A classification-driven static scanner with a separate rule repository discovers and assesses cryptographic assets at rest, achieving F1 0.75 on a synthetic benchmark and finding 370 assets in ten real services.
On the Formalization of Cryptographic Migration
1 Pith paper cite this work. Polarity classification is still indexing.
abstract
We present a novel approach to gaining insight into the structure of cryptographic migration problems which are classic problems in applied cryptography. We use a formal model to capture the inherent dependencies and complexities of such transitions. Using classical mathematical results from combinatorics, probability theory, and combinatorial analysis, we evaluate the challenges of migrating large cryptographic IT infrastructures and prove that - in a suitable sense - cryptographic migration exhibits a certain expected complexity. We also provide numerical data for selected parameter sets. Furthermore, we analyze the proposed model in terms of real-world patterns and its practical applicability. Additionally, we discuss the challenges of modeling real-world migration projects. As concrete examples we examine the transition to post-quantum cryptography of the CI/CD system GitLab and the multi-level technological transition of distribution power grids. This work paves the way for future advancements in both the theoretical understanding and practical implementation of cryptographic migration strategies.
fields
cs.CR 1years
2026 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
Hidden Ciphers and Where to Find Them: Static Discovery and Assessment of Cryptographic Assets in Software
A classification-driven static scanner with a separate rule repository discovers and assesses cryptographic assets at rest, achieving F1 0.75 on a synthetic benchmark and finding 370 assets in ten real services.