Seminar, 13th February 2001


Speaker:
Mike Bond, University of Cambridge

Date:
Tuesday 13th February 2001 at 16:15

Place:
Room TP4, Computer Laboratory

Title:
ATTACKS ON CRYPTOPROCESSOR TRANSACTION SETS


Attacks are presented on the IBM 4758 CCA (the first ever security module to have achieved all round FIPS140-1 Level 4 certification) and the Visa Security Module. Two new attack principles are demonstrated. Related key attacks use known or chosen differences between two cryptographic keys. Data protected with one key can then be abused by manipulation using the other key. Meet in the middle attacks work by generating a large number of unknown keys of the same type, thus reducing the key space that must be searched to discover the value of one of the keys in the type. Design heuristics are presented to avoid these attacks and other common errors.


Seminar, 13th February 2001 / Ross.Anderson@cl.cam.ac.uk
Last updated: 16th January 2001