New Generation Computer Code Breaking Attacks /New-Generation-Code-Breaking.html External (proximal) attacks on the RSA cypher have been achieved, with cracking of the 1024 bit private key being achieved in hours. How? James Marinero New generation computer attack fault based cryptographic attack computer code breaking electromagnetic pulse gun RSA key 1024 bit private key cracked 1024 bit private key james marinero articles var bookmarkurl=window location href var bookmarktitle= function bookmark { if document all window external addfavorite bookmarkurl,bookmarktitle } article feature back | print | bookmark new generation computer code breaking attacks fault fault-based external assaults recent research has shown that common but highly secure public/private key cryptographic methods are vulnerable to fault-based attack yes, a lot of long words, but read on the words basically mean that it is now potentially possible to crack the security that we rely on daily the security that banks offer for online banking, the security that we rely on for business emails, the security packages that we buy off the shelf in our pc supermarkets how can that be well, various teams of researchers have been working on this, but the first successful test attacks were by a team at the university of michigan they didn&rsquo t need to know about the computer hardware &ndash all they needed to do was to create transient i e temporary or fleeting faults in a computer whilst it was processing secure data then, by monitoring the output and comparing that with what was expected, they identified incorrect outputs with the faults they created from this, using high power processing, they could work out what the &lsquo data&rsquo was that is, they could break the code modern security one proprietary version is known as rsa relies on two keys &ndash a public key and a private key these keys are 1024 bit 128 bytes and use massive prime numbers which interact now the problem is just like that of cracking a safe &ndash no safe is absolutely secure, but the better the safe, then the longer it takes to crack it until now, it has been assumed that security based on the 1024 bit key would take too long to crack we are talking thousands of years , even with all the computing power on the planet the latest research has shown that it can be done in a matter of days, and even quicker if more computing power is used how do they crack it modern computer memory and cpu chips do not run smoothly all the time, but they are designed to self-correct when, for example, a cosmic ray disrupts a memory location in the chip error correcting memory ripples in the computer&rsquo s power supplies can also cause disruptions in the chip, and that was the basis of the test attack in the university of michigan note that the test team did not need access to the internals of the computer, only to be &lsquo in proximity&rsquo to it, i e to affect the power supply now, one way of protecting against this would be to increase the key size to say 2048 bits that would require a knowledge of prime numbers which is currently beyond us there is no overall pattern of prime numbers, no formula which maps them out they have to be discovered, by trial and error computing it is still one of the major puzzles of modern mathematics have you heard about the emp effect of a nuclear explosion an emp electromagnetic pulse is a giant ripple in the earth&rsquo s innate electromagnetic field which may be widespread or relatively localised depending on the size and precise nature of the bomb used an emp would wreck electricity supply lines and non-hardened specially protected radio and copper wire communications such pulses could also be generated on a much smaller scale by an electromagnetic pulse gun, and such a pulse gun could be used to cause the transient chip faults that can be monitored to crack encryption there is one final twist the level of faults to which chips are susceptible depends on the quality of their manufacture, and no chip is perfect the flip side is that chips can be manufactured to offer higher fault rates, by injecting contaminants during production chips with higher fault rates could speed up the code-breaking process cheap chips, slightly more susceptible to transient faults than the average, manufactured on a huge scale, could become pervasive in world computers it sounds like conspiracy theory, but some countries china for example plan on a very long time scale china also produces memory chips and computers in vast quantities it&rsquo s an interesting projection, makes you think i worked out a way that this proximal decoding could be done - it s one of the supporting sub-plots in gate of tears c 2011 james marinero james marinero june 30, 2011 james marinero is a professionally qualified it consultant with over 30 years experience in the information systems industry ↑ back to top