- HDR Thesis. Random Walks in Number-theoretic Cryptology > manuscript
 Presented on 29 August 2024 at École Normale Supérieure de Lyon (ENS Lyon), France
- PhD Thesis. Arithmetic and geometric structures in cryptography > manuscript
 Presented on 30 November 2018 at École Polytechnique Fédérale de Lausanne (EPFL), Switzerland
 Supervised by Prof. Arjen K. Lenstra and Dr. Robert Granger
 
       
     
   
 
  
    
      
        
        
            
              - Rigorous Methods for Computational Number Theory 
 With Koen de Boer and Alice Pellet-Mary
 Cryptology ePrint Archive 2025 > preprint
- On the computation of endomorphism rings of abelian surfaces over finite fields 
 With Samuele Anni, Gaetan Bisson, Annamaria Iezzi and Elisa Lorenzo García
 arXiv 2025 > preprint
- Understanding and improving the Castryck-Decru attack on SIDH 
 Unpublished note, 2022 > preprint
- Lower bounds for the depth of modular squaring 
 With Ryan Williams
 Cryptology ePrint Archive 2020 > preprint
 
       
     
   
 
  
    
      
        
        
            
              - Unconditional foundations for supersingular isogeny-based cryptography 
 With Arthur Herlédan Le Merdy
 To appear at TCC 2025 > preprint
- A Complete Security Proof of SQIsign 
 With Marius A. Aardal, Andrea Basso, Luca De Feo and Sikhar Patranabis
 Crypto 2025 > preprint
- PEGASIS: Practical Effective Class Group Action using 4-Dimensional Isogenies 
 With Pierrick Dartois, Jonathan Komada Eriksen, Tako Boris Fouotsa, Arthur Herlédan Le Merdy, Riccardo Invernizzi, Damien Robert, Ryan Rueger and Frederik Vercauteren
 Crypto 2025 > preprint
- The supersingular endomorphism ring problem given one endomorphism 
 With Arthur Herlédan Le Merdy
 To appear in IACR Communications in Cryptology, 2025 > preprint
- PRISM: Simple And Compact Identification and Signatures From Large Prime Degree Isogenies 
 With Andrea Basso, Giacomo Borin, Wouter Castryck, Maria Corte-Real Santos, Riccardo Invernizzi, Antonin Leroux, Luciano Maino, Frederik Vercauteren
 PKC 2025 > preprint
- SQIsign2D-West: The Fast, the Small, and the Safer 
 With Andrea Basso, Pierrick Dartois, Luca De Feo, Antonin Leroux, Luciano Maino, Giacomo Pope and Damien Robert
 Asiacrypt 2024 > preprint
- Cryptanalysis of Algebraic Verifiable Delay Functions 
 With Alex Biryukov, Ben Fisch, Gottfried Herold, Dmitry Khovratovich, Gaëtan Leurent and María Naya-Plasencia
 Crypto 2024 > preprint
- Computing isogenies between finite Drinfeld modules 
 IACR Communications in Cryptology, Volume 1, Issue 1 (2024) > preprint
- The supersingular Endomorphism Ring and One Endomorphism problems are equivalent 
 With Aurel Page
 Eurocrypt 2024 > preprint
- SQISignHD: new dimensions in cryptography 
 With Pierrick Dartois, Antonin Leroux and Damien Robert
 Eurocrypt 2024 > preprint
 Best paper award Eurocrypt 2024
- Finding orientations of supersingular elliptic curves and quaternion orders 
 With Sarah Arpin, James Clements, Pierrick Dartois, Jonathan Komada Eriksen and Péter Kutas
 Designs, Codes and Cryptography (2024) > preprint > open access
- Ideal-SVP is hard for small-norm uniform prime ideals 
 With Joël Felderhoff, Alice Pellet-Mary and Damien Stehlé
 TCC 2023 > preprint
- A direct key recovery attack on SIDH 
 With Luciano Maino, Chloe Martindale, Lorenz Panny and Giacomo Pope
 Eurocrypt 2023 > preprint
 Top-3 paper Eurocrypt 2023
- New algorithms for the Deuring correspondence: toward practical and secure SQISign signatures 
 With Luca De Feo, Antonin Leroux, and Patrick Longa
 Eurocrypt 2023 > preprint
- Supersingular curves you can trust 
