Sign in

Andrea Basso

@andreavbasso.bsky.social
282 followers 655 following 58 posts

Postdoc researcher on isogeny-based and post-quantum cryptography at IBM Research🇨🇭

PostsRepliesMedia
Reposted by Andrea Basso
Maria Corte-Real Santos @maria.isogeny.club · 03/09/2026
Rise and shine, it's time for the Isogeny Club Season Nine! isogeny.club
isogeny.club
The Isogeny Club
185
Reposted by Andrea Basso
Krijn Reijnders @krijn.isogeni.es · 16/07/2026
Excited about isogenies? Wanna claim some rewards? Solve one of the seven Isogeny Problems, the hardest open problems in isogeny-based cryptography! Full write-up now on ePrint: ia.cr/2026/1431 Webpage: isogeni.es/problems Now with EVEN MORE REWARDS!!
isogeni.es
The Isogeny Problems
A list of foremost unsolved problems in isogeny-based cryptography, with expositions by leading experts.
1105
Reposted by Andrea Basso
Damien Robert @damienrobert.bsky.social · 05/07/2026
So what is MIKE? It is a post-quantum NIKE (non interactive key exchange) which has many nice properties:
111
Andrea Basso @andreavbasso.bsky.social · 11/06/2026
Accepted papers at CRYPTO 2026: iacr.org/cryptodb/dat...
iacr.org
Papers from CRYPTO 2026
072
Andrea Basso @andreavbasso.bsky.social · 21/05/2026
New paper out 🎉 We introduce a new UPKE based on FESTA that supports unbounded updates and whose security is equivalent to FESTA! Our main result: a (four-dimensional) variant of FESTA has uniformly random public keys, which means that any random walk is a valid pk update.
062
Andrea Basso @andreavbasso.bsky.social · 14/05/2026
Round 3 of the NIST additional signatures process announced! 🎉 And SQIsign is part of it!! ⛷️⛷️
Screenshot of email announcement saying:

Nine Candidates Advance to the Third Round of the Additional Digital Signatures for the PQC Standardization Process

 After 18 months of evaluation, NIST has selected nine candidates for the third round of the Additional Digital Signatures for the Post-Quantum Cryptography (PQC) Standardization Process. The advancing digital signature algorithms are:

