arXiv ScienceSearch

arXiv subjects

Gideon Samid

Publications and source records attributed to Gideon Samid.

2 recordsLinked to original sources

AI-Accelerated Brute Force Cryptanalysis

Modern cryptography is hinged on "not learning from mistakes": trying numerous wrong keys, should not help one identify the right key. Indeed, it worked -- until recently when the surprising power of AI to see pattern in apparent randomness has turned the 'wrong plaintexts' generated by the 'wrong key' into productive inferential input. Crunching through these random-looking plaintext candidates AI can de-flatten the probability curve over the remaining key space. The more spiked this curve, the faster the ciphertext is defeated. This new attack vector demands a thorough review of our cryptographic security posture. NIST PQC is not immunized against AI-Accelerated Brute Force attack. Defense is rooted in non-trivial ciphertexts, in unilateral randomness, and in variable key size. This points to a new security class: Pattern Devoid Cryptography which is to be added into the toolbox used by the cyber security community.

cs.CR

Shannon Revisited: Considering a More Tractable Expression to Measure and Manage Intractability, Uncertainty, Risk, Ignorance, and Entropy

Building on Shannon's lead, let's consider a more malleable expression for tracking uncertainty, and states of "knowledge available" vs. "knowledge missing," to better practice innovation, improve risk management, and successfully measure progress of intractable undertakings. Shannon's formula, and its common replacements (Renyi, Tsallis) compute to increased knowledge whenever two competing choices, however marginal, exchange probability measures. Such and other distortions are corrected by anchoring knowledge to a reference challenge. Entropy then expresses progress towards meeting that challenge. We introduce an 'interval of interest' outside which all probability changes should be ignored. The resultant formula for Missing Acquirable Relevant Knowledge (MARK) serves as a means to optimize intractable activities involving knowledge acquisition, such as research, development, risk management, and opportunity exploitation.

cs.IT