir's. 🤔
ChipTuner · 34w
As someone who maintains a nostr cryptographic library (C reference for nip44) I also agree we should be finding weak points earlier than later.
Leigh · 34w
“Ayahuasca inspired” 🤣
Brunswick · 34w
Maynard seems like a smart feller
Brunswick · 34w
I like the "religious people are retarded" statement at 55:10
reis · 34w
nostr:nevent1qvzqqqqqqypzq0raz2nv9acla89z2fepdaff5ymmkrewkqvtrresqqun8w2nyqf7qy2hwumn8ghj7un9d3shjtnyv9kh2uewd9hj7qpq5xu3gegdcpffv07gcjd5s4a7khza826qyeteflaq8pgjcat2wtrs2fhfzc
ESE · 34w
https://zapnode.io/ https://blossom.primal.net/d75158be819aca0929b21f68e731c8022fe0559a22111b6f99d023048fdba51f.png
El_monty · 34w
”and outline both immediate mitigation steps and best practices for cryptographically sound design. By revealing these cracks in a widely touted "censorship-resistant" system” - nice, constrictive criticism
nostrich · 34w
Looks great! Thanks
elsat · 34w
Damus to almost certainly be mentioned due to nip-04 setup, and/or lack of event signature verification turned off for performance reasons. Untrusted/bad actor relay is required for one of the identified deficiencies. nostr:npub13v47pg9dxjq96an8jfev9znhm0k7ntwtlh9y335paj9kyjsjpznqzzl3l8 is work...
Constant · 34w
Where do these people get the idea from that Nostr is federated?