FAEST
HAWK
MAYO
MQOM
QR-UOV
SDitH
SNOVA
SQIsign
UOV
02613
Reposted by Andrea Basso
Sam Jaques @sejaques.bsky.social · 09/04/2026
Overdue quantum landscape update: sam-jaques.appspot.com/quantum_land... A 2d chart can only say so much. tl;dr new results are still overhyped, but definitely worth taking seriously. This chart is based on surface codes and a big question now is whether new codes can be practical (=>useless chart)
A cluttered and complicated chart relating qubit counts to qubit error rates, comparing today's devices to cryptographic attacks.
15122
Reposted by Andrea Basso
mccurley.bsky.social @mccurley.bsky.social · 31/03/2026
In honor of April Fool's Day (which has already started in Australia), I offer you debrisprint.iacr.org for AI-generated cryptology content.
debrisprint.iacr.org
Craptology debrisPrint Snarkive
1166
Reposted by Andrea Basso
Luca De Feo @bsky.defeo.lu · 16/03/2026
We still have a few spots left at MaGIC! Registration closes this week... Hurry up if you want to be on top of all the latest news on Cryptographic Group Actions! magic-workshop.github.io
magic-workshop.github.io
MaGIC 2026 - Marche Workshop on Group Actions in Cryptography
A workshop dedicated to the study of cryptographic group actions, a rapidly evolving area at the intersection of algebraic geometry, number theory, and post-quantum cryptography. The workshop will bri...
027
Reposted by Andrea Basso
Maria Corte-Real Santos @maria.isogeny.club · 06/03/2026
New PRISM improvements 🥳 We extended our PRISM paper to present two new variants: one that achieves strong unforgeability, and another that allows for smaller parameters and therefore faster signatures! eprint.iacr.org/2026/443.pdf
eprint.iacr.org
195
Andrea Basso @andreavbasso.bsky.social · 02/03/2026
We're organizing a workshop on cryptographic group actions bringing together the isogeny and code communities. The workshop is just before Eurocrypt, a quick train away from Rome in the beautiful Marche. Early registration ends this week, so grab your spot soon! magic-workshop.github.io
magic-workshop.github.io
MaGIC 2026 - Marche Workshop on Group Actions in Cryptography
A workshop dedicated to the study of cryptographic group actions, a rapidly evolving area at the intersection of algebraic geometry, number theory, and post-quantum cryptography. The workshop will bri...
075
Reposted by Andrea Basso
Damien Robert @damienrobert.bsky.social · 20/02/2026
I am very happy to announce that thanks to the hard work of many people (The "MIKE Team"), we now have a working implementation in SageMath of MIKE (Module Isogeny Key Exchange).
198
Reposted by Andrea Basso
mccurley.bsky.social @mccurley.bsky.social · 03/02/2026
The IACR board sent a survey to members last year, and it took us a while to analyze the results and publish findings. You can see them at iacr.org/surveyresults/
iacr.org
International Association for Cryptologic Research
289
Andrea Basso @andreavbasso.bsky.social · 09/01/2026
New paper out! 🎉 We translate the algebraic group model to the (generic) isogeny setting, generalising previous results that were limited to oriented isogenies (we show that any result that holds in the AGAM also holds in the AIM). Using this model, we obtain two important results:
1123
Reposted by Andrea Basso
Maria Corte-Real Santos @maria.isogeny.club · 23/09/2025
The Isogeny Club Season 7 starts today! At 5pm CEST, Bruno Sterner will talk about finding large smooth twins from short lattice vectors. More details at isogeny.club
1107
Reposted by Andrea Basso
Krijn Reijnders @krijn.isogeni.es · 15/09/2025
Announcing The Isogeny Problems! A curated list of the seven foremost unsolved problems in isogeny-based cryptography. Solving one of these profound questions would mark a monumental advance, and as a resolver you'd get eternal honor and epic rewards! Full list: isogeni.es/problems
isogeni.es
The Isogeny Problems
1166
Reposted by Andrea Basso
Diego F. Aranha @dfaranha.bsky.social · 09/09/2025
The EU wants to spend your money to assemble a giant mass surveillance machine with little effect on harm against children. Chat Control is not effective, weakens security for all and does not respect privacy. Contact your EU representatives and let them know. csa-scientist-open-letter.org/Sep2025
csa-scientist-open-letter.org
02010
Andrea Basso @andreavbasso.bsky.social · 09/09/2025
More than 500 researchers have signed an open letter against the dangerous EU proposal on chat control. The proposal remains ineffective, undoes decades of results in E2E encryption, and threatens the privacy of half a billion citizens. csa-scientist-open-letter.org/Sep2025
csa-scientist-open-letter.org
11612
Andrea Basso @andreavbasso.bsky.social · 03/09/2025
New somewhat redesigned, somewhat expanded website at andreabasso.com! If you find any dead links or things not working properly, please let me know
andreabasso.com
andrea basso
010
Reposted by Andrea Basso
ePrint Updates @eprint.ing.bot · 31/07/2025
Using Learning with Rounding to Instantiate Post-Quantum Cryptographic Algorithms (Andrea Basso, Joppe W. Bos, Jan-Pieter D'Anvers, Angshuman Karmakar, Jose Maria Bermudo Mera, Joost Renes, Sujoy Sinha Roy, Frederik Vercauteren, Peng Wang, Yuewu Wang, Shicong Zhang, Chenxin Zhong) ia.cr/2025/1382
