Alessandro Budroni

alt text 

PhD candidate,
Selmer Center,
Department of Informatics, Universitet i Bergen
Høyteknologisenteret, Thormøhlensgate 55,
N-5008 Bergen, Norway
e-mail: alessandro [DOT] budroni [@] uib [DOT] no
e-mail: budroni [DOT] alessandro [@] gmail [DOT] com
Member of COINS Research School of Computer and Information Security
About me

I received the B.S. degree at University of Cagliari in pure Mathematics and the M.Sc. degree at University of Trento in Coding Theory and Cryptography. I am now a PhD candidate in Computer Security at Univeristy of Bergen.

I am always interested in hearing from colleagues, other cryptography fans, or just interesting creative folk, so feel free to contact me.

Hobbies: juggling, skiing (downhill and cross-country), surfing, hiking, coding.

Research Interests

> Cryptoanalysis on LWE
> Lattice-Based Cryptography
> Pairing-Based Cryptography
> Identity-Based Cryptography



  • Alessandro Budroni, Igor Semaev, "New Public-Key Crypto-System EHT", Arxiv 2021.

  • Alessandro Budroni, Kealan McCusker, "Milagro TLS: Pairing-Based Cryptography for Transport Layer Security", Internet-Draft, 2016.

Conference Publications:

  • Alessandro Budroni, Qian Guo, Thomas Johansson, Erik Mårtensson, Paul Stankovski Wagner, "Making the BKW Algorithm Practical for LWE", IndoCrypt 2020.

  • Alessandro Budroni, Benjamin Chetioui, Ermes Franch, "Attacks on Integer-RLWE", ICICS 2020.

  • Alessandro Budroni, Andrea Tenti, "The Mersenne Low Hamming Combination Search Problem can be reduced to an ILP Problem", AfricaCrypt 2019.

  • Quoc-Tin Phan, Alessandro Budroni, Cecilia Pasquini, Francesco G. B. De Natale, "A Hybrid Approach for Multimedia Use Verification", MediaEval 2016.

Journal Publications:

  • Alessandro Budroni, Federico Pintore, "Efficient hash maps to G2 on BLS curves", Applicable Algebra in Engineering, Communication and Computing 2020.


  • EHT-C is my PoC of our new public-key cryptosystem EHT on github.

  • I mantain the fbbl (File-Based BKW for LWE) library. This is the first implementation of the BKW algorithm for LWE able to solve relatively large LWE instances.

  • I have been mantaining the Apache milagro-crypto-c and milagro-crypto-js libraries, IMO the best libraries in c and javascript supporoting pairing-based cryptography! Now I follow the projects and I plan to be more active again in the future.



In collaboration with the blog MathIsInTheAir, the following articles:

  • Maths and Juggling (italian - english)

  • SOK: la crittografia incontra la magia (italian)

  • È veramente importante finanziare la ricerca in Matematica Pura? (italian)

  • Cosa sta succedendo nel mondo della crittografia? (italian)