Practical realisation and elimination of an ECC-related software bug attack

Billy Brumley, Manuel Barbosa, Dan Page, Frederik Vercauteren

    Tutkimustuotos: KonferenssiartikkeliScientificvertaisarvioitu

    21 Sitaatiot (Scopus)

    Abstrakti

    We analyse and exploit implementation features in OpenSSL version 0.9.8g which permit an attack against ECDH-based functionality. The attack, although more general, can recover the entire (static) private key from an associated SSL server via 633 adaptive queries when the NIST curve P-256 is used. One can view it as a software-oriented analogue of the bug attack concept due to Biham et al. and, consequently, as the first bug attack to be successfully applied against a real-world system. In addition to the attack and a posteriori countermeasures, we show that formal verification, while rarely used at present, is a viable means of detecting the features which the attack hinges on. Based on the security implications of the attack and the extra justification posed by the possibility of intentionally incorrect implementations in collaborative software development, we conclude that applying and extending the coverage of formal verification to augment existing test strategies for OpenSSL-like software should be deemed a worthwhile, long-term challenge.

    AlkuperäiskieliEnglanti
    OtsikkoTopics in Cryptology, CT-RSA 2012 - The Cryptographers' Track at the RSA Conference 2012, Proceedings
    Sivut171-186
    Sivumäärä16
    Vuosikerta7178 LNCS
    DOI - pysyväislinkit
    TilaJulkaistu - 2012
    OKM-julkaisutyyppiA4 Artikkeli konferenssijulkaisussa
    Tapahtuma12th Cryptographers' Track at the RSA Conference, CT-RSA 2012 - San Francisco, CA, Yhdysvallat
    Kesto: 27 helmik. 20122 maalisk. 2012

    Julkaisusarja

    NimiLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
    Vuosikerta7178 LNCS
    ISSN (painettu)03029743
    ISSN (elektroninen)16113349

    Conference

    Conference12th Cryptographers' Track at the RSA Conference, CT-RSA 2012
    Maa/AlueYhdysvallat
    KaupunkiSan Francisco, CA
    Ajanjakso27/02/122/03/12

    !!ASJC Scopus subject areas

    • Theoretical Computer Science
    • Computer Science(all)

    Sormenjälki

    Sukella tutkimusaiheisiin 'Practical realisation and elimination of an ECC-related software bug attack'. Ne muodostavat yhdessä ainutlaatuisen sormenjäljen.

    Siteeraa tätä