Abstract. The Learning with Rounding (LWR) problem, introduced as a deterministic variant of Learning with Errors (LWE), has become a promising foundation for post-quantum cryptography. This Systematization of Knowledge (SoK) paper presents a comprehensive survey of the theoretical foundations, algorithmic developments, and practical implementations of LWR-based cryptographic schemes. We introduce LWR within the broader landscape of lattice-based cryptography and post-quantum security, highlighting its advantages such as reduced randomness, improved efficiency, and enhanced side-channel resistance. We explore the evolution of security reductions from LWR to LWE, including recent advances that support practical parameter regimes and address challenges in both bounded and unbounded sample settings. This paper systematically reviews existing LWR-based schemes — including Saber, Lizard, Florete, Espada, Sable, and SMAUG — analyzing their design choices, parameter sets, and performance trade-offs. Furthermore, we examine the impact of LWR on side-channel resistance, failure probabilities, and masking efficiency, demonstrating its suitability for secure and efficient implementations. By consolidating the research spanning theory and practice, this SoK aims to guide future cryptographic design and standardization efforts leveraging LWR.
Image showing part 2 of abstract.
043
Reposted by Andrea Basso
Diego F. Aranha @dfaranha.bsky.social · 05/07/2025
Well, this horrible idea refuses to die so we should refuse to let it pass and start organizing again. ec.europa.eu/commission/p...
ec.europa.eu
Commission presents Roadmap for effective and lawful access to data for law enforcement
The European Commission presented today a Roadmap setting out the way forward to ensure law enforcement authorities in the EU have effective and lawful access to data.
27542
Reposted by Andrea Basso
Sofia Celi @claucece.bsky.social · 25/06/2025
And for For PhD & advanced MSc students! 🌍 Stipends available for students worldwide — thanks to our sponsors! 📋 Apply for stipends here: docs.google.com/forms/d/e/1F... 🖼️ Consider presenting your work in the Latincrypt poster session! 🔗 More info: ascrypto.org/2025/
docs.google.com
Call for Stipends - ASCRYPTO '25
022
Reposted by Andrea Basso
Sam Jaques @sejaques.bsky.social · 19/06/2025
An out-of-schedule update to my quantum landscape chart: sam-jaques.appspot.com/quantum_land..., prompted by @craiggidney.bsky.social 's new paper: arxiv.org/abs/2505.15917. A startling jump (20x) in how easy quantum factoring can be! Also: much improved web design!
A chart for quantum computers, of number of qubits versus error rate, on a logarithmic scale. Broadly it shows a large gap between current quantum computers in the bottom left, and a curve in the top right of the resources they need to break RSA.
36126
Andrea Basso @andreavbasso.bsky.social · 10/06/2025
We (finally) published all the material from this course on SQIsign, including lecture slides and exercise sheets for the Sage laboratory. Available here: github.com/andreavico/S...
github.com
GitHub - andreavico/SQIsign_summer_school: Slides and worksheets for the introductory course on SQIsign held in Trento in May 2025
Slides and worksheets for the introductory course on SQIsign held in Trento in May 2025 - andreavico/SQIsign_summer_school
11616
Andrea Basso @andreavbasso.bsky.social · 27/05/2025
Every time I'm writing a paper I always have the same question: is the attacker a person? Is the attacker a they or a it?
120
Andrea Basso @andreavbasso.bsky.social · 25/05/2025
Really cool post on DH!
010
Andrea Basso @andreavbasso.bsky.social · 19/05/2025
Starting in half an hour!
021
Andrea Basso @andreavbasso.bsky.social · 18/05/2025
Isogeny-based signatures have consistently had a breakthrough every two years! Let's see what 2026 will bring... (Well, except for SQIsignHD that came a year too late, but that's probably because of Covid)
A timeline of isogeny-based signatures over the years:
2012 - A signature from group actions: First signature from
isogenies in the literature
2014 - SIDH: Also proposes an identification protocol
2016 - GPS: First signature from endomorphism ring knowledge 
2018 - SeaSign: First signature based on CSIDH
2020 - SQIsign: Compact and “practical" signature from endomorphism ring knowledge
2023 - SQIsignHD: HD representations make SQIsign signing much faster
2024 - SQIsign2D: Significantly improved SQIsign signing and verification
392
Reposted by Andrea Basso
Diego F. Aranha @dfaranha.bsky.social · 15/05/2025
Registrations for the Decrypting Diversity Summit are open: decryptingdiversity.com/registration/ The event's focus is to develop actions to better support underrepresented groups in cryptography while showcasing the exceptional career paths and research contributions of these communities.
decryptingdiversity.com
Decrypting Diversity Summit
Decrypting Diversity Summit
124
Andrea Basso @andreavbasso.bsky.social · 17/05/2025
Next week @lucianomaino.bsky.social and I will teach a week-long course on SQIsign at the University of Trento. The course will be both in-person and online: if you're interested, you can tune in Monday morning at 10:30 at unitn.zoom.us/j/88902079708 (details and full schedule in the image below)
Title of the PhD course: Advances in Cryptography and Codes - Part 1: SQIsign

