3 ms·
You seems to have read the second paper which got published on the same topic shortly after this work was presented at FDTC. However both papers are about the s
by Lery 9y ago
You seems to have read the second paper which got published on the same topic shortly after this work was presented at FDTC. However both papers are about the same kind of fault attacks. And since you mention playing around, the first paper and the blog post here also provide some python code for you to play with bit flips.
Regarding the IOT setup, I know first hand that Nest products are trying very hard to be secure even in case of physical possession. Especially on the firmware signature verification part. But they rely on some fun post-quantum scheme, not on EdDSA.
It's true that in the end it all boils down to your threat model, but I bet smartcard producers are glad someone researched this before they got on the EdDSA train.
- qazitory 9y agoNest products are using hash-based signatures?
- lvh 9y agoCan you elaborate on the Nest part? How do fault attacks apply to firmware verification?
- floodyberry- 9y ago> but I bet smartcard producers are glad someone researched this before they got on the EdDSA train. If the only thing controlling whether they implement something is if they can find negative results on google, I don't think they'll be glad for very long.