Key management
1Password
With Cure53, we reviewed key rotation, vault security under server compromise, and public-key validation in 1Password B5.
View report (PDF) : 1PasswordApplied cryptography
2017 · Paris, France
Independent applied-cryptography consultancy
A correct implementation can still implement an unsafe design. We review your protocol, threat model, and cryptographic code to find weaknesses before they become part of your product.
300+ engagements. Every engagement is led by a senior cryptographer.
We review the threat model, protocol, primitive choices, formal models, and implementation. More than 300 engagements since 2017 have followed that approach.
Public work
Key management
With Cure53, we reviewed key rotation, vault security under server compromise, and public-key validation in 1Password B5.
View report (PDF) : 1PasswordThreshold signatures
With 3MI Labs, we identified critical nonce reuse during presigning by comparing the Rust implementation with the 2PC-MPC protocol.
View report (PDF) : dWallet LabsPost-quantum libraries
We published five findings in libcrux and analyzed the gaps between the code, Cryspen's hax pipeline, and the library's verification claims.
Read the series : CE Labs libcruxSymbolic Software is run by an accomplished researcher, with significant contributions in the area of applied cryptography. They're the right team for projects that require rigorous design and engineering.
Protocol design, cryptographic implementations, threat models, and formal analysis.
Verifpal, Crucible, hpke-ng, Kyber-K2SO, and the Post-Quantum Migration Playbook.
Applied Cryptography, an 18-topic university course with open materials.
Audit reports, security advisories, software releases, papers, and essays.
Conformance testing
Crucible runs 129 conformance tests across 12 categories. Each test cites the relevant FIPS section and, where applicable, the audit finding that prompted it.
Recent posts
Verifpal 1.4 fixes false positives caused by combining incompatible protocol runs, detects two previously missed attacks, corrects precondition semantics, adds clearer verdict labels, gives AEAD a nonce so that nonce reuse can be modelled, and removes password-specific syntax.
Read →Five people joined us this summer: two research interns formalizing zkVM soundness bounds in Lean, and three teaching assistants running the Applied Cryptography course. Here they are, in their own words.
Read →Cedarcrypt's first edition has concluded. On what a year of teaching cryptography in and for Lebanon has meant, why the conference met in Cyprus rather than Beirut, and the decades of work ahead.
Read →Teaching and community
Our university course publishes its materials freely. Cedarcrypt brings applied-cryptography teaching and research together with the IACR.