首页> 外文期刊>International Journal of Information Security >Networked cryptographic devices resilient to capture
【24h】

Networked cryptographic devices resilient to capture

机译:网络加密设备可灵活捕获

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

We present a simple technique by which a device that performs private key operations (signatures or decryptions) in networked applications and whose local private key is activated with a password or PIN can be immunized to offline dictionary attacks in case the device is captured. Our techniques do not assume tamper resistance of the device but rather exploit the networked nature of the device in that the device's private key operations are performed using a simple interaction with a remote server. This server, however, is untrusted–its compromise does not reduce the security of the device's private key unless the device is also captured–and need not have a prior relationship with the device. We further extend this approach with support for key disabling, by which the rightful owner of a stolen device can disable the device's private key even if the attacker already knows the user's password.
机译:我们提出了一种简单的技术,通过该技术,可以在网络应用程序中执行私钥操作(签名或解密)并且使用密码或PIN激活其本地私钥的设备免遭离线字典攻击,以防设备被捕获。我们的技术不假定设备具有防篡改功能,而是利用设备的联网特性,因为设备的私钥操作是通过与远程服务器的简单交互来执行的。但是,此服务器是不受信任的-它的妥协不会降低设备私钥的安全性,除非还捕获了该设备-并且不需要与该设备具有事先关系。我们进一步扩展了此方法的支持范围,即禁用密钥,即使攻击者已经知道用户的密码,被盗设备的合法所有者也可以禁用该设备的私钥。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号