arrow
Return

Blockchain-based immunization against kleptographic attacks

delete2024-06-06
delete0
PRE
AI
C
Changsong Jiang
C
Chunxiang Xu *
J
Jie Chen
陈克非 cover
陈克非 (Kefei Chen)
DOI:10.1007/s11432-023-3883-4delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Adversarial implementations of cryptographic primitives called kleptographic attacks cause the leakage of secret information. Subliminal channel attacks are one of the kleptographic attacks. In such attacks, backdoors are embedded in implementations of randomized algorithms to elaborately control randomness generation, such that the secrets will be leaked from biased outputs. To thwart subliminal channel attacks, double-splitting is a feasible solution, which splits the randomness generator of a randomized algorithm into two independent generators. In this paper, we instantiate double-splitting to propose a secure randomness generation algorithm dubbed SRG using two physically independent generators: ordinary and public randomness generators. Based on public blockchains, we construct the public randomness generator, which can be verified publicly. Hashes of a sufficient number of consecutive blocks that are newly confirmed on a blockchain are used to produce public randomness. In SRG, outputs from the two generators are taken as inputs of an immunization function. SRG accomplishes immunization against subliminal channel attacks. Additionally, we discuss the application strategies of SRG for symmetric and public-key encryption.
Keywords:
kleptographic attacks
subliminal channel
blockchain
immunization
randomized algorithm

Journal

Science China Information Sciences cover
Science China Information Sciences
IF:
7.6
Papers:
4.9K
Citations:
8.9K

Organization

H
hangzhou normal university
Scholars:
1.3W
Papers: 7.8K
Citations: 8