 With Andrea Basso, Giulio Codogni, Deirdre Connolly, Luca De Feo, Tako Boris Fouotsa, Guido Maria Lido, Travis Morrison, Lorenz Panny and Sikhar Patranabis
 Eurocrypt 2023 > preprint
- SCALLOP: scaling the CSI-FiSh 
 With Luca De Feo, Tako Boris Fouotsa, Péter Kutas, Antonin Leroux, Simon-Philipp Merz and Lorenz Panny
 PKC 2023 > preprint
- A note on the low order assumption in class group of an imaginary quadratic number fields 
 With Karim Belabas, Thorsten Kleinjung and Antonio Sanso
 Mathematical Cryptology (2023) > preprint
- On the decisional Diffie-Hellman problem for class group actions on oriented elliptic curves 
 With Wouter Castryck, Marc Houben and Frederik Vercauteren
 ANTS-XV, Fifteenth Algorithmic Number Theory Symposium (2022) > preprint
- Orientations and the supersingular endomorphism ring problem 
 Eurocrypt 2022 > preprint
- Discrete logarithms in quasi-polynomial time in finite fields of fixed characteristic 
 With Thorsten Kleinjung
 Journal of the American Mathematical Society, Volume 35, Number 2 (2022) > preprint
- The supersingular isogeny path and endomorphism ring problems are equivalent 
 FOCS 2021 > preprint
- Séta: Supersingular Encryption from Torsion Attacks 
 With Luca De Feo, Cyprien Delpech de Saint Guilhem, Tako Boris Fouotsa, Péter Kutas, Antonin Leroux, Christophe Petit, Javier Silva
 Asiacrypt 2021 > preprint
- Computation of a 30750-Bit Binary Field Discrete Logarithm 
 With Robert Granger, Thorsten Kleinjung, Arjen K. Lenstra and Jens Zumbrägel
 Mathematics of Computation, Volume 90, Number 332 (2021) > preprint
- Mildly short vectors in cyclotomic ideal lattices in quantum polynomial time
 With Ronald Cramer and Léo Ducas
 Journal of the ACM, Volume 68, Issue 2 (2021) > preprint
- SQISign: compact post-quantum signatures from quaternions and isogenies
 With Luca De Feo, David Kohel, Antonin Leroux and Christophe Petit
 Asiacrypt 2020 > preprint
 Best paper award Asiacrypt 2020
- Efficient Verifiable Delay Functions 
 Journal of Cryptology 2020 > paper
- Random self-reducibility of Ideal-SVP via Arakelov random walks 
 With Koen de Boer, Léo Ducas and Alice Pellet-Mary
 Crypto 2020 > preprint
- On the shortness of vectors to be found by the Ideal-SVP quantum algorithm 
 With Léo Ducas and Maxime Plançon
 Crypto 2019 > preprint
- Efficient verifiable delay functions 
 Eurocrypt 2019 > preprint
 Best young researcher award Eurocrypt 2019
- Horizontal isogeny graphs of ordinary abelian varieties and the discrete logarithm problem 
 With Dimitar Jetchev
 Acta Arithmetica 187 (2019) > preprint
- A new perspective on the powers of two descent for discrete logarithms in finite fields 
 With Thorsten Kleinjung
 ANTS-XIII, Thirteenth Algorithmic Number Theory Symposium (2018) > preprint
- Generating subgroups of ray class groups with small prime ideals 
 ANTS-XIII, Thirteenth Algorithmic Number Theory Symposium (2018) > preprint
- Isogeny graphs of ordinary abelian varieties 
 With Ernest Hunter Brooks and Dimitar Jetchev
 Research in Number Theory 3 (2017) > open access
- Loop-abort faults on supersingular isogeny cryptosystems 
 With Alexandre Gélin
 PQCrypto 2017 > preprint
- Short Stickelberger class relations and application to Ideal-SVP 
 With Ronald Cramer and Léo Ducas
 Eurocrypt 2017 > preprint
 Top-3 paper Eurocrypt 2017
- Trustworthy public randomness with sloth, unicorn, and trx 
 With Arjen K. Lenstra
 International Journal of Applied Cryptography (2016) > preprint
- Malleability of the blockchain’s entropy
 With Cécile Pierrot
 ArcticCrypt 2016 > preprint
- Ciphertext-policy attribute-based broadcast encryption with small keys
 With Pascal Junod
 ICISC 2015 > preprint
 
       
     
   
 
  
    
      
        
        
            
