Reports
Here is a selection of public reports which have been published via the NCC Group research blog.
2025
- Google Private AI Compute Review ‐ Report
- VetKeys Cryptography Review ‐ Report
- Meta Whatsapp message summarization service ‐ Report
- VeChain JavaScript SDK Cryptography and Security Review ‐ Report
2024
- WhatsApp Contacts Security Assessment ‐ Report
- Keyfork Implementation Review ‐ Report
- Google Privacy Sandbox Aggregation Service and Coordinator ‐ Report
- Aleo snarkOS Implementation and Consensus Mechanism Review ‐ Report
2023
- Security Review of RSA Blind Signatures with Public Metadata ‐ Report
- Aleo snarkVM Implementation Review ‐ Report
- WhatsApp Auditable Key Directory (AKD) Implementation Review ‐ Report
- Zcash FROST Security Assessment ‐ Report
- Entropy/Rust Cryptography Review ‐ Report
- Penumbra Labs R1CS Implementation Review ‐ Report
- Zcash Zebra Security Assessment ‐ Report
- Program Library ZK-Token Security Assessment ‐ Report
2022
- IOV Labs powHSM Security Assessment web.archive.org
- Threshold ECDSA Cryptography Review (DFinity) – web.archive.org
- go-cose Security Assessment – web.archive.org
2021
- BLST Cryptographic Implementation Review – web.archive.org
- O(1) Labs Mina Client SDK, Signature Library and Base Components Cryptography and Implementation Review – web.archive.org
- WhatsApp opaque-ke Cryptographic Implementation Review – web.archive.org
- Zendoo Proof Verifier Cryptography Review – web.archive.org
- Zcash NU5 Cryptography Review – web.archive.org
- WhatsApp End-to-End Encrypted Backups Security Assessment – web.archive.org
- Protocol Labs Groth16 Proof Aggregation: Cryptography and Implementation Review – web.archive.org
2020
- Filecoin Bellman and BLS Signatures Cryptographic Review – web.archive.org
- Electric Coin Company NU4 Cryptographic Specification and Implementation Review – web.archive.org
- Coda Cryptographic Review – web.archive.org
- Apache Milagro MPC Security Assessment Public Report – web.archive.org
2019
Public Report Rustcrypto AES GCM and Chacha20Poly1305 Implementation Review – web.archive.org
ZCash public report: NU3 Specification and Blossom Implementation Audit – web.archive.org
Padloc Cryptography Review - (broken link)
ZCash public report: Blossom Specification Report - (broken link)
