06:31:56 now this grift is being pushed from the white house twitter account as well 06:34:45 what an embarrassment. have to cringe every time anyone talks about this as if it was a real thing. these bullshit terms being thrown around "post quantum private" "post quantum resistant" 06:38:24 no matter if you fell for this or not: attention to this BS is only going to go down from here and trust in any claims made around quantum & ai will only diminish. Anything associated with it will not be taken serious. 13:42:32 One of the best ways to consider Quantum Computers is in relation to the assumptions Monero uses. Monero assumes the Elliptic Curve Discrete Log Problem to be hard where 'quantum computers' represent the problem becoming easy. Even if one thinks QCs are hot air, Monero can upgrade to rely on assumptions which aren't as likely to turn out as a bad decision. 13:43:37 Notably SIS, though LWE is the more discussed problem these days. 13:44:44 These assumptions have their own ongoing analysis and studying, but an honest take is that SIS is likely more reliable to assume than the EC DLP. 13:45:13 don't call ME sis 13:46:07 There's still the further discussion on the exact constructions on top and their efficiency, of course, but the fundamental premise of preferring assumptions we have more faith in is always good. 13:49:07 @spirobel:kernal.eu: PQ privacy is actually a huge one that I'm glad we're tackling with FCMP++. At least with quantum fearmongering about security of systems, there are time senstive paths towards mitigating those. But if quantum computers at any point in history ever become feasible, then the whole RingCT tx graph is leaked in perpetuity 13:49:17 I have some ongoing work on MPC where we try to rely on conservative assumptions (one is _fine_ but could be better, grumble grumble grumble), but I keep poking my coauthors that we reduce to some assumptions when we could reduce to some weaker assumptions instead if we put the time and effort in (its own issue). 13:50:33 It's just always a good idea to be clear what you require and that you trust what you require, without overzealously pulling things in. The fact is, the EC DLP isn't trustworthy over the next decades. 13:50:55 Yes, FCMP++ adding forward secrecy was definitely necessary 13:51:34 That didn't require new addresses or new assumptions though, and only a minor change to the addressing protocol to sample the y term for the output key. 14:01:39 is there anything that makes it not trustworthy other than qc? 14:31:31 this topic is a distraction. it is a mistake to engage with it too deeply. It is impossible to make reliable claims 14:33:23 the trump "quantumania" tweets just have to be the top. no way this can get any more ridiculous 15:09:45 From an outsider's perspective, a lot of the AI/quantum stuff is maybe reminiscent of the crypto/NFT cringefest of 2021/22 15:10:13 No one (here, at least) is going to deny that cryptocurrencies are useful, however the vast majority of crypto projects are obvious scams built on hype and nothing else 15:14:05 Seeing as the US government is blatantly promoting scams at this point (and has long been doing so), it makes sense to be skeptical, but at the same time, at what point do you stop calling something like SpaceX a complete unsubstantiated bubble, and instead might have some real value 15:14:14 I am personally not decided one way or the other, just a random example 15:23:59 physics & game theory 15:26:54 there is not going to be a sudden arrival of an omnipotent force. All the quantum computers we see in practice are just classical computers. The "quantum" part can be replaced by a random number generator. Look at this news item: https://nitter.net/spirobel/status/2065307150180589769#m good starting point to dissect this from first principle 15:27:55 that is how it can be distinguished from something real 15:29:47 Clearly every organization that deals with cryptography/security thinks it's real (NIST, Cloudflare, Google...) 15:31:02 that does not mean anything. 15:31:25 nist also pushed sike for years. 15:33:04 that is where you think about incentives and learn to understand why some people don't understand things that they should be able to understand. 