Cryptanalysis (SS 2025)

Course Number 705068 and 705069 | Sommersemester 2025

Cryptanalytic attacks and how they guide cryptographic design

Content

Cryptanalytic attacks define the security of cryptographic algorithms, and understanding them is crucial to understand cryptographic design. This lecture aims to give you some in-depth knowledge of several recent state-of-the-art topics in cryptography, with a focus on cryptanalysis:
  • Classic and quantum algorithms for factoring and discrete log
  • Cryptanalysis of block ciphers (differential, linear, algebraic)
  • Cryptanalysis of hash functions and stream ciphers
  • Lattices and continued fractions in cryptanalysis
In the exercises, you will implement some of these attacks to solve cryptanalytic challenges. In the seminar, additional selected topics may be presented by participants -- see below for a list of suggested topics.

Material

Lecture and Seminar

Date Who Lecture (16:00-17:30 in HS i1) Video (2021)
06.03.2025 ME L1 – Discrete Logarithm YouTube
13.03.2025 MN L2 – Factoring and Continued Fractions YouTube
20.03.2025 SG L3 – Lattices YouTube
27.03.2025 MN L4 – Quantum Cryptanalysis YouTube
03.04.2025 ME L5 – Linear Cryptanalysis YouTube
10.04.2025 ME L6 – Differential Cryptanalysis YouTube
08.05.2025 ME L7 – Sponges & Stream Ciphers YouTube
15.05.2025 SG L8 – Advanced Differential Attacks YouTube
22.05.2025 SG L9 – Algebraic Attacks YouTube
05.06.2025 MN LA – TLS security & Protocol Attacks YouTube
12.06.2025 you Seminars
26.06.2025 you Seminars
28.07.2025 you First Exam Option  

Previous versions of this course: SS 2024, SS 2023, SS 2022, SS 2021 (YouTube playlist), SS 2020

Exercises

Date Topic Where
13.03.2025 Team registration deadline TeachCenter
13.03.2025 T1 – Asymmetric Cryptanalysis After L2 in HS i1
10.04.2025 T1 – Submission deadline (16:00) git
KW18 T1 – Assignment interviews (individual slots) Office
10.04.2025 T2 – Symmetric Cryptanalysis After L6 in HS i1
05.06.2025 T2 – Submission deadline (16:00) git
KW24 T2 – Assignment interviews (individual slots) Office

Administrative Information

For questions outside lecture times, contact us via the #cryptanalysis Discord channel or by email.

Exercises (KU)

In the exercises, you implement cryptanalysis techniques from the lecture in teams of 2. To get a grade, you submit your implementations for 2 assignments, which we will discuss with you in a final interview ("Abgabegespräch"). Use TeachCenter to register your team and git for your submissions. We usually won't need the 16:30–17:15 KU timeslots (except for question times and seminar presentations).

Lecture exams and seminar talks (VO)

There are 2 ways to get a grade for the VO:
  • Exam mode: Write exam at the end of the term or take an oral exam later. Register for an exam date in TUGRAZonline or contact us if none is available.
  • Seminar mode: Participate actively in KU+VO and give a seminar presentation in one of the last lectures (30 minutes) accompanied by a short report (8 pages) in your team, for example on
    • Block Ciphers: Division Property | MitM and Biclique Attacks | Boomerang Attacks | ...
    • Hash Functions: Rebound Attack | Cryptanalytic Exploits (MD5 Certificates etc.) | ...
    • Authenticated Encryption: Security Proofs and Robustness | ...
    • RSA: (In)Security in Practice | Secure Key Generation | ...
    • Post-Quantum: Coding-based Cryptography | Lattices and Learning with errors | ...
    • Implementation Security: Secure Masking | Statistical Ineffective Fault Attacks | ...

Grading

We treat the involvement of ChatGPT and similar tools the same way as the involvement of another natural person. That is, for involvement that qualifies as plagiarism or an impermissible level of assistance, the consequences will be the same in both cases to the strictest extent possible.

Literature

The lecture slides are reasonably self-contained, but often briefly phrased. If you prefer full-text resources, you may find some of the following books interesting:

Lecture Dates

Date Begin End Location Event Type Comment
2025/04/10 16:00 17:30 HS i1 Abhaltung VO fix/
2025/04/10 16:00 17:30 HS i1 Abhaltung VO fix/
2025/04/10 17:30 18:15 HS i1 Abhaltung KU fix/
2025/04/10 17:30 18:15 HS i1 Abhaltung KU fix/
2025/05/08 16:00 17:30 HS i1 Abhaltung VO fix/
2025/05/08 17:30 18:15 HS i1 Abhaltung KU fix/
2025/05/15 16:00 17:30 HS i1 Abhaltung VO fix/
2025/05/15 17:30 18:15 HS i1 Abhaltung KU fix/
2025/05/22 16:00 17:30 HS i1 Abhaltung VO fix/
2025/05/22 17:30 18:15 HS i1 Abhaltung KU fix/
2025/06/05 16:00 17:30 HS i1 Abhaltung VO fix/
2025/06/05 17:30 18:15 HS i1 Abhaltung KU fix/
2025/06/12 16:00 17:30 HS i1 Abhaltung VO fix/
2025/06/12 17:30 18:15 HS i1 Abhaltung KU fix/
2025/06/26 16:00 17:30 HS i1 Abhaltung VO fix/
2025/06/26 17:30 18:15 HS i1 Abhaltung KU fix/

Lecturers

Maria Eichlseder
Maria
Eichlseder

Associate Professor

View more
Marcel Nageler
Marcel
Nageler

PhD Candidate

View more