• Cite Icon77
  • https://doi.org/10.1007/978-3-540-45238-6_33Copy DOI Icon

Attacking RSA-Based Sessions in SSL/TLS

  • Jan 1, 2003
  • Vlastimil Klíma +2 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

In this paper we present a practically feasible attack on RSA-based sessions in SSL/TLS protocols. We show that incorporating a version number check over PKCS#1 plaintext used in the SSL/TLS creates a side channel that allows an attacker to invert the RSA encryption. The attacker can then either recover the premaster-secret or sign a message on behalf of the server. Practical tests showed that two thirds of randomly chosen Internet SSL/TLS servers were vulnerable. The attack is an extension of Bleichenbacher’s attack on PKCS#1 (v. 1.5). We introduce the concept of a bad-version oracle (BVO) that covers the side channel leakage, and present several methods that speed up the original algorithm. Our attack was successfully tested in practice and the results of complexity measurements are presented in the paper.

Similar Papers
  • Book Chapter
  • Citations3

My Traces Learn What You Did in the Dark: Recovering Secret Signals Without Key Guesses

  • Jan 01, 2017
  • Si Gao +5
  • Research Article
  • Citations21

Side channels as building blocks

  • Sep 14, 2012
  • Journal of Cryptographic Engineering
  • Markus Kasper +6
  • Research Article
  • Citations31

Preventing side-channel effects in continuous-variable quantum key distribution

  • Mar 08, 2016
  • Physical Review A
  • Ivan Derkach +2
  • Research Article
  • Citations5

Security-Aware Task Mapping Reducing Thermal Side Channel Leakage in CMPs

  • Jan 01, 2019
  • IEEE Transactions on Industrial Informatics
  • Shize Guo +5
  • Conference Article
  • Citations4

Side Channel Leakage Assessment Strategy On Attack Resistant AES Architectures

  • Jul 01, 2020
  • Shabbir Darbar +2
  • Conference Article
  • Citations10

Reuse-trap: Re-purposing Cache Reuse Distance to Defend against Side Channel Leakage

  • Jul 01, 2020
  • Hongyu Fang +2
  • Supplementary Content

Provable Secure Countermeasures Against Side-Channel Attacks

  • May 27, 2021
  • TUbilio (Technical University of Darmstadt)
  • Clara Paglialonga
  • Conference Article

Short Paper: Analysis of Vivado implementation strategies regarding side-channel leakage for FPGA-based AES implementations

  • Nov 02, 2024
  • Ali Asghar +2
  • PDF
  • Research Article
  • Citations120

A Comprehensive Study of Deep Learning for Side-Channel Analysis

  • Nov 19, 2019
  • HAL (Le Centre pour la Communication Scientifique Directe)
  • Loïc Masure +2
  • Conference Article
  • Citations27

Towards Efficient and Automated Side Channel Evaluations at Design Time

  • Sep 10, 2018
  • Kalpa publications in computing
  • Danilo Šijačić +4
  • Book Chapter
  • Citations2

Integrating Side Channel Security in the FPGA Hardware Design Flow

  • Jan 01, 2021
  • Alessandro Barenghi +4
  • Research Article
  • Citations3

Physical Time-Varying Transfer Function as Generic Low-Overhead Power-SCA Countermeasure

  • Jan 01, 2023
  • IEEE Open Journal of Circuits and Systems
  • Archisman Ghosh +2
  • Conference Article
  • Citations1

Side Channel Leakage Alignment Based on Longest Common Subsequence

  • Dec 01, 2020
  • Anni Jia +2
  • Conference Article
  • Citations4

Side-Channel Leakage Tolerant Architectures

  • Jan 01, 2006
  • K Tiri +2
  • PDF
  • Research Article
  • Citations95

A Comprehensive Study of Deep Learning for Side-Channel Analysis

  • Nov 19, 2019
  • IACR Transactions on Cryptographic Hardware and Embedded Systems
  • Loïc Masure +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.