15:33:30 I have no doubts that a lot of AI stuff is a complete smoke-and-mirrors circlejerk, but come on 15:33:57 How confident are you in this? If you started a security company and claimed PQ crypto was all BS, would it do well? 15:34:08 The answer is no, because people know the PQ threat is real, and it's priced in 15:34:15 This is how markets work 15:35:54 @kiersten5821:matrix.org: Eh. I'm not decent with number theory and a lot of things are related to a lot of other things, so I don't want to say definitively either way. I'm unaware of notable concerns regarding the ECDLP over non-pairing curves other than those from QCs. With pairing curves, I'm aware integer factorization c [... too long, see https://mrelay.p2pool.observer/e/uO_79I8LMW45S1VB ] 15:36:01 @jpk68:matrix.org: there are a million penny stocks quantum scams and not one real company. there is zero progress for decades towards anything useful. 15:38:05 the incentives are lined up so that you pretend it is real, make some unverifiable claims and convince investors of it. 15:38:40 just like what we saw with zcash. they even started producing videos and a larp ngo 15:41:41 @spirobel:kernal.eu: There are clearly legit uses for it. You're comparing apples and oranges 15:42:21 Drug discovery, monitoring water treatment, logistics, finance, etc. 15:43:11 no. 15:44:09 Do you think AI and crypto have zero legit use cases as well? 15:44:35 No one is denying that something like "AI quantum blockchain" would be stupid and cringe 15:44:51 There was a time where a company in the netherland got investment to produce a commercially available litography process based on UV. Everyone in history mocked the papers saying it was infeasible. The company took years during which they suffer extreme stress from investors pressuring for results. And then they manages to mak [... too long, see https://mrelay.p2pool.observer/e/jdqc9Y8LU1BIMUpu ] 15:45:19 @syntheticbird: no. 15:45:36 brother, more words please 15:45:46 it was a joint development by TSMC. you cant compare these two situations 15:46:44 @spirobel:kernal.eu: You can't compare the entire sector/discipline of quantum computing with Zcash 15:46:44 in the one case you have a giant corporation that produces 70% of all semiconductors put down billions of dollars in cash to take a calculated risk 15:46:56 @spirobel:kernal.eu: huh. I don't see how TSMC doing input into ASML project make the two situations not comparable in any way ? 15:47:40 no. quantum computers didnt help with any of this. its just absurd to make this claim. quantum computers helped with nothing. > <@jpk68:matrix.org> Drug discovery, monitoring water treatment, logistics, finance, etc. 15:48:05 I said they CAN 15:48:23 Do you deny that they can help with drug discovery? How? 15:49:09 @syntheticbird: the difference is that in one case a very conservative company made a calculated investment. the other thing is just magic fairy dust to scam scientifically illiterate people out of their money (and taxpayers) 15:49:40 @jpk68:matrix.org: absurd claim. zero proof or even credible explanation how a quantum computer could do that. 15:50:53 You can just google it, there is a lot of published research on this 15:51:39 @jpk68:matrix.org: yes and most of published research is bullshit 15:51:52 read about the replication crisis. 15:51:57 that was even before ai 15:52:02 now its way worse 15:52:25 Surely if NIST is so uninformed and is lying about this, they are also lying about, I don't know, SHA-3 15:52:40 Why trust Monero if parts of it are similar to standardized NIST constructions? 15:53:19 absurd jump 15:53:22 > <@spirobel:kernal.eu> the difference is that in one case a very conservative company made a calculated investment. the other thing is just magic fairy dust to scam scientifically illiterate people out of their money (and taxpayers) 15:53:22 the difference is that in one case someone with big money put big money into a big complex project. the other thing is just something made up bro the entire scientific community is wrong and everything is a scam 15:53:32 there, that's how your message read btw. 15:53:41 (totally agree on the taxpayer part tho) 15:54:09 @spirobel:kernal.eu: exact same jump you did with PQ Crypto imo 15:54:36 I know there was one interesting paper regarding the ability to use the EC CDH to solve the EC DLP though, which really just shows the sky's the limit for what can do what: https://eprint.iacr.org/2023/539 15:55:27 > <@syntheticbird> the difference is that in one case someone with big money put big money into a big complex project. the other thing is just something made up bro the entire scientific community is wrong and everything is a scam 15:55:27 no. there is a physical reality. and this physical reality is created by the people that live here in taiwan and produce all of the chips that we use every day. I trust them more than what ever nebulous terms like "scientific community" imply. There is an obvious incentive to keep on grifting and not rock the boat too much for them. 15:55:39 maybe read some Thomas Kuhn 15:55:48 (Regarding other concerns for the EC DLP) 15:56:59 @spirobel:kernal.eu: "physical reality". Bro I have a bad news for you. According to your logic, literally every inventions (including TSMC factory lines) was based on frivolous, magic fairy dust scam (on taxpayer money) 15:57:20 Just because something is done wrong, doesn't mean its impossible 15:57:23 @syntheticbird: no. they made an argument appealing to authority. 