Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
powerbutton65
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
powerbutton65
6y ago
Like it or not they are technically correct. SHA-256 is a one way compression and furthermore the PoW for bitcoin doesn't require a match for the entire hash. There's loads of examples of this in the bitcoin network whenever ther
2.
▲
UK based chip startup Graphcore reaches unicorn status at $1.7B valuation
(graphcore.ai)
2 points
by
powerbutton65
8y ago
|
0 comments
3.
▲
by
powerbutton65
8y ago
No worries :) I've moved to silicon design and verification so quite a stretch from my previous work!
4.
▲
by
powerbutton65
8y ago
Unfortunately that is the one thing I can't really answer! I moved out of this space shortly after we published this work so I'm not currently up to date with the research in the area. That said if you like this sort of work, you
5.
▲
by
powerbutton65
8y ago
Never thought I'd end up on here! I'm one of the authors on the paper, it's few years old now but I'm happy to try answer any questions related to the work.
6.
▲
Physical side-channel key extraction from Intel AES-NI instructions [pdf]
(eprint.iacr.org)
2 points
by
powerbutton65
10y ago
|
0 comments
7.
▲
by
powerbutton65
11y ago
Yes, this exactly the basis of differential power analysis. This was first demonstrated back in 1999 by Kocher et al [0] [0]: https://www.cis.upenn.edu/~nadiah/courses/cis800-02-f13/read...
8.
▲
by
powerbutton65
11y ago
The authors cite some EM side-channel attacks in the paper (eg [0,1]) [0]: https://eprint.iacr.org/2015/561.pdf [1]: https://eprint.iacr.org/2015/727.pdf
9.
▲
by
powerbutton65
11y ago
Constant time only reduces the chance of 'simple power analysis' (SPA) which is predominantly what the authors perform ('simple' is misleading but it's just the name for it). There are a number of works that perform
10.
▲
by
powerbutton65
11y ago
Valid question. You shift the burden from being a cryptography related problem to signal processing related problem.
11.
▲
by
powerbutton65
11y ago
The Apple hardware perspective is mostly just a gimmick. The side-channel leaks are a direct result of the ARM IP core (also not Apple proprietary). This is arguably old news, people have been attacking ARM based mobile devices for years no
12.
▲
by
powerbutton65
11y ago
The paper serves to demonstrate that electromagnetic side-channel attacks on mobile devices (even almighty Apple stuff) are feasible. ECDSA is just an example they chose. Also, Curve25519 is only side-channel resistant to timing side-chan
13.
▲
by
powerbutton65
11y ago
It's great to see this kind of work published. It is worth noting however that the US government is well aware of these kind of attacks. The Snowdon docs show that the CIA have been performing side-channel analysis since 2012 on the Ip