DocumentCode :
3034968
Title :
A Formal Theory of Key Conjuring
Author :
Cortier, Veronique ; Delaune, Stephanie ; Steel, Graham
Author_Institution :
CNRS & INRIA, Orsay
fYear :
2007
fDate :
6-8 July 2007
Firstpage :
79
Lastpage :
96
Abstract :
Key conjuring is the process by which an attacker obtains an unknown, encrypted key by repeatedly calling a cryptographic API function with random values in place of keys. We propose a formalism for detecting computationally feasible key conjuring operations, incorporated into a Dolev-Yao style model of the security API. We show that security in the presence of key conjuring operations is decidable for a particular class of APIs, which includes the key management API of IBM´s common cryptographic architecture (CCA).
Keywords :
application program interfaces; security of data; common cryptographic architecture; cryptographic API function; formal theory; key conjuring; Algorithm design and analysis; Computer architecture; Cryptographic protocols; Cryptography; Hardware; Informatics; Secure storage; Security; Steel;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer Security Foundations Symposium, 2007. CSF '07. 20th IEEE
Conference_Location :
Venice
ISSN :
1940-1434
Print_ISBN :
0-7695-2819-8
Type :
conf
DOI :
10.1109/CSF.2007.5
Filename :
4271642
Link To Document :
بازگشت