Serge Vaudenay

Serge Vaudenay Serge Vaudenay (born 5 April 1968) is a French cryptographer and professor, director of the Communications Systems Section at the École Polytechnique Fédérale de Lausanne

Serge Vaudenay entered the École Normale Supérieure in Paris as a ''normalien'' student in 1989. In 1992, he passed the ''agrégation'' in mathematics. He completed his Ph.D. studies at the computer science laboratory of École Normale Supérieure, and defended it in 1995 at the Paris Diderot University; his advisor was Jacques Stern. From 1995 to 1999, he was a senior research fellow at French National Centre for Scientific Research (CNRS). In 1999, he moved to a professorship at the École Polytechnique Fédérale de Lausanne where he leads the Laboratory of Security and Cryptography (LASEC). LASEC is host to two popular security programs developed by its members: *iChair, developed by Thomas Baignères and Matthieu Finiasz, a popular on-line submission and review server used by many cryptography conferences; and, *Ophcrack, a Microsoft Windows password cracker based on rainbow tables by Philippe Oechslin.

In spring 2020, with Martin Vuagnoux he identifies also various security vulnerabilities in SwissCovid, the Swiss digital contact tracing application. The system would thus allow a third party to trace the movements of a phone using the application by means of Bluetooth sensors scattered along its path, for example in a building. Another possible attack would be to copy identifiers from the phones of people who may be ill (for example, in a hospital), and to reproduce those identifiers in order to receive notification of exposure to COVID-19 and illegitimately benefit from quarantine (thus entitling them to paid leave, a postponed examination, or other benefits). The system would also allow a third party to use a phone using the application by means of Bluetooth sensors scattered along the way.

Vaudenay and his team have developed several security protocols for a number of projects and in particular to reinforce the biometric identification technology based on vein scanning developed by Lambert Sonna Momo.

Vaudenay has published several papers related to cryptanalysis and design of block ciphers and protocols. He is one of the authors of the IDEA NXT (FOX) algorithm (together with Pascal Junod). He was the inventor of the padding oracle attack on CBC mode of encryption. Vaudenay also discovered a severe vulnerability in the SSL/TLS protocol; the attack he forged could lead to the interception of the password. He also published a paper about biased statistical properties in the Blowfish cipher and is one of the authors of the best attack on the Bluetooth cipher E0. In 1997 he introduced decorrelation theory, a system for designing block ciphers to be provably secure against many cryptanalytic attacks.

Vaudenay was appointed program chair of Eurocrypt 2006, PKC 2005, FSE 1998; and in 2006 elected as board member of the International Association for Cryptologic Research. Provided by Wikipedia
1
Applied Cryptography and Network Security [E-Book] : 12th International Conference, ACNS 2014, Lausanne, Switzerland, June 10-13, 2014. Proceedings /
2
Progress in Cryptology – INDOCRYPT 2013 [E-Book] : 14th International Conference on Cryptology in India, Mumbai, India, December 7-10, 2013. Proceedings /
3
Progress in Cryptology - AFRICACRYPT 2012 [E-Book]: 5th International Conference on Cryptology in Africa, Ifrance, Morocco, July 10-12, 2012. Proceedings /
4
Selected Areas in Cryptography [E-Book]: 18th International Workshop, SAC 2011, Toronto, ON, Canada, August 11-12, 2011, Revised Selected Papers /
5
Advances in Cryptology - EUROCRYPT 2006 [E-Book] / 25th International Conference on the Theory and Applications of Cryptographic Techniques, St. Petersburg, Russia, May 28 - June 1, 2006, Proceedings
6
A Classical Introduction to Cryptography [E-Book] : Applications for Communications Security /
7
A Classical Introduction to Cryptography Exercise Book [E-Book] /
8
Public Key Cryptography - PKC 2005 [E-Book] / 8th International Workshop on Theory and Practice in Public Key Cryptography
9
Progress in Cryptology - Mycrypt 2005 [E-Book] / First International Conference on Cryptology in Malaysia, Kuala Lumpur, Malaysia, September 28-30, 2005, Proceedings
10
Selected Areas in Cryptography [E-Book] : 8th Annual International Workshop, SAC 2001 Toronto, Ontario, Canada, August 16–17, 2001 Revised Papers /
11
Fast Software Encryption [E-Book] : 5th International Workshop, FSE’ 98 Paris, France, March 23–25, 1998 Proceedings /