Key management
1Password
With Cure53, we reviewed key rotation, vault security under server compromise, and public-key validation in 1Password B5.
View report (PDF) : 1PasswordIndependent applied cryptography
A correct implementation can still implement an unsafe design. We review your protocol, threat model, and cryptographic code to find weaknesses before they become part of your product.
300+ engagements. Every engagement is led by a senior cryptographer.
We review the threat model, protocol, primitive choices, formal models, and implementation. More than 300 engagements since 2017 have followed that approach.
Public work
Key management
With Cure53, we reviewed key rotation, vault security under server compromise, and public-key validation in 1Password B5.
View report (PDF) : 1PasswordThreshold signatures
With 3MI Labs, we identified critical nonce reuse during presigning by comparing the Rust implementation with the 2PC-MPC protocol.
View report (PDF) : dWallet LabsPost-quantum libraries
We published five findings in libcrux and analyzed the gaps between the code, Cryspen's hax pipeline, and the library's verification claims.
Read the series : CE Labs libcruxSymbolic Software is run by an accomplished researcher, with significant contributions in the area of applied cryptography. They're the right team for projects that require rigorous design and engineering.
Protocol design, cryptographic implementations, threat models, and formal analysis.
Verifpal, Crucible, hpke-ng, Kyber-K2SO, and the Post-Quantum Migration Playbook.
Applied Cryptography, an 18-topic university course with open materials.
Audit reports, security advisories, software releases, papers, and essays.
Crucible runs 129 conformance tests across 12 categories. Each test cites the relevant FIPS section and, where applicable, the audit finding that prompted it.
An overnight analysis, nineteen security queries, and three expected counterexamples: modeling TLS 1.3 with concurrent sessions, malicious certified peers, completion preconditions, and staged key compromise.
Read →A walkthrough of Verifpal 1.4.4's FROST-shaped model: two signing oracles and one leaked share cross a 3-of-5 threshold, producing a valid signature without disclosing the group key.
Read →Verifpal 1.4 fixes false positives caused by combining incompatible protocol runs, detects two previously missed attacks, corrects precondition semantics, adds clearer verdict labels, gives AEAD a nonce so that nonce reuse can be modelled, and removes password-specific syntax.
Read →Teaching and community
Our university course publishes its materials freely. Cedarcrypt brings applied-cryptography teaching and research together with the IACR.