15:57:51 @syntheticbird: so you think you can build a perpetuum mobile? 15:58:04 the burden of proof is on the quantum scammers 15:58:11 @spirobel:kernal.eu: Fallacy fallacy. Can you answer my question? 15:58:16 @spirobel:kernal.eu: Well that is very true, tho I would say it was a bandwagon fallacy instead. But you know extraordinary arguments requires extraordinary evidence. So you could be right, but you need to demonstrate that formally 15:59:22 @spirobel:kernal.eu: Appeal to ridicule. Faulty Generalization. Weak analogy 15:59:28 outrageous claims: quantum computers are possible. infinite processing power. super fast computation. almost no energy consumed. perpetuum mobile 16:00:00 @syntheticbird: no. you need give the arguments here if you truly believe this crap 16:00:00 only the first and third one has not been demonstrated infeasible 16:00:52 @spirobel:kernal.eu: Sorry but you are the one that started the discussion saying that quantum computer was magic fairy dust. Me just listing the fallacies you made to my arguments doesn't shift the burden of proof on me 16:00:55 None of us said "infinite". What is your problem with it specifically? Do you not think that a theoretical quantum computer could have real-world applications, or that it would never be possible to make one? Or both? 16:05:23 this is just absurd. you guys think there is going to be a magic machine that will solve all kinds of fields like "Drug discovery, monitoring water treatment, logistics, finance, etc." honestly you can continue to believe in this. i dont care. i wish people would read thomas kuhn and become more literate about science. 16:05:59 @spirobel:kernal.eu: we disagree and thats ok 👍️ 16:06:21 I don't think people are going to take Monero-PSK seriously if you don't think quantum computers are real 16:06:35 what a great time to open MRL 16:06:49 @intr:unredacted.org: always a great time to open MRL 16:09:57 @jpk68:matrix.org: it relies mainly on symmetric encryption so this topic does not even come up. I give zero fucks about what random idiots in an irc channel think about anything. I care about what real users in the real world want. and if people care about quandum i can write an faq and explain how they can use it in a quantum secure way 16:10:05 but i personally will never believe in this shit 16:10:20 and i respect everyone less who takes it at face value 16:10:53 especially the background characters that just show up and agree with what ever they think the current authority figure in the room is saying 16:11:11 You can believe it will never happen but not preparing just in case is a gamble 16:12:24 someone said gamble? 16:12:27 I love gambling 16:14:05 by relying on primitives that dont even touch it, the preparation is done and this topic can stop and does not need to be debated endlessly. it is perfectly suited for an faq for the 3 nerds that care about it while the normal user and observer is not bothered with this 16:14:17 hypothetical nerd debate about magic internet money 16:14:28 Why would you use Monero then? One could say that caring about privacy is only for nerds 16:14:29 and what happens to it when the omnipotent computer arrives 16:14:34 Just use your debit card for everything 16:15:41 if you think quantum computers are real dont use magic internet money. just use cash. all the claims that all projects make about this topic are hand waving bs 16:16:30 Not to mention the ridiculous point about following authority figures. Do you think people join this community not because they want to take part in a permissionless, private, unregulated currency system, but because they want rules to follow? Why? 16:16:40 That just makes no sense whatsoever 16:17:26 @spirobel:kernal.eu: QC are not all powerful 16:17:40 But they are powerful enough to break monero 16:17:45 If one is made 16:17:53 @boog900: Minecraft can't run on QC so that's already not a god like machine 16:18:14 @boog900: with enough logical qubits 16:18:15 Will we get qc or gta 6 first? Polymarket 16:18:20 qbits 16:18:38 this edit was sponsored by qbittorrent 16:18:52 @ofrnxmr: real 19:40:32 <321bob321> Gta had trailer video, so qc