NCC Group Logo
Cryptography Services

In August we premiered a new training course we developed as a back-to-back sold-out offering at Black Hat in Las Vegas. We’re offering it again in November at Black Hat Europe - and we’re announcing that we’re offering an open registration a week later - November 17th and 18th in New York City.

We spend our days researching and assessing cryptographic implementations and protocols. We kept seeing the same types of flaws being demonstrated again and again - sometimes verbatim but sometimes in a slightly new incarnation. We took all of those flaws, grouped them up a bit, and turned it into a training course that will help you design and implement secure cryptographic systems - or identify weaknesses in existing ones.

I think, the training was awesome. The exercises were helpful and you guys were around to help out with the dumbest of questions. I have been looking for cryptanalysis training for a while, and this was exactly what I wanted. - Attendee

We’ll talk about what attacks in the past took advantage of them, how algorithms and protocols have evolved over time to address these concerns, and what they look like now where they’re at the heart of the most popular bugs today. The other major areas we hit are cryptographic exploitation primitives such as chosen block boundaries, and more protocol-related topics, such as how to understand and trace authentication in complex protocols.

I found great value in the presentation and knowledge transferred. The course is spot on. - Attendee

Course requirements are minimal. We’ve targeted it at students who have a strong interest in cryptography and some measure of cryptographic understanding (such as the difference between symmetric and asymmetric crypto). The ideal student has investigated one or more recent cryptographic attacks deeply enough to be able to explain it, but has not sat down and read PKCS or NIST standards describing algorithm implementation. No explicit understanding of statistics or high-level math is required, as the focus is on the underlying causes of the vulnerabilities. We cover a wide breadth of topics in the course, and provide printed slide decks.

Some experience programming is recommended - please bring a laptop prepared with an environment you’re comfortable with, and with Python 2.7 installed. You don’t have to program in Python, but the exercises are in Python and it does make it easier.

Space is limited of course - we won’t exceed our capability to work with people individually. We’ve priced the course competitively at $2500/person before October 31st, and $3000 after. Group discounts are available. To reserve your seat contact us at CryptographyServices@nccgroup.com<.