          
            - An introduction to isogeny-based cryptography
 The SQIparty, a workshop on isogeny-crypto, Lleida, Spain (April 2025) > slides
- Cryptologie, théorie des nombres, et marches aléatoires
 Matinée scientifique du département de mathématiques de l'ENS de Lyon, France (April 2025)
- Recent advances in isogeny-based cryptography
 Oberwolfach Workshop on Cryptography, Germany (January 2025)
- SQIsignHD and the HD revolution
 Workshop on emerging topics in design and cryptanalysis of post-quantum schemes, Institut Henri Poincaré, Paris, France (November 2024)  > slides
- SQIsignHD: Sqiing in higher dimensions
 ECC 2024, 25th Workshop on Elliptic Curve Cryptography, Taipei, Taiwan (October 2024)  > slides
- Computational Foundations of Isogeny-Based Cryptography
 ECC 2024, Autumn School on Isogenies, Taipei, Taiwan (October 2024)  > slides
- Foundations of isogeny-based cryptography
 Mathematics for post-quantum cryptanalysis, Budapest, Hungary (August 2024)  > slides
- Foundations of isogeny-based cryptography
 Normandie 2024, Caen, France (July 2024)  > slides
- The Supersingular Endomorphism Ring and One Endomorphism Problems Are Equivalent
 Eurocrypt 2024, Zurich, Switzerland (May 2024)  > slides
- SQIsignHD
 CAIPI Symposium, Rennes, France (April 2024)  > slides
- Isogeny-based cryptography, a biased introduction
 CAIPI Symposium, Rennes, France (April 2024)  > slides
- Ideal-SVP is Hard for Small-Norm Uniform Prime Ideals
 TCC 2023, Taipei, Taiwan (December 2023)  > slides > video
- Interpolating isogenies
 Seminar AMAC: CASC, Laboratoire Jean Kuntzmann, Grenoble, France (December 2023)  > slides
- The supersingular Endomorphism Ring and One Endomorphism problems are equivalent
 Séminaire d'arithmétique de Lyon, ENS de Lyon, France (November 2023)
- Interpolating isogenies
 Séminaire d'arithmétique de Lyon, ENS de Lyon, France (October 2023)
- The supersingular Endomorphism Ring and One Endomorphism problems are equivalent
 Geometry Seminars at Tor Vergata, Rome, Italy (October 2023)
- Interpolating isogenies, and applications
 RTCA 2023, Recent Trends in Computer Algebra, IHP, Paris, France (September 2023)  > slides
- Isogeny-based cryptography after The Snap
 PQCrypto, College Park, USA (August 2023)  > slides > video
- SQIsign HD: SQIing in higher dimensions
 SIAM Conference on Applied Algebraic Geometry, online (August 2023)
- Supersingular curves You can Trust
 COUNT, COmputations and their Uses in Number Theory, Eindhoven, The Netherlands (July 2023)
- Courbes elliptiques supersingulières en cryptographie
 Séminaire d'arithmétique de Lyon, ENS de Lyon, France (February 2023)
- Hard problems for isogeny-based cryptography
 Séminaire C2, Lyon, France (January 2023)
- Reductions between hard isogeny problems
 CIAO seminar, Bordeaux, France (December 2022)
- Reductions between hard isogeny problems
 Leuven Isogeny Days 3, Leuven, Belgium (September 2022) > video
- Hard problems for isogeny-based cryptography
 Selected Areas in Cryptography (SAC 2022), Windsor, Canada (August 2022)
- Hard problems for isogeny-based cryptography
 Cryptology seminar at IAI, TCG CREST, online (June 2022)
- Hard problems for isogeny-based cryptography
 JNIM 2022, Journées Nationales du GDR IM, Lille, France (March 2022)  > video
- SQISign: compact post-quantum signature from quaternions and isogenies
 Workshop on Isogeny-Based Cryptography, Birmingham, United Kingdom (March 2022)
- Ideal lattices and the Arakelov class group
 CHARM seminar, online (March 2022)
- The supersingular isogeny path and endomorphism ring problems are equivalent
 COSIC seminar, KU Leuven, Belgium (November 2021)
- SQISign: compact post-quantum signature from quaternions and isogenies
 LFANT seminar, Bordeaux, France (November 2021)  > slides
- SQISign: compact post-quantum signature from quaternions and isogenies
 SIAM Conference on Applied Algebraic Geometry, online (August 2021)  > slides
- Hasard ou manipulation ? Peut-on tirer au sort et prouver que seul le hasard est maître ?
 Unithé ou café, Inria Bordeaux, online (June 2021)
