VLDB 2026 Research / reviewers in the wild / expert
Antonio Sanso
dblp:145/1632
· DBLP profile ↗
7ranked-venue papers
1as first author
4since 2021 · last 2026
0009-0003-8878-5761ORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 7 · 1 first-author · 4 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | Graeffe-Based Attacks on Poseidon and NTT Lower Bounds
Ziyu Zhao 0002, Antonio Sanso, Giuseppe Vitto, Jintai Ding |
CRYPTO (6) | 2 |
| 2024 | Bandersnatch: a fast elliptic curve built over the BLS12-381 scalar field
Simon Masson, Antonio Sanso, Zhenfei Zhang |
Des. Codes Cryptogr. | 2 |
| 2024 | Families of Prime-Order Endomorphism-Equipped Embedded Curves on Pairing-Friendly Curves
Antonio Sanso, Youssef El Housni |
J. Cryptol. | 1 |
| 2021 | Cryptanalysis of an Oblivious PRF from Supersingular Isogenies
Andrea Basso 0002, Péter Kutas, Simon-Philipp Merz, Christophe Petit 0001, Antonio Sanso |
ASIACRYPT (1) | 5 |
| 2019 | Verifiable Delay Functions from Supersingular Isogenies and Pairings
Luca De Feo, Simon Masson, Christophe Petit 0001, Antonio Sanso |
ASIACRYPT (1) | 4 |
| 2018 | In Search of CurveSwap: Measuring Elliptic Curve Implementations in the WildabstractWe survey elliptic curve implementations from several vantage points. We perform internet-wide scans for TLS on a large number of ports, as well as SSH and IPsec to measure elliptic curve support and implementation behaviors, and collect passive measurements of client curve support for TLS. We also perform active measurements to estimate server vulnerability to known attacks against elliptic curve implementations, including support for weak curves, invalid curve attacks, and curve twist attacks. We estimate that 1.53% of HTTPS hosts, 0.04% of SSH hosts, and 4.04% of IKEv2 hosts that support elliptic curves do not perform curve validity checks as specified in elliptic curve standards. We describe how such vulnerabilities could be used to construct an elliptic curve parameter downgrade attack called CurveSwap for TLS, and observe that there do not appear to be combinations of weak behaviors we examined enabling a feasible CurveSwap attack in the wild. We also analyze source code for elliptic curve implementations, and find that a number of libraries fail to perform point validation for JSON Web Encryption, and find a flaw in the Java and NSS multiplication algorithms. Luke Valenta, Nick Sullivan, Antonio Sanso, Nadia Heninger |
EuroS&P | 3 |
| 2017 | Measuring small subgroup attacks against Diffie-Hellman
Luke Valenta, David Adrian, Antonio Sanso, Shaanan Cohney, Joshua Fried, Marcella Hastings, J. Alex Halderman, Nadia Heninger |
NDSS | 3 |