Lecturers: Andrea Basso (IBM Research Zurich, CH),
Luciano Maino (University of Bristol, UK)

The course in short: The course offers a comprehensive and rigorous introduction
to SQIsign, an advanced isogeny-based digital signature scheme designed to resist
attacks from quantum computers. The course will present the mathematical
foundations on which SQIsign is based and the algorithmic background necessary to
understand and evaluate the security of SQIsign and other isogeny-based protocols.
Complementing the theoretical material, the course also includes a practical
laboratory where students will use SageMath to study and implement various
aspects of SQIsign.

Where (in presence): Department of Mathematics, University of Trento (IT)
Via Sommarive, 5, 38123, Trento
(online): https://unitn.zoom.us/j/88902079708 (Passcode: 532383)
When: From May 19, 2025 to May 28, 2025

Detailed Program:
Monday 19/05 10:30 - 12:30 (Room A205) & 14:30 - 16:30 (Room A221)
Tuesday 20/05 10:30 - 12:30 (Room A215) & 14:30 - 16:30 (Room A213)
Wednesday 21/05 10:30 - 12:30 (Room A218) & 14:30 - 16:30 (Room A215)
Thursday 22/05 10:30 - 12:30 (Room A209) & 14:30 - 16:30 (Room A220)
Friday 23/05 10:30 - 12:30 (Room A215) & 14:30 - 16:30 (Room A215)
Tuesday 27/05 11:30 - 12:30 – Q&A, optional (Room A218)
Wednesday 28/05 11:30 - 12:30 – Q&A, optional (Room A218)
1188
Reposted by Andrea Basso
COSIC @cosic.bsky.social · 12/05/2025
🥇The paper "PRISM: Simple And Compact Identification and Signatures From Large Prime Degree Isogenies", co-authored by COSIC, has won the best paper award at @IACR_News #PKC 2025 in Røros, Norway. #pkc2025 Link: link.springer.com/chapter/10.1...
0104
Reposted by Andrea Basso
Nigel Smart @smartcryptology.bsky.social · 04/04/2025
Only a few days left to submit your paper to the second volume of the 2025 edition of Communications in Cryptology.... cic.iacr.org
cic.iacr.org
IACR Communications in Cryptology
174
Reposted by Andrea Basso
Real World Crypto Symposium @rwc.iacr.org · 28/03/2025
Big announcement: RWC 2027 in Seattle! April 5-7 subject to board approval.
5115
Andrea Basso @andreavbasso.bsky.social · 24/03/2025
Registration is now open! www.cig.udl.cat/SQIparty2025...
034
Andrea Basso @andreavbasso.bsky.social · 20/03/2025
Great talks today about group actions at the Swissogeny Day by Lorenz Panny and Ryan Rueger! We’re planning to host the next Swissogeny Day in the summer, if you’d like to attend, reach out!
2100
Andrea Basso @andreavbasso.bsky.social · 13/03/2025
This workshop is gonna be great: cool people, interesting talks, and lots of great research on SQIsign and isogeny-based crypto. Mark it in your calendars! And if you’re going to Eurocrypt, this is going to be convenient: the workshop is just the week before, and it’s not too far from Madrid
022
Reposted by Andrea Basso
Martin R. Albrecht @malb.bsky.social · 11/03/2025
Together with @kennyog.bsky.social we're organising a meeting at Eurocrypt to discuss how the, let's say, "dramatically changing political landscape" affects cryptography and our community, both domestically in some countries but also internationally eurocrypt.iacr.org/2025/communi...
 Wednesday, May 7, 14:30-16:00 (Room TBD): Cryptography in a Changing World: Navigating Geopolitical Uncertainty and Security Risks