- SQISign: compact post-quantum signature from quaternions and isogenies
 AriC Seminar, ENS Lyon, online (March 2021)  > slides
- Verifiable delay functions
 Blockchain Seminar, Monash Blockchain Technology Centre, online (September 2020)  > slides
- New Reductions and Algorithms for Ideal Lattices via Arakelov Random Walks
 Lattices: Geometry, Algorithms and Hardness, Simons Institute, Berkeley, USA (February 2020)  > video
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 Séminaire de Théorie des Nombres, Université de Bordeaux, France (February 2020)  > slides
- Verifiable delay functions
 Conférence de lancement de l'ANR Ciao, Université de Bordeaux, France (February 2020)  > slides
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 ECC 2019, 23rd Workshop on Elliptic Curve Cryptography, Bochum, Germany (December 2019)  > slides
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 Diamant symposium, Utrecht, The Netherlands (November 2019)  > slides
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 Applied Crypto Group Seminar, Université du Luxembourg (November 2019)  > slides
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 Protocol Labs Journal Club (October 2019)  > slides
- Discrete logarithms in quasi-polynomial time in finite fields of small characteristic
 AriC Seminar, ENS Lyon, France (October 2019)  > slides
- Verifiable delay functions
 Ei/Ψ Crypto Working Group, Utrecht, The Netherlands (September 2019)  > slides
- Horizontal isogeny graphs: analytic methods and mixing properties
 SIAM conference on applied algebraic geometry, Bern, Switzerland (July 2019)
- Quantum algorithms for finding short vectors in ideal lattices
 2nd QSC General Assembly, Amsterdam, The Netherlands (June 2019)  > slides
- The discrete logarithm problem in finite fields of small characteristic
 Algebra, geometry and number theory seminar, Leiden University, The Netherlands (April 2019)  > slides
- The discrete logarithm problem in finite fields of small characteristic
 Mathematical foundations of asymmetric cryptography, winter school, Aussois, France (March 2019)  > slides
- A hybrid verifiable delay function
 Blockchain Research workshop at Stanford, CA, USA (February 2019)
- Isogeny graphs of ordinary abelian varieties
 Séminaires de l'Institut Fourier, Grenoble, France (December 2018)
- Horizontal isogeny graphs
 AriC's Lattice and Crypto Session, ENS Lyon, France (December 2018)
- An efficient verifiable delay function
 Ethereum Foundation and Stanford Center for Blockchain Research workshop at Stanford, CA, USA (August 2018)
- Horizontal isogeny graphs of ordinary abelian varieties and the discrete logarithm problem
 Séminaire de Cryptographie, Rennes, France (February 2018) > slides
- Mildly short vectors in cyclotomic ideal lattices in quantum polynomial time
 CARAMBA seminar, Nancy, France (January 2018) > slides
- Isogeny graphs of ordinary abelian varieties
 ECC 2017, 21st Workshop on Elliptic Curve Cryptography, Nijmegen, The Netherlands (November 2017) > slides
 Best presentation award
- Isogeny graphs of ordinary abelian varieties
 LFANT seminar, Bordeaux, France (May 2017) > slides
- Graphes d'isogénies de variétés abéliennes ordinaires
 Journées Codage et Cryptographie, La Bresse, France (April 2017) > slides (french)
- Randomness on the blockchain
 RISC seminars, CWI Cryptology Group, Amsterdam, The Netherlands (September 2016) > slides
- Trust, and public entropy: a unicorn hunt
 NIST Workshop on Random Bit Generation, Gaithersburg, MD, USA (May 2016) > slides
- A random zoo: sloth, unicorn and trx
 ALMASTY seminars, Université Pierre et Marie Curie, Paris, France (December 2015) > slides (french)
- A random zoo: sloth, unicorn and trx
 Journées Codage et Cryptographie, La Londe-les-Maures, France (October 2015)
- A random zoo: sloth, unicorn and trx
 NIST Workshop on Elliptic Curve Cryptography Standards, Gaithersburg, MD, USA (June 2015) > slides
- Random self-reducibility of the discrete logarithm problem in genus 2 > slides
 LACAL@RISC Seminar on Cryptologic Algorithms, CWI Amsterdam, The Netherlands (February 2015)