• DocumentCode
    3034968
  • Title

    A Formal Theory of Key Conjuring

  • Author

    Cortier, Veronique ; Delaune, Stephanie ; Steel, Graham

  • Author_Institution
    CNRS & INRIA, Orsay
  • fYear
    2007
  • fDate
    6-8 July 2007
  • Firstpage
    79
  • Lastpage
    96
  • Abstract
    Key conjuring is the process by which an attacker obtains an unknown, encrypted key by repeatedly calling a cryptographic API function with random values in place of keys. We propose a formalism for detecting computationally feasible key conjuring operations, incorporated into a Dolev-Yao style model of the security API. We show that security in the presence of key conjuring operations is decidable for a particular class of APIs, which includes the key management API of IBM´s common cryptographic architecture (CCA).
  • Keywords
    application program interfaces; security of data; common cryptographic architecture; cryptographic API function; formal theory; key conjuring; Algorithm design and analysis; Computer architecture; Cryptographic protocols; Cryptography; Hardware; Informatics; Secure storage; Security; Steel;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Foundations Symposium, 2007. CSF '07. 20th IEEE
  • Conference_Location
    Venice
  • ISSN
    1940-1434
  • Print_ISBN
    0-7695-2819-8
  • Type

    conf

  • DOI
    10.1109/CSF.2007.5
  • Filename
    4271642