Symbolic Software,
since 2017.

An independent applied-cryptography consultancy founded in Paris by Dr. Nadim Kobeissi.

Independent practice

300+design-level
engagements
Founded
2017 · Paris, France
Business email
[email protected]
Representative
Dr. Nadim Kobeissi (nadim.computer)

How we approach the work

Start with the security claim. Follow it through to the code.

We review the assumptions that a cryptographic system depends on, then examine how the protocol and implementation enforce them. That includes what happens after a key is compromised, a message is replayed, or a dependency fails to provide the security its documentation promises.

Define the attacker before judging the design.

A review needs explicit security goals and trust assumptions. Our 1Password work examined vault security under server compromise; our MTProto review examined what a network attacker could observe.

Protocol reviews and public reports

Examine what a verification claim covers.

We distinguish the properties proved about a model from the behavior of the shipped implementation. Our libcrux research documents code defects and gaps in Cryspen's hax verification pipeline separately.

Read the verification research

Make the evidence and limits inspectable.

Our public work includes reports, source code, and protocol models. Verifpal's companion paper states its guarantees and limitations; Crucible connects conformance tests to the standards they exercise.

Explore our open-source work

Research and teaching

The work is public.

Read our writing

We also teach Applied Cryptography, a university course with public materials, and organize Cedarcrypt with the IACR. Our essay on teaching in Lebanon explains the reasoning behind that work.

Working with us.

We have been working together with Symbolic Software as auditors for cryptographic software. They are reliable, precise, honest, thorough and think outside the box.
— Mario Heiderich, Director, Cure53.
Symbolic Software is run by an accomplished researcher, with significant contributions in the area of applied cryptography. They're the right team for projects that require rigorous design and engineering.
— Jean-Philippe Aumasson, Chief Security Officer, Taurus Group.
Symbolic Software are a delight to work with. Their reports are incredibly thorough and they maintain an excellent line of communication. We are grateful we got the opportunity to collaborate with someone of such high calibre.
— Vishnu Mohandas, Founder, Ente.io.

Company information.

EURL · est. 2017 · France
Legal form EURL (Entreprise Unipersonnelle à Responsabilité Limitée)
Founded 2017 · Paris, France
Business address 25 Avenue de la Division Leclerc, 92290 Châtenay-Malabry, France
Business email [email protected]
Representative Dr. Nadim Kobeissi (nadim.computer)
SIREN 894 059 369 · R.C.S. Nanterre
VAT FR79894059369
Infrastructure Web infrastructure provided by Cloudflare.

Privacy policy.

This website uses no cookies and collects no personal data. We record aggregate page-view counts without fingerprinting or identifying visitors.

Some of our online services process the minimum data needed to provide the service. We do not sell or share that data. Questions can be sent to [email protected] .