- Lecture 0 : Introductory Lecture.
- References : [Slides]
- Date : 06-10-2020
| - Lecture 1 : Introduction, Classical Crypto vs. Modern Crypto, Three Pillars of Modern crypto (definition + assumption + proof), Classical ciphers and pitfalls. Inroad towards Modern Crypto.
- References : [Slides], [Video], Chapter 1 of KL
- Date : 08-10-2020
| - Lecture 2 : Perfect Security: Definition, Construction (Vernam Cipher), Proof; Drawbacks of OTP
- References : [Slides], [Video], Chapter 2 of KL and BS
- Date : 13-10-2020
| - Lecture 3 : More definitions of Perfect Security and their equivalence with Shannon's perfect security definition. Shannon's Theorem. Perfect Indistinguishability-- game-based definition. Proof of limitations on key space/length and key reusability. Relaxing perfect security. Introduction to Computational Security.
- References : [Slides], [Video], Chapter 2 of KL and BS
- Date : 15-10-2020
- Errata : The slide on "inherent limitation of key reusability" has the posteriori probability written wrongly in the video. It has been corrected in the slides later and the slides posted here contain the correct version.
| - Lecture 4 : Introduction to Computational Security. Definitions of PPT and negligible functions, Security Parameter. Asymptotic Approach. Ind(istinguishability) Security and its relation to weaker security notions of Parity Prediction (pr) and Message Recovery (mr). Introduction to Reduction-based proofs and the proof of 'ind-security implies parity-prediction security'. Necessity of the relaxations in threat and break models to overcome the hurdles of perfect secrecy.
- References : [Slides], [Video], Chapter 2 of KL
- Date : 20-10-2020
| - Lecture 5 : Pseudorandomness and Pseudo-random Generators (PRG), Indistinguishability Security, Next-bit Prediction Security, Statistical Tests, Impossibility of PRG against unbounded adversary, ind-secure SKE from PRG, Proof of security, Applications of ind-secure SKE-- Roulette and Anonymous Message Transfer/Onion Routing
- References : [Slides], [Video], Chapter 3 of KL and BS
- Date : 22-10-2020
| - Supplementary Lecture 1 : Stream ciphers. Linear feedback shift registers (LFSR), Reconstruction attack, Non-linear FSR, Trivium
- References : [Slides], [Video], [NPTEL-FOC], Chapter 6 of KL
- Date : 24-10-2020
| - Lecture 6 : Hybrid Arguments, PRG with one-bit expansion implies PRG with many-bit expansion, Applications of PRG-- Coin-tossing and Commitment Schemes
- References : [Slides], [Video], Chapter 3 of KL and BS
- Date : 27-10-2020
| - Lecture 7 : Chosen Plaintext Attack (CPA), CPA-security, Pseudo-random Functions (PRF), PRP
- References : [Slides], [Video], Chapter 3 of KL and 4 of BS
- Date : 29-10-2020
| - Supplementary Lecture 2 : Block ciphers 1. Confusion-diffusion paradigm, Implementation of Confusion-Diffusion paradigm via substitution-permutation network (SPN), Avalanche effect, Attacking reduced round SPNs, Feistel network
- References : [Slides], [Video], [NPTEL-FOC], Chapter 6 of KL
- Date : 29-10-2020
| - Supplementary Lecture 3 : Block ciphers 2. Design of Data Encryption Standard (DES), DES round function, Strengthening the security of DES using a larger key - internal modifications v/s black-box constructions, Advanced Encryption Standard (AES), Overview of AES construction.
- References : [Slides], [Video], [NPTEL-FOC], Chapter 6 of KL
- Date : 29-10-2020
| - Lectures 8-9 : SKE based on PRF, Proof for CPA-security, PRG implies PRF-- GGM/tree construction
- References : [Slides], [Video], Chapter 7 of KL and 4 of BS
- Date : 03-11-2020
| - Lecture 10 : Yao's 2PC, Circuit Garbling as an application of CPA-secure SKE
- References : [Slides], [Video], 'A Proof of Yao's Protocol for Secure Two-Party Computation' by Yehuda Lindell and Benny Pinkas (available online)
- Date : 10-11-2020
| - Lecture 11 : CCA-security, Practical break of CBC-mode CPA-secure SKE, Break of CPA-secure SKE based on PRF, Authenticated Encryption (AE), AE implies CCA-security.
- References : [Slides], [Video], Chapter 2 and 4 of KL and 9 of BS
- Date : 12-11-2020
| - Lecture 12 : MAC- cma and strong cma security, PRF based construction, domain extension; One-time Information-theoretic MAC- Definition, Pairwise Indepedent Functions, Carter-Wegman MAC
- References : [Slides], [Video], Chapter 3 of KL and 7 of BS
- Date : 17-11-2020
| - Lecture 13 : Autheticated Encryption from cpa-secure SKE and strong cma-secure MAC; Encrypt and Autheticate, Autheticate then Encrypt, Encrypt then Autheticate Paradigms, Proof of security for Encrypt then Autheticate Paradigm; Looking back and Ahead; One-way Functions.
- References : [Slides], [Video], Chapter 7 of KL
- Date : 19-11-2020
| - Lecture 14 : OWF, OWP, Hard-core Predicates, Partial proof of Goldreich-Levin, OWP + Hardcore predicates imply PRG with one bit expansion.
- References : [Slides], [Video], Chapter 7 KL
- Date : 24-11-2020
| - Lecture 15 : (Partial) proof of Goldreich-Levin, Hash Functions, Collision Resistance, Applications, Merkle Tree .
- References : [Slides], [Video], Chapter 7 and 5 KL
- Date : 26-11-2020
|
|