Forum: PS3 Technical Development - Topics relating to Playstation 3 Technical development ONLY! Read and discuss the latest Cobra USB updates, tutorials and explanations or find out about bluray drive bypass firmwares plus much more.


The above video goes away if you are a member and logged in, so log in now!




 
Would you like to get all the new info from
PSX-Scene in your email each day?




Want to learn more about the team keeping you up to date with the latest scene news?

Read about them now!

Check out our Developer bios, too!

 


User Tag List

Like Tree1Likes
  • 1 Post By mathieulh

Thread: a (new) approach for breaking crypto?
  

Results 1 to 10 of 10
  1. #1 a (new) approach for breaking crypto? 
    usr4da3 is offline Registered User
    Join Date
    Jan 2011
    Posts
    2
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    0
    Reply With Quote  

  2. #2  
    Join Date
    Sep 2010
    Posts
    85
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    36
    Quote Originally Posted by usr4da3 View Post
    herp derp, good idea. But i prefer we brute force our way through everything
    Reply With Quote  

  3. #3  
    ModIT is offline Member
    Join Date
    Sep 2010
    Posts
    856
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    45
    Interesting approach - thing is : how long did it take to calculate the key..


    I'm not an expert in crypto, but if this actually works (in a decent time), it could lead to big fallout
    But they are saying the fault is in OpenSSL and not in generating the ECDSA, so for grabbing the ps3 keys
    it is not relevant?!
    Reply With Quote  

  4. #4  
    usr4da3 is offline Registered User
    Join Date
    Jan 2011
    Posts
    2
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    0
    As i understood, OpenSSL was the subject for research but the core problem is much more general. I don't think all the other ECDSA Implementations are paying attention on constant time execution.

    ...and if they managed to get the priv key of a TLS server, it worked (in a decent time)
    Reply With Quote  

  5. #5  
    ModIT is offline Member
    Join Date
    Sep 2010
    Posts
    856
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    45
    But they're saying OpenSSL is faulty not ECDSA itself...

    Where is math, when you need a crypto expert?
    Reply With Quote  

  6. #6  
    mathieulh is offline Member
    Join Date
    Jun 2008
    Posts
    452
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    10
    Likes Received
    285
    Quote Originally Posted by ModIT View Post
    But they're saying OpenSSL is faulty not ECDSA itself...

    Where is math, when you need a crypto expert?
    This is an openssl implementation weakness allowing for a timing attack, it's not an ECC weakness on its own and thus unless the way the ECDSA check is implemented on the ps3 allows for timing attacks this won't work.

    Which means it has to be investigated but don't get your hopes up.
    Deeked likes this.
    Reply With Quote  

  7. #7  
    RatAndDragon is offline Member
    Join Date
    Sep 2010
    Posts
    348
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    4
    Quote Originally Posted by mathieulh View Post
    This is an openssl implementation weakness allowing for a timing attack, it's not an ECC weakness on its own and thus unless the way the ECDSA check is implemented on the ps3 allows for timing attacks this won't work.

    Which means it has to be investigated but don't get your hopes up.
    Given that the crypto library on the PS3 is RSA's version of libcrypto (Eric Young went to work for them), it's a real possibility that it could suffer from some of the same weaknesses as OpenSSL.

    But only a possibility.

    --EDIT--

    Of course for all I know that's only used for SSL/TLS comms and is nothing to do with the various loaders and their checks, so I may well be talking out of my arse.
    Last edited by RatAndDragon; 05-25-2011 at 01:11 AM.
    Reply With Quote  

  8. #8  
    ModIT is offline Member
    Join Date
    Sep 2010
    Posts
    856
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    45
    Try it - if it really works, i'm sure scienctific magazines would publish a paper about it.
    Reply With Quote  

  9. #9  
    GhostOfMork is offline Member
    Join Date
    Jun 2011
    Posts
    60
    Downloads
    2
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    5
    Likes Received
    2
    Quote Originally Posted by modshroom128 View Post
    herp derp, good idea. But i prefer we brute force our way through everything
    I was thinking the same thing in relation to this;

    Whitepixel v2: configurable charset, higher performance (33.1 billion password/sec!) - Zorinaq
    Reply With