Researchers find weakness in RSA

Nothing is perfect. The most common digital security technique used to protect both media copyright and Internet communications has a major weakness. RSA authentication is a popular encryption method. he RSA algorithm gives security under the assumption that as long as the private key is private, you can’t break in unless you guess it. Researchers find weakness in common digital security system tells that University of Michigan computer scientists have found they could foil the security system by varying the voltage supply to the holder of the “private key”.

They carefully manipulated the operating voltage of the computer electronics (FPGA). This causes it to make small mistakes in its communications with other clients (if it would make big mistakes it would crash). These faults reveal small pieces of the private key, and enough faults allows the researchers reconstruct the key offline. It takes considerable amount of time (100 hours) and many servers (

For more details read the whole FaultBased Attack of RSA Authentication paper. It describes an end-to-end attack to a RSA authentication scheme on a complete FPGA-based SPARC computer system and demonstrates that a fault-based attack on the RSA algorithm is possible.

It is highly unlikely that a hacker could use this approach on a large institution, so the risk of this to you could be pretty low. The researches say that a common cryptographic technique called “salting” that changes the order of the digits in a random way every time the key is requested, can help to fix this problem. There could also be other solutions as well (maybe better hardware more immune to error).

rsa_attack

Image source: http://www.eecs.umich.edu/~valeria/research/publications/DATE10RSA.pdf

 

5 Responses to “Researchers find weakness in RSA”

  1. teeth whitening says:

    I can’t say I completely agree regarding certain issues, but you certainly have a unique perspective. Anyway, I enjoy the quality you add to the blogosphere and that this isn’t just another abandoned, made-for-adsense site! Take care…

  2. generic prescription says:

    In truth, immediately i didn’t understand the essence. But after re-reading all at once became clear.

  3. Bottomless says:

    ЎHola!
    No estб seguro de que esto es verdad:), pero gracias a un cargo.
    Gracias

    Bottomless

  4. I really enjoyed visiting your site, and it looks great. If you get a chance you should check my site as well. I hope you have a nice day!

  5. Hi, usually I never comment on personal sites but right now I’m afraid I absolutely have to do so. The other day I decided to install the newest version of the Safari Internet browser and this personal blog doesn’t display properly ever since. Right now your sidebar hides part of the text and I am unable read it. I had the same issue with my herbal incense reviews Internet blog and I was able to fix it by editing the PHP code. Can you fix it? Thank you! Sorry for my bad English, it’s obviously not my mother language as you understand. I am from Norway :)

Leave a Reply


korku filmleri film izle seyret komedi filmleri aksiyon filmleri 2012 filmleri kemal sunal filmleri romantik komedi izle macera filmleri komedi filmleri