#protocol-designView all tags
The KelpDAO Exploit Was Not a Bug
· 22 min — #incident-analysis#security#DeFi#cross-chain#distributed-infrastructure#formal-methods#protocol-design#Ethereum#LayerZero
Hybrid Schemes and Protocol Agility
· 10 min — #research-notes#post-quantum-cryptography#cryptography#protocol-design#security-critical-infrastructure#devsecops#distributed-systems#TLS
The Leaf Is the Hot Path: Signature Placement in Post-Quantum TLS (ML-DSA vs SLH-DSA)
· 9 min — #research-notes#post-quantum-cryptography#cryptography#protocol-design#security-critical-infrastructure#devsecops#distributed-systems#TLS#PKI
Research Frontiers: Composability, Proofs, and Future Primitives
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Long-Lived Secrets: Forward Secrecy, KEMs, and Key Erasure
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Post-Quantum DoS Surfaces: Handshakes, Amplification, and Mitigations
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Operationalizing PQC: Monitoring, Rollback, and Incident Response
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Quantum-Safe VPN Design: Lessons from Implementing a PQ IPSec Stack
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
no_std Crypto in Rust: Determinism, Side Channels, and Constraints
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
BFT with PQ Primitives: When Crypto Costs Dominate
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Quantum-Resilient Identity: Device + Human, Online + Offline
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
PQC for Blockchain Signatures: Wallet UX, Size, and Verification Cost
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Quantum-Safe Secure Boot: Firmware Roots and PQ Signatures
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Hybrid Key Management: Rotations Across Algorithm Families
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Quantum Threat Modeling for Infrastructure: What Changes, What Doesn’t
· 3 min — #research-notes#post-quantum-cryptography#security-critical-infrastructure#protocol-design#cryptography
Compliance & Standards: Translating NIST to Engineering Action
· 3 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Migration Risk Management: Inventory, Prioritization, and Cutover
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Side Channels in PQC Implementations: Where Theory Meets Cache
· 3 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Benchmarking PQC: What to Measure (and What Not To)
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Crypto Agility Tooling: Feature Flags, Policy, and Rollback
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
PQC for IoT: Memory, CPU, and Timing Side Channels
· 3 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
PQC in VPN/IPsec: IKEv2 Revisited Under PQ Constraints
· 3 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
PQC in TLS: Negotiation, Downgrade, and Interop
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Hybrid Key Exchange: Binding Classical and PQ Secrets Correctly
· 3 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Signatures in Practice: Dilithium/Falcon and Deployment Constraints
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
KEMs in Practice: Kyber Handshakes and Failure Surfaces
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
PQC Threat Models: 'Harvest Now, Decrypt Later' in Real Systems
· 4 min — #research-notes#post-quantum-cryptography#cryptography#security#protocol-design
Spec-Driven Development: Making the Spec the Center of Gravity
· 4 min — #research-notes#formal-methods#verification#protocol-design#correctness
Designing APIs for Correctness: Types, Lifetimes, and Capabilities
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Verified Crypto Interfaces: Constant-Time Boundaries and Misuse Resistance
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Symbolic Execution: When Brute Force Becomes Logic
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Concurrency Testing in Rust: Loom, Schedules, and Determinism
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Fuzzing Protocol Parsers: When Inputs Are Adversarial
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Differential Testing: Using Other Implementations as Oracles
· 4 min — #research-notes#formal-methods#verification#protocol-design#correctness
Property-Based Testing: Finding Bugs You Didn’t Imagine
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Refinement: Proving Your Implementation Matches the Spec
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Model Checking at Scale: State Explosion and How to Cheat
· 4 min — #research-notes#formal-methods#verification#protocol-design#correctness
TLA+ for Engineers: Modeling the Minimal Thing That Can Break You
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
Safety/Liveness Catalog: A Practical Checklist for Protocol Specs
· 3 min — #research-notes#formal-methods#verification#protocol-design#correctness
A Minimal TLA+ Workflow for Distributed Protocols
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Designing for Network Partitions: Degraded Modes That Still Make Sense
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Rate Limiting and Fairness: Protecting Critical Paths
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Queues & Streams: Exactly-Once Semantics Without Lying to Yourself
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Geo-Replication: Latency Budgets and Cross-Region Failure Modes
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Gossip & Epidemic Dissemination: Fast, Probabilistic, and Weird
· 3 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Transactions: 2PC, 3PC, and Coordinators You Can't Trust
· 3 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Consistency Models: Linearizability, Serializability, and What You Actually Need
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Membership & Reconfiguration: Changing the Set Without Breaking Safety
· 3 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
BFT from First Principles: Safety, Liveness, and Quorums
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Consensus Under Partial Synchrony: From Paxos to Raft
· 4 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
State Machine Replication: Log Design, Snapshots, and Compaction
· 3 min — #research-notes#distributed-systems#protocol-design#resilience#Rust
Security vs Reliability: When the Same Bug Has Two Names
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Reproducible Builds: Trusting Artifacts in a Hostile World
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Observability as Specification: SLOs, Error Budgets, and Contracts
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Fault Injection: Turning Unknown Unknowns into Test Cases
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Memory Models and Concurrency: Reasoning About Races
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Crash Consistency: Durable State Without Mysticism
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Cryptographic Hygiene: Domain Separation, KDFs, and Context Binding
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Threat Modeling for Engineers: Assumptions as Interfaces
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Time Is a Lie: Clocks, Causality, and Ordering
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Backpressure as a Correctness Property: Stability Under Load
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Idempotency Everywhere: Designing Safe Retries in Distributed APIs
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust
Protocol State Machines: Invariants, Events, and Recovery
· 4 min — #research-notes#protocol-design#correctness#formal-methods#Rust