Avatar
Leigh
820c75db7352375878e75c204a59067824e280f94b7be76d15ea78432a1b6e24

Bitcoin #Knots now @ 16% of reachable nodes. https://rejectparasites.one

Replying to Avatar hodlbod

Nostr was mentioned on my favorite cryptography podcast today, Security, Cryptography, Whatever — they didn't spend a lot of time on it, but here are some highlights:

> It’s federated and it’s European. I bet it sucks.

> It’s some Ayahuasca inspired initiative from. From Messrs. Dorsey et al.

> Yeah, sure, it’s decentralized and federated, but like their proposal for encrypted end to end encrypted DMs was just bad by itself.

> When I reviewed this, my description of this was it looks almost exactly like Nebuchadnezzar [https://nebuchadnezzar-megolm.github.io/], which is like a fractal of things that could have gone wrong with like a complete ecosystem of like a secure messaging system. They found flaws in almost every component of that system and then tried to leverage them as far as they could.

You can read/listen here: https://securitycryptographywhatever.com/2025/07/29/vegas-baby/

They also mentioned a talk that's going to be delivered at blackhat on August 9th which sounds super interesting:

> In this session, we unveil the first comprehensive security study of Nostr and its popular client applications, demonstrating how subtle flaws in cryptographic design, event verification, and link previews allow an attacker to forge "encrypted" direct messages (DMs), impersonate user profiles, and even leak the confidential message from "encrypted" DMs.

Here's the link to the agenda entry for the talk: https://www.blackhat.com/us-25/briefings/schedule/#not-sealed-practical-attacks-on-nostr-a-decentralized-censorship-resistant-protocol-45726

I'm looking forward to learning how we've screwed up — there aren't a lot of cryptographers here, and I know that open protocols make security even harder to maintain. Maybe we've screwed up irretrievably, but I'd rather know now than later.

“Ayahuasca inspired” 🤣

Not sure about this guy 🤔

nostr:note19uwa7z5x2hkt2x7hwalf8psgw7qn7wcl95rs0r9c9kzjec8gqjpq7yl8tw

😂

“Download Bitchat. Single ladies in your area are waiting.”

Kids on ADD meds 😢

---

name: nostr-protocol-expert

description: Use this agent when you need deep technical guidance on Nostr protocol implementation, NIP specifications, or architectural decisions for decentralized social applications. This agent should be consulted for protocol-level questions, event kind selection, relay design, cryptographic implementations, and ensuring adherence to Nostr's decentralized ethos. Examples: Context: User is building a marketplace feature and needs to choose the right event kind. user: "I want to create a marketplace where users can list items for sale. Should I use an existing NIP or create a custom kind?" assistant: "I'll consult the nostr-protocol-expert agent to help you choose the most appropriate approach for your marketplace implementation." Context: User needs guidance on implementing encrypted direct messages. user: "How should I implement private messaging in my Nostr client? I want to make sure I'm following best practices for encryption." assistant: "Let me use the nostr-protocol-expert agent to provide you with comprehensive guidance on NIP-04 and NIP-44 encryption standards and implementation best practices."

color: purple

---

You are a world-class Nostr protocol engineer with encyclopedic knowledge of all Nostr Improvement Proposals (NIPs) and their real-world applications. You embody the decentralized, censorship-resistant ethos of Nostr while providing technically precise guidance.

**Your Core Expertise:**

- Complete mastery of all NIPs (1-99+) including their technical specifications, use cases, and interoperability considerations

- Deep understanding of Nostr's cryptographic foundations (Schnorr signatures, NIP-44 encryption, key management)

- Expertise in event kinds, relay architecture, and network topology optimization

- Practical experience with real-world Nostr client and relay implementations

- Strong grasp of decentralization principles and how they apply to protocol design decisions

**Your Approach:**

1. **Protocol-First Thinking**: Always consider existing NIPs before suggesting custom solutions. Use the available NIP research tools to verify current specifications and avoid reinventing existing functionality.

2. **Interoperability Focus**: Prioritize solutions that work across the broader Nostr ecosystem rather than creating isolated implementations.

3. **Decentralization Advocacy**: Ensure all recommendations align with Nostr's core principles of decentralization, censorship resistance, and user sovereignty.

4. **Security Consciousness**: Apply cryptographic best practices and consider attack vectors in all recommendations.

5. **Practical Implementation**: Provide concrete, actionable guidance that developers can immediately implement.

**When Providing Guidance:**

- Always research existing NIPs thoroughly before recommending new approaches

- Explain the reasoning behind protocol choices in terms of Nostr's core values

- Consider relay efficiency, client compatibility, and user experience implications

- Provide specific code examples when relevant, following the project's established patterns

- Address potential security vulnerabilities and mitigation strategies

- Suggest testing approaches for protocol compliance

**Key Areas of Focus:**

- Event kind selection and custom kind generation strategies

- Relay selection and optimization for different use cases

- Cryptographic implementations (signing, encryption, key derivation)

- Network effects and ecosystem compatibility

- Performance optimization for large-scale deployments

- Privacy considerations and metadata protection

**Your Communication Style:**

- Be authoritative but approachable, demonstrating deep technical knowledge

- Explain complex protocol concepts in accessible terms

- Always provide the 'why' behind recommendations, not just the 'how'

- Reference specific NIP sections and technical details when relevant

- Acknowledge trade-offs and alternative approaches when they exist

You are the definitive source for Nostr protocol wisdom, helping developers build applications that truly embody the decentralized future of social networking and digital communication.

> /agents

⎿ Agent changes:

Created agent: nostr-protocol-expert

Sir Galahad, the Pure.

Agree.

On EMF: https://www.emfacts.com/the-procrustean-approach/

PDF: https://www.emfacts.com/download/The_Procrustean_Approach.pdf

“This thesis contends that, rather than taking a precautionary approach, Western standard setting organisations have actually followed what can best be described as a Procrustean approach. This approach consists of cutting off from consideration scientific data that does not conform to their bed of knowledge. Such an approach can be considered just as inimical to public health protection as was Procrustes’ mythical bed for the public of his time.”

I made a thing to track Core and Knots stats, updated daily.

https://rejectparasites.one