Fault-Based Attack of RSA Authentication
basile at opensource.dyc.edu
Fri Mar 5 00:20:36 UTC 2010
I thought this might be of interest to the list. Pellegrini, Bertacco
and Austin at U of Michigan have found an interesting way to deduce the
secret key by fluctuating a device's power supply. Its a minimal threat
against servers, but against hand held devices its more practical. The
openssl people say there's an easy fix by salting.
Here's some referneces:
Anthony G. Basile, Ph.D.
Chair of Information Technology
Buffalo, NY 14201
-------------- next part --------------
A non-text attachment was scrubbed...
Size: 260 bytes
Desc: OpenPGP digital signature
More information about the tor-talk