Khandaker Md. Al-Amin
Cryptographer in Berlin. PhD in pairing-based cryptography, then three years shipping lattice-based homomorphic encryption and secure multi-party computation. Post-quantum cryptography is where I am taking that next.
Recent writing
Computing on Secrets: An Illustrated Guide to LWE and Homomorphic Encryption
A visual, build-it-up-from-scratch tour of fully homomorphic encryption, from LWE to Ring-LWE to the Fan-Vercauteren scheme.
Selected research
A Study of Efficient Pairing Computation Algorithm Using KSS Curves
Ph.D. dissertation, Okayama University, 2019
Efficient Optimal Ate Pairing at 128-Bit Security Level
Progress in Cryptology - INDOCRYPT 2017, Springer LNCS, December 2017, pp. 186–205
An Improvement of Scalar Multiplication by Skew Frobenius Map with Multi-Scalar Multiplication for KSS Curve
IEICE Transactions on Fundamentals E100.A(9), 2017, pp. 1838–1845
Code
ELiPS
Efficient library for pairing-based cryptography on BN and BLS curves.
DataArmor Gate DB
Database proxy that runs SQL over encrypted data without giving the server the key.
What I work on
Cryptography & secure computing
- Pairing-based cryptography and elliptic curves (KSS, BN, BLS families)
- Lattice-based homomorphic encryption: BFV, BGV and CKKS on Ring-LWE, noise budgets and parameter selection
- Secure multi-party computation and private set intersection
- Privacy-preserving machine learning
- Encrypted-database and secure-computing product engineering
- Implementation in Rust and C, with an eye on constant-time behaviour
Security engineering & compliance
- EU Cyber Resilience Act readiness and conformity assessment routes
- SBOM management: SPDX, CycloneDX, provenance and signing in CI/CD
- Coordinated vulnerability disclosure (ISO/IEC 29147, 30111) and PSIRT operating models
- Incident response readiness aligned with NIST SP 800-61
- Automotive cybersecurity: ISO/SAE 21434 TARA, UN R155, secure boot, HSM integration
Where I am taking this next
- Post-quantum standards in practice: ML-KEM and ML-DSA, and what migration costs at the protocol layer
- Hybrid key exchange and the transition problem for long-lived systems
- Zero-knowledge proof systems and the pairing-based components I already know well