Join us to discuss what we as a community can and should do in light of a dramatically changing political landscape, both domestically for some of us and internationally for all of us. We don't have ideas to pitch to you, but we think it will be useful to meet and to start a discussion.
For more information: Martin Albrecht and Kenny Paterson.
33714
Reposted by Andrea Basso
Kenny Paterson @kennyog.bsky.social · 11/03/2025
It’s finally out - our 107-page analysis of key exchange in Telegram in which we proved (after massive effort) that the bespoke protocol is ok, if you’re willing to make some uncomfy assumptions on the home-grown KDF. With @malb.bsky.social, @eyalr0.bsky.social, Lenka Mareková and Igors Stepanovs.
14210
Andrea Basso @andreavbasso.bsky.social · 04/03/2025
Some good news on the UK request for backdoors and Apple disabling E2E syncing
ft.com
Apple launches legal challenge to UK ‘back door’ order
iPhone maker has filed a complaint to the Investigatory Powers Tribunal over demand to access encrypted data
000
Reposted by Andrea Basso
kutasp89.bsky.social @kutasp89.bsky.social · 04/03/2025
Happy to share this work with Paul Frixons, Valerie Gilchrist, Simon-Philipp Merz and Christophe Petit. We show that you have to be careful with new assumptions for cryptographic group actions. Namely for the CSI-SHARK assumption one can significantly beat Kuperberg using Childs-Van Dam
042
Reposted by Andrea Basso
kutasp89.bsky.social @kutasp89.bsky.social · 04/03/2025
Excited to share this work on 2-dimensional KLPT which is joint work with Wouter Castryck, Thomas Decru, Abel Laval, Christophe Petit and Yan Bo Ti. This could pave the way for a 2-dimensional SQIsign and potentially other applications.
053
Andrea Basso @andreavbasso.bsky.social · 04/03/2025
Really cool work showing that CSIDH is an *unrestricted* group action for *any* security level using HD representations! This is really exciting because many advanced constructions require an unrestricted group action, but until now all known constructions used params with shaky quantum security.
0122
Andrea Basso @andreavbasso.bsky.social · 04/03/2025
As part of the round-2 NIST submission, we developed a complete proof of security of SQIsign!
1105
Reposted by Andrea Basso
Boris Fouotsa @borisfouotsa.bsky.social · 03/03/2025
16th International Conference on Cryptology AFRICACRYPT 2025 July 21-23, 2025 – Rabat, Morocco 🇲🇦 Extended submission deadline in 1 week: africacrypt2025.sciencesconf.org Submit your best results ! See you in Rabat 🇲🇦 in July 2025.
africacrypt2025.sciencesconf.org
16th International Conference on Cryptology, Africacrypt 2025 - Sciencesconf.org
Africacrypt 2025 is organized by the ENSIAS College of Mohammed V University in Rabat with partnership of the General Directorate of Information Systems Security (DGSSI), Morocco.
186
Reposted by Andrea Basso
Tjerand Silde @tjesi.bsky.social · 24/02/2025
Some (there will be 60) accepted papers for IACR PKC 2025 are now available online: iacr.org/cryptodb/dat...
iacr.org
Papers from PKC 2025
052
Reposted by Andrea Basso
Tjerand Silde @tjesi.bsky.social · 24/02/2025
Accepted papers for IACR Eurocrypt 2025 are now available online: iacr.org/cryptodb/dat...
iacr.org
Papers from EUROCRYPT 2025
043
Andrea Basso @andreavbasso.bsky.social · 21/02/2025
Absolutely shameful: for the UK, to request it, and for Apple, to comply. But this is an additional reminder: if you use Apple devices and don't live in the UK, turn on advanced data protection (what Apple calls E2EE for most of their cloud data): support.apple.com/en-us/108756
bbc.com
Apple pulls data protection tool after UK government security row
Customers' photos and documents stored online will no longer be protected by end to end encryption.
031
Andrea Basso @andreavbasso.bsky.social · 31/01/2025
New paper is out where we build a brand new isogeny-based signature! 🎉 - It's a hash-and-sign signature, which makes it more flexible for advanced constructions - Security depends on a new problem: computing prime-degree isogenies - Performance is comparable to SQIsign2D - Conceptually simpler
071
Andrea Basso @andreavbasso.bsky.social · 30/01/2025
When GitHub is down less than a week before the NIST Round 2 deadline…
2171
Andrea Basso @andreavbasso.bsky.social · 19/12/2024
Interesting note showing a simple but cool attack on the (semihonest) OPRF from group action!
061