首页> 外国专利> Avoiding padding oracle attacks

Avoiding padding oracle attacks

机译:避免填充oracle攻击

摘要

A method to prevent information leakage in a cryptographic protocol is implemented in a network device. The method implements an error message processing strategy to mask information otherwise useful to an attacker and that has been generated (by decryption processes) as a consequence of an attacker's exploit. The technique avoids information leakage associated with a padding oracle attack. In one aspect each error message (irrespective of its content) is replaced with a generic error message so that the attacker does not obtain the specific error message content(s) that might otherwise provide useful information. In addition to masking the error message content, the technique preferably implements a “delay” policy that delays the transmission of particular error messages (or message types) to hide (from the attacker's point-of-view) whether a particular error message is relevant to (or a consequence of) the attacker's exploit.
机译:在网络设备中实现了一种防止密码协议中的信息泄漏的方法。该方法实现了错误消息处理策略,以掩盖对于攻击者有用的信息,并且该信息由于攻击者的利用已经生成(通过解密过程)。该技术避免了与填充预言攻击相关的信息泄漏。一方面,每个错误消息(无论其内容如何)都被通用错误消息替换,以使攻击者无法获得否则可能提供有用信息的特定错误消息内容。除了掩盖错误消息内容之外,该技术还优选实施“延迟”策略,该策略延迟特定错误消息(或消息类型)的传输以隐藏(从攻击者的角度来看)特定错误消息是否相关(或由于)攻击者的利用。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号