3 ms·
Hi all, I recently finished up my Master’s thesis and thought the topic might be of interest to some HN readers. Happy to answer any questions!
by bkettle 3y ago
Hi all,
I recently finished up my Master’s thesis and thought the topic might be of interest to some HN readers. Happy to answer any questions!
- deleted 3y ago[deleted]
- dwaite 3y agoWas this specifically around privilege separation, or was there also effort into preventing side-channel attacks via things like timing and power draw measurements? Did you put thought into e.g. firmware updates of these, or even the ability to put additional sandboxed applications on a key with isolated views of state/storage?
- bkettle 3y agoThis was specifically focusing on privilege separation---we don't provide any protection against timing or other side channels, though this work could be combined with existing work around constant-time crypto, etc to get some assurance about side channels. No specific thought about firmware updates. In the brainstorming phase we were thinking about a multi-application model indeed---something like the Ledger Nano but using Wasm for isolation between applications instead of their OS. For this project we decided to try out the privilege separation angle, but I think the multi-application idea would be interesting to explore too.