#ECDSA
born too late to RSA, born too soon to ML-DSA, born just in time to ECDSA
December 27, 2024 at 10:12 PM
A new advisory that affects deterministic ECDSA signing in elliptic, which was used in MetaMask. github.com/indutny/elli...
Private key extraction in ECDSA upon signing a malformed input (e.g. a string)
### Summary Private key can be extracted from ECDSA signature upon signing a malformed input (e.g. a string or a number), which could e.g. come from JSON network input Note that `elliptic` by...
github.com
February 15, 2025 at 1:41 PM
that ecdsa signature is *so* valid
August 12, 2024 at 8:18 PM
"Oh yeah ECDSA signatures totally make sense"
October 25, 2023 at 2:05 AM
guessing your ecdsa private key
March 3, 2026 at 7:19 PM
breaking ecdsa as a joke
How fast can we make the crypto financial crisis happen if we really pull together as a team
July 19, 2025 at 4:27 PM
Never get a cryptographer to write music man wtf do u mean the time signature is ECDSA on the sect233r1 curve u can't do that
December 12, 2024 at 9:42 AM
This is a fascinating vulnerability.

The root causes are implementing deterministic signatures instead of hedged, using a general purpose big number implementation, and leaking its API at the crypto layer.

JavaScript types are a red herring, could have happened in any language.
Private key extraction in ECDSA upon signing a malformed input (e.g. a string)
### Summary Private key can be extracted from ECDSA signature upon signing a malformed input (e.g. a string or a number), which could e.g. come from JSON network input Note that `elliptic` by...
github.com
February 16, 2025 at 10:08 AM
Let’s please not develop extremely complex anonymous credentials based on ECDSA. Let’s just use a different signature scheme.
June 30, 2025 at 9:37 AM
bun node:crypto ecdsa secp256k1 support when
January 23, 2025 at 2:38 AM
at some point, a potential bottleneck of (securely) processing the bsky firehose will be "how fast can you verify ecdsa signatures"
February 7, 2024 at 3:25 PM
I’m worried that there may be improvements in classical cryptanalysis of MLWE and ECDSA that leave us in a bad place with standards.
October 8, 2026 at 5:40 PM
What if OpenAI decided fuck if we ball let’s solve ECDSA with Lean.

Please Saltman
October 8, 2026 at 9:00 PM
bun and deno supports secp256k1 but only in ecdh, not ecdsa :/
January 1, 2025 at 5:05 PM
Shor’s algorithm is already cooked because quantum computing but ECDSA remains unsolved
October 8, 2026 at 12:39 AM
🚀 Deno v2.2.6 is released!

- Smarter peer dependency handling
- Faster npm installs
- Lazy dynamic imports (unstable)
- node:http, node:sqlite, and WebSocket fixes
- Cross-curve ECDSA support

Release notes: gist.github.com/ry/16b264485...
March 28, 2025 at 1:26 PM
I've published c2sp.org/det-keygen, a specification for deterministic ECDSA key generation, implemented by filippo.io/keygen#ECDSA.

It reuses RFC 6979 components, it's FIPS 186-5 compliant, it's specialized for the NIST P curves, and it includes edge case test vectors.

I'd love feedback before v1!
June 26, 2025 at 6:53 PM
"it's the same as if you lose your house keys" I can't call up a local tradesperson to break ECDSA what are you talking about
May 7, 2026 at 4:09 PM
It’s easy to look at this and go “haha, stupid crypto people,” but a lot more things than ETH use ECDSA.

Even just a targeted ability to recover private keys would create problems across a lot of industries.
October 8, 2026 at 3:28 PM
NIST standardisation organisation says that systems must phase out non-quantum-resistant cryptography by 2035. RSA, ECDSA, ECDH disallowed as insecure. nvlpubs.nist.gov/nistpubs/ir/...
November 13, 2024 at 5:54 AM
Focus on OpenAI Any%ing math.

Email them about something you want OpenAI to solve.

ECDSA 👀
October 8, 2026 at 12:37 AM
ECDSA signatures be like
quote with a picture you have saved to your camera roll but haven't had a use for

I’ve had this as the one and only photo in a folder called ‘reactions’, and never used it
November 5, 2023 at 6:03 AM
it's ok, my correct ECDSA implementation has been signed by another correct ECDSA implementation
November 22, 2023 at 4:14 AM
One thing I learned is that NIST removed all the rejection sampling implementations from ECDSA between FIPS 186-4 and 186-5.
July 9, 2025 at 4:19 PM