【24h】

A Novel Protection Mechanism for Encryption System

机译:加密系统的一种新型保护机制

获取原文

摘要

Software drive encryption system is difficult to prevent memory attacks, in which, an attacker acquire the physical accesses to the unattended computer, obtains the decryption keys from memory and consequently decrypts the drive. We propose a new method for protecting encryption systems against memory attacks, by converting them to use two tiers of keys, a single Master Key and a set of File or Sector keys. When the computer is unattended, the Master Key and part of the second-tier keys are erased from memory. The method is secure against any type of memory attack, including attackers who gain complete control of the unattended system. Compared to previous methods of protection, which erase keys and shut down the computer, our method allows to keep the computer operational by a combination of cryptographic and operating systems techniques.
机译:软件驱动加密系统难以防止内存攻击,其中,攻击者获取对无人参与计算机的物理访问,从内存中获取解密密钥,从而使驱动器解密。我们提出了一种通过将它们转换为使用两个密钥,单个主键和一组文件或扇区键来保护加密系统免受存储器攻击的新方法。当计算机无人看管时,主键和第二层键的一部分都从内存中删除。该方法针对任何类型的内存攻击安全,包括获得完全控制无人值守系统的攻击者。与以前的保护方法相比,擦除键和关闭计算机,我们的方法允许通过密码和操作系统技术的组合来保持计算机操作。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号