CAESAR & NORX
The Future of Authenticated Encryption?

Hamburg, 2014-12-29

Who

Jean-Philippe Aumasson (@veorq)
Cryptographer at Kudelski Security, Switzerland
Philipp Jovanovic (@daeinar)
PhD student at University of Passau, Germany
Samuel Neves (@sevenps)
PhD student at University of Coimbra, Portugal
Nearly all of the symmetric encryption modes you learned about in school, textbooks, and Wikipedia are (potentially) insecure.

Block Cipher Modes Failures (1/3)
ECB

Bad ECB
Picture credit: @angealbertini

Block Cipher Modes Failures (2/3)
CBC with constant IV

Bad CBC
Picture credit: @angealbertini

Block Cipher Modes Failures (3/3)
CTR with reused nonce