Great opinionated, mathematically sophisticated rundown of the "unknown unknowns" that could hide fatal flaws in post-quantum cryptographic algorithms, from Sophie Schmieg. My dumb take-away: stateless (*STATELESS*) hash-based digsigs are the safest.
add a skeleton here at some point
27 days ago