首页> 外文期刊>Cluster computing >Cryptographic key protection against FROST for mobile devices
【24h】

Cryptographic key protection against FROST for mobile devices

机译:对移动设备霜冻的加密密钥保护

获取原文
获取原文并翻译 | 示例
       

摘要

With the flourish of applications based on the internet of things and cloud computing, privacy issues have been attracting a lot of attentions. Although the increasing use of full disk encryption (FDE) significantly hamper privacy leakage and digital forensics, cold boot attacks have thwarted FDE since forensic recovery of scrambled telephones (FROST), a forensic tool, is proposed. The cryptographic keys which are stored in the mobile devices are inclined to be obtained by FROST. Recent research results have shown CPU-bound encryption methods to resist FROST. However, these methods performs AES encryption solely on CPU registers, whose advantage comes at the cost of encryption speed. This paper, therefore, presents a cryptographic key protection scheme for android devices which prevents FROST from acquiring the key of AES by changing storage location of the key in memory. The storage location of the key is switched to the fixed position where command line parameters will be stored when android boots. Therefore, the key will be covered by command line parameters while the system reboots, which negates FROST from obtaining the key. Compared with the popular CPU-bound encryption methods, our method has less impact on encryption efficiency and employs no additional storage resources.
机译:随着基于事物和云计算互联网的应用程序的繁荣,隐私问题一直吸引了很多关注。虽然越来越多的充分磁盘加密(FDE)显着妨碍了隐私泄漏和数字取证,但是提出了一种冷启动攻击,因为提出了一种扰乱电话(FROST)的法医恢复,这是一种法医工具。存储在移动设备中的加密密钥倾向于通过霜冻获得。最近的研究结果表明了CPU绑定的加密方法来抵抗霜冻。但是,这些方法完全在CPU寄存器上执行AES加密,其优势来自加密速度的成本。因此,本文介绍了Android设备的加密密钥保护方案,其防止霜冻通过在内存中更改密钥的存储位置来获取AE的键。键的存储位置切换到固定位置,当Android靴子时将存储命令行参数。因此,该密钥将被命令行参数覆盖,而系统重新启动,则会否定霜冻从获取密钥。与流行的CPU绑定加密方法相比,我们的方法对加密效率的影响较小,而且没有使用额外的存储资源。

著录项

  • 来源
    《Cluster computing》 |2017年第3期|共10页
  • 作者单位

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

    Beijing Inst Technol Sch Comp Sci &

    Technol Beijing 100081 Peoples R China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 分子生物学;
  • 关键词

    Key protection; Anti-forensics; Android; Cold boot attacks; AES; FDE;

    机译:关键保护;反上取证;Android;冷启动攻击;AES;FDE;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号