Introduction to Cryptography

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/47

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 12:25 PM on 9/20/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

48 Terms

1
New cards

What is cryptography?

The act or art of writing in secret characters.

2
New cards

What is cryptanalysis?

The analysis and deciphering of secret writings.

3
New cards

What is cryptology?

The scientific study of cryptography and cryptanalysis.

4
New cards

What is encryption?

A method for encoding messages.

5
New cards

What is decryption?

A method for decoding messages.

6
New cards

What is plaintext?

An unencrypted message; data in the clear.

7
New cards

What is ciphertext?

An encrypted message.

8
New cards

What does c = e_k(m) mean?

Plaintext m is encrypted by encryption function e under secret key k to produce ciphertext c.

9
New cards

What does m = d_k(c) mean?

Ciphertext c is decrypted by decryption function d under key k to recover plaintext m.

10
New cards

In the basic symmetric encryption model, what must both communicating parties know?

The secret key k.

11
New cards

Who are Alice and Bob in cryptography examples?

Two parties who want to communicate securely.

12
New cards

Who is Eve in cryptography examples?

An eavesdropper/adversary who wants to listen to or modify communication.

13
New cards

Why must a cryptographic keyspace be large?

To make exhaustive or brute-force key search impractical.

14
New cards

What worst-case knowledge should we assume an attacker may have?

Full knowledge of the cipher algorithm and some plaintext/ciphertext pairs associated with the target key.

15
New cards

State Kerckhoff's Principle.

A cryptosystem should remain secure even if the algorithm is known, as long as the key remains secret.

16
New cards

What is a passive attack?

An attack where information is accessed but not modified.

17
New cards

What is an active attack?

An attack where information or the system is modified.

18
New cards

What is a ciphertext-only attack?

An attack where the adversary knows only ciphertext.

19
New cards

What is a known-plaintext attack?

An attack where the adversary knows some plaintext and its corresponding ciphertext.

20
New cards

What is a chosen-plaintext attack?

An attack where the adversary can choose plaintext and obtain its encryption.

21
New cards

What is a chosen-ciphertext attack?

An attack where the adversary can choose ciphertext and obtain its decryption.

22
New cards

What is a dictionary attack?

An attack where the adversary builds a dictionary of ciphertexts and corresponding plaintexts.

23
New cards

What is a brute-force attack?

Trying all possible keys in an attempt to determine the correct key.

24
New cards

What is a security mechanism?

A mechanism that detects, prevents, or recovers from an attack.

25
New cards

What is a secure system, according to the notes?

A system in which known threats have been considered and suitable security mechanisms have been incorporated to prevent successful attacks.

26
New cards

What is a trusted component?

A component assumed to behave correctly.

27
New cards

What general rule should be followed for trusted components?

Keep the number of trusted components as small as possible.

28
New cards

What does privacy concern?

The appropriate collection, use, sharing, and control of information about individuals.

29
New cards

What does encryption hide in a privacy context?

The content of data, but not necessarily who is communicating, when, or how often.

30
New cards

What does access control do?

Restricts who may use data.

31
New cards

What is pseudonymisation?

Replacing real identities with substitute identifiers.

32
New cards

Why can cryptography alone not guarantee privacy?

Because authorised parties may still misuse information.

33
New cards

What is a security policy?

The set of rules and decisions defining threats, trusted components, security mechanisms, procedures, review, and audit for a system.

34
New cards

A system is secure relative to what?

The security policy it enforces.

35
New cards

What does the CIA triad stand for?

Confidentiality, Integrity, Availability.

36
New cards

What is confidentiality?

Keeping information secret from those not entitled to see it.

37
New cards

What is integrity?

Ensuring that information has not been altered.

38
New cards

What is availability?

Ensuring that information can be accessed in an appropriate time-frame.

39
New cards

What kind of attack is closely related to availability?

Denial of Service (DoS).

40
New cards

What is entity authentication?

Ensuring that the purported identity of an entity is correct.

41
New cards

What is message authentication?

Ensuring that the purported source of information is correct.

42
New cards

What is non-repudiation?

Ensuring that an entity cannot deny a previous action.

43
New cards

How does privacy differ from confidentiality?

Confidentiality protects content from unauthorised access; privacy is wider and concerns what can be linked about a person over time.

44
New cards

How does trust differ from integrity?

Integrity concerns whether data was altered; trust concerns the expectation that an entity behaves correctly.

45
New cards

Name the five types of security listed in the notes.

Physical security, secrecy, personnel security, IT security, and cryptographic security.

46
New cards

Why is perfect security generally impossible for real systems?

Security mechanisms have limited applicability and costs, threats evolve, and absolute security usually cannot be demonstrated.

47
New cards

What is a security protocol?

A description of how legitimate entities should interact to achieve stated security objectives despite attacks.

48
New cards

Is cryptography alone sufficient for network security?

No. Cryptography is necessary, but other forms of security are also required.