08.09.2026
Clash of the Titans: The Co-Evolution of AI and Cryptography
Abstract
Artificial intelligence is rapidly changing how we analyze, attack, and protect cryptographic systems. After initially being treated with considerable skepticism, AI-based techniques now achieve state-of-the-art results across several areas of cryptographic and hardware security. Neural networks have transformed profiled side-channel analysis, improved the modeling and evaluation of physically unclonable functions, supported the detection of hardware Trojans and implementation weaknesses, and assisted increasingly sophisticated forms of cryptanalysis. At the same time, the growing use of AI introduces new security challenges. AI models are often difficult to interpret, reproduce, and validate, while their behavior can be manipulated through adversarial examples, poisoned training data, backdoors, model extraction, and other attacks. These concerns become even more important as large language models and autonomous AI systems are deployed in security-critical environments. This talk explores the bidirectional relationship between AI and cryptography. First, we will examine examples in which machine learning has improved cryptanalysis and hardware-security evaluation, as well as the methodological limitations that can make such results unreliable or misleading. We will then reverse the perspective and investigate how cryptographic concepts and techniques can contribute to protecting AI systems. Topics will include cryptanalysis-inspired model extraction, cryptographically indistinguishable backdoors, secure distributed learning, and mechanisms for verifying computations and model behavior. The talk will conclude by outlining open challenges at the intersection of these fields. Rather than viewing AI and cryptography as separate disciplines, the talk argues that their interaction is becoming a central part of the future security landscape.
Bio
Stjepan Picek is a full professor at the University of Zagreb, Faculty of Electrical Engineering and Computing, Croatia. He also holds an associate professor position at Radboud University, Nijmegen, and an adjunct professor position at the University of Bergen, Norway. Before that, he was an assistant professor at TU Delft and a postdoctoral researcher at MIT, USA, and KU Leuven, Belgium. Stjepan completed PhD in computer science in 2015 at the University of Zagreb, Croatia and Radboud University, The Netherlands. In 2024, he finished a PhD in mathematics at the University of Paris 8, France. His research interests include security and cryptography, machine learning, and evolutionary computation. To date, Stjepan has given more than 80 invited talks and published more than 200 refereed papers. He is a program committee member and reviewer for a number of conferences and journals and a member of several professional societies. His work has been featured in the mainstream media and on popular technology blogs. He is a member of ELLIS and a Fellow of the Young Academy of Europe.
Photo provided by speaker