3 ms·
And when one of those keys gets out? (Which will happen)
by LocalPCGuy 7y ago
And when one of those keys gets out? (Which will happen)
- RcouF1uZ4gsC 7y agoThe whole point of an HSM is that those keys cannot get out.
- w3rhn2j34oh5o 7y agoThe point, yes, but it is not the case in reality: 2015: https://cryptosense.com/blog/the-untold-story-of-pkcs11-hsm-vulnerabilities/ https://cryptosense.com/blog/the-untold-story-of-pkcs11-hsm-... 2017: https://cryptosense.com/blog/infineon-rsa-key-generation-bug-how-the-attack-works-and-what-to-do/ https://cryptosense.com/blog/infineon-rsa-key-generation-bug... 2019: https://cryptosense.com/blog/how-ledger-hacked-an-hsm/ https://cryptosense.com/blog/how-ledger-hacked-an-hsm/ Stop trying to build scenarios where key escrow solutions are technically sound. They are not. This is an intractable problem that is not solved by these half cocked technical measures. Key escrow cannot by definition be secure, and wasting time trying to invent solutions just confuses the matter, weakens security and leaves us all vulnerable. Basically, Sssssssh, or the politicians might actually believe this fantasy.
- zeveb 7y agoThe HSM can get out, by being stolen.
- ska 7y ago> The whole point of an HSM is that those keys cannot get out. On paper, sure. In practice, not so much.
- readams 7y agoThere is basically no limit to the amount of money that it would be worth paying for a government to get those HSMs, since they could decrypt nearly all the world's communication. And the country in which they are hosted is included in the threat model. I would not want to be the one tasked with attempting to keep it secure.