Formally Verifying Kyber: Episode V: Machine-Checked IND-CCA Security and Correctness of ML-KEM in EasyCrypt

JB Almeida, S Arranz Olmos, M Barbosa… - Annual International …, 2024 - Springer
We present a formally verified proof of the correctness and IND-CCA security of ML-KEM, the
Kyber-based Key Encapsulation Mechanism (KEM) undergoing standardization by NIST …

A Tight Security Proof for SPHINCS, Formally Verified

M Barbosa, F Dupressoir, A Hülsing, M Meijers… - … Conference on the …, 2024 - Springer
SPHINCS+ is a post-quantum signature scheme that, at the time of writing, is being
standardized as SLH-DSA. It is the most conservative option for post-quantum signatures …

[PDF][PDF] Protecting cryptographic code against Spectre-RSB (and, in fact, all known Spectre variants)

SA Olmos, G Barthe, C Chuengsatiansup, B Grégoire… - 2024 - inria.hal.science
It is fundamental that executing cryptographic software must not leak secrets through side-
channels. For softwarevisible side-channels, it was long believed that “constant-time” …

A Tight Security Proof for , Formally Verified

M Barbosa, F Dupressoir, A Hülsing… - Cryptology ePrint …, 2024 - eprint.iacr.org
Abstract $\mathrm {SPHINCS^{+}} $ is a post-quantum signature scheme that, at the time of
writing, is being standardized as $\mathrm {SLH\text {-} DSA} $. It is the most conservative …

Formally verifying Kyber

JB Almeida, SA Olmos, M Barbosa, G Barthe… - 2024 - hal.science
We present a formally verified proof of the correctness and IND-CCA security of ML-KEM, the
Kyber-based Key Encapsulation Mechanism (KEM) undergoing standardization by NIST …