Lenka Mareková

dblp:208/7022 · DBLP profile ↗
← Back
7ranked-venue papers
0as first author
7since 2021 · last 2026
0000-0001-8616-4150ORCID · corroborated

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 7 · 7 since 2021
YearPublicationVenuePosition
2026 Four Attacks and a Proof for Telegram
abstract
Abstract We study the use of symmetric cryptography in the MTProto 2.0 protocol, Telegram’s equivalent of the TLS protocol. We give positive and negative results. On the one hand, we formally and in detail specify a slight variant of Telegram’s “record protocol” and prove that it achieves security in a suitable bidirectional secure channel model, albeit under unstudied assumptions; this model itself advances the state of the art for secure channels. On the other hand, we first motivate our slight deviation from MTProto as deployed by giving two attacks on the original protocol specification: one of practical, one of theoretical interest. Then, we give two attacks on the implementation, which are outside of our formal model: one targeting the client, one targeting the server. The client-side attack enables plaintext recovery by exploiting timing side channels, of varying strength, in three official Telegram clients. On its own this attack is thwarted by the secrecy of header fields that are established by Telegram’s key exchange protocol. We thus chain this attack with an attack against the implementation of the key exchange protocol on Telegram’s servers. This final attack breaks the authentication properties of Telegram’s key exchange, allowing a MitM attack. More mundanely, it also reduces the cost of the client-side plaintext-recovery attack. In totality, our results provide the first comprehensive study of MTProto’s use of symmetric cryptography, as well as highlight weaknesses in its key exchange.
Martin R. Albrecht, Lenka Mareková, Kenneth G. Paterson, Igors Stepanovs
J. Cryptol.2
2025 Analysis of the Telegram Key Exchange
Martin R. Albrecht, Lenka Mareková, Kenneth G. Paterson, Eyal Ronen, Igors Stepanovs
EUROCRYPT (8)2
2024 Cryptographic Analysis of Delta Chat
Yuanming Song 0002, Lenka Mareková, Kenneth G. Paterson
USENIX Security Symposium2
2023 Caveat Implementor! Key Recovery Attacks on MEGA
Martin R. Albrecht, Miro Haller, Lenka Mareková, Kenneth G. Paterson
EUROCRYPT (5)3
2022 Four Attacks and a Proof for Telegram
abstract
We study the use of symmetric cryptography in the MTProto 2.0 protocol, Telegram’s equivalent of the TLS record protocol. We give positive and negative results. On the one hand, we formally and in detail model a slight variant of Telegram’s “record protocol” and prove that it achieves security in a suitable bidirectional secure channel model, albeit under unstudied assumptions; this model itself advances the state-of-the-art for secure channels. On the other hand, we first motivate our modelling deviation from MTProto as deployed by giving two attacks – one of practical, one of theoretical interest – against MTProto without our modifications. We then also give a third attack exploiting timing side channels, of varying strength, in three official Telegram clients. On its own this attack is thwarted by the secrecy of salt and id fields that are established by Telegram’s key exchange protocol. To recover these, we chain the third attack with a fourth one against the implementation of the key exchange protocol on Telegram’s servers. In totality, our results provide the first comprehensive study of MTProto’s use of symmetric cryptography.
Martin R. Albrecht, Lenka Mareková, Kenneth G. Paterson, Igors Stepanovs
SP2
2021 Mesh Messaging in Large-Scale Protests: Breaking Bridgefy
Martin R. Albrecht, Jorge Blasco Alís, Rikke Bjerg Jensen, Lenka Mareková
CT-RSA4
2021 Collective Information Security in Large-Scale Urban Protests: the Case of Hong Kong
Martin R. Albrecht, Jorge Blasco Alís, Rikke Bjerg Jensen, Lenka Mareková
USENIX Security Symposium4