Peer-reviewed papers
A Formal Treatment of End-to-End Encrypted Cloud Storage
M. Backendal, H. Davis, F. Günther, M. Haller, and K.G. Paterson44th Annual International Cryptology Conference (CRYPTO 2024) Talk at CRYPTO
Lecture Notes in Computer Science, Volume 14921, pp. 40-74, Springer, Aug. 2024MFKDF: Multiple Factors Knocked Down Flat
M. Scarlata, M. Backendal, and M. Haller33rd USENIX Security Symposium (USENIX 2024) Share with Care: Breaking E2EE in Nextcloud
M. Albrecht, M. Backendal, D. Coppola, and K.G. PatersonIEEE European Symposium on Security and Privacy 2024 (Euro S&P 2024) When Messages Are Keys: Is HMAC a Dual-PRF?
M. Backendal, M. Bellare, F. Günther, and M. Scarlata43rd Annual International Cryptology Conference (CRYPTO 2023) Talk at CRYPTO
Lecture Notes in Computer Science, Volume 14083, pp. 661–693. Springer, Aug. 2023MEGA: Malleable Encryption Goes Awry ★
M. Backendal, M. Haller, and K.G. Paterson44th IEEE Symposium on Security and Privacy (SP 2023)
pp. 146-163. IEEE, May 2023
★ Distinguished paper awardPuncturable Key Wrapping and Its Applications
M. Backendal, F. Günther, and K.G. Paterson28th International Conference on the Theory and Application of Cryptology and Information Security (ASIACRYPT 2022)
Lecture Notes in Computer Science, Volume 13792, pp. 651–681. Springer, Dec 2022.The Fiat-Shamir Zoo: Relating the Security of Different Signature Variants
M. Backendal, M. Bellare, J. Sorrell, and J. SunSecure IT Systems - 23rd Nordic Conference (NordSec 2018)
Lecture Notes in Computer Science, Volume 11252, pp. 154–170. Springer, Nov 2018
Articles
- End-to-End Encrypted Cloud Storage
M. Backendal, M. Haller, and K.G. PatersonIEEE Security and Privacy (S&P Magazine)
Volume 22, Issue 2, pp. 69-74, March-April 2024 DOI: 10.1109/MSEC.2024.3352788