Read NIP-4 and had a question on the crypto algo choice. Why have elliptic curve derived key pairs for signing and verifying posts but yet use aes-256-cbc for encrypted DMs? Why not use an elliptic curve algo? This choice seemed a bit odd considering AES is not quantum safe. #nostr #asknostr #nip #nip4

Reply to this note

Please Login to reply.

Discussion

Found a thread on GitHub with others talking about making NIP-4 stronger https://github.com/nostr-protocol/nostr/issues/69

Went down a really long rabbit hole to find this. Glad to see action has been taking to remove NIP-4 in favor of NIP-44.

https://github.com/nostr-protocol/nips/pull/746

#nostr #security #infosec #NIP

nostr:nevent1qqs2cfwrlum9xwrpnzgnqfgv93pj6yurldcxl8xape4ez4h8fkyamnspp4mhxue69uhkummn9ekx7mqzyzr8tkruxaweh0lmwmqmc4y7dm2w6rdftehjgz4yxj7fkx7ehr8wwqcyqqqqqqgcd46t7