A cryptanalysis paper on arXiv (cs.CR, 2026-10-05) shows that the CRT-based compartmented secret sharing scheme of Yang, Zhu, Fu and Xia (ISIT 2026), claimed to be ideal, is insecure. It exhibits three families of unauthorized subsets that reconstruct the secret, because the security analysis ignored some published polynomials. The only exception is a degenerate parameter choice where the whole participant set is the only authorized subset. Similar flaws appear in the same first author's hierarchical schemes (ISIT 2024, 2026).
Crypto Implementation Vulnerabilities
Real vulnerabilities in cryptographic code and protocols — libraries, wallets, TLS, ZK circuits — with the affected versions and fixes.
Latest
Oct 6 · 3 of 9 shownAn IACR ePrint paper (2026/2338, 2026-10-04) shows that "reconstruct-later" asynchronous verifiable information dispersal is insecure with the standardized Raptor codes R10 (RFC 5053) and RaptorQ (RFC 6330). For R10, every assignment of encoding symbols to honest parties contains a bad (f+1)-subset when K>⌊log2(2f+2)⌋. An implemented RaptorQ attack defeated an RFC 6330 decoder on every adversarial subset tested, and empirical attacks over F256 succeeded for every tested f from 9 to 45 with K=f+1. A preliminary Walrus design and an earlier Walrus testnet had used RaptorQ this way, and Reed-Solomon is suggested as a low-cost alternative.
An IACR ePrint paper (2026/2336, 2026-10-04) introduces query-limited RAM programs, a stateful generalization of quantum one-time programs, built from "one-shot programs" that unify one-shot signatures with the single effective query paradigm. It is a constructive theory paper, and the source describes no vulnerability, flaw or attack. It is likely a weak match for this stream.
More in Privacy
Streams that already watch this field. Follow one as it is — it costs nothing extra.
Everything in fully homomorphic encryption: new papers and benchmarks, libraries and releases, new projects and startups, funding, products, standards, talks and events, attacks and incidents — across research, industry and onchain FHE.
Everything around FHERMA, the FHE challenge platform by Fair Math: new challenges and prize pools, results and winners, solution write-ups, Polycircuit and OpenFHE-rs releases, partnerships and mentions.
Every new release of the homomorphic encryption libraries, compilers and SDKs — TFHE-rs, Concrete, fhEVM, OpenFHE, SEAL, HEIR, Lattigo, Poulpy, CryptoLab HEaaN and enVector, Desilo, IBM HElayers, Apple Swift HE, TenSEAL and GPU libraries — with what changed.