Roberto Avanzi ============== Title: From Software Security To Cryptographic Research in the ARM World Abstract: In this presentation we will wrap up questions and promises from previous editions of the Lightweight Crypto Day and present new questions. The starting point will be the requirements of Control Flow Integrity and Memory Encryption, and how these led to the requirements on the needed cryptographic primitive, which in turn prompted the development of the tweakable block cipher QARMA. We shall describe how Control Flow Integrity is included in the ARM v8.3-A architecture. Finally, we shall conclude with some vistas over future applications and a few open questions on tweakable block ciphers. (Time allowing, the rationale of the most critical design choices in QARMA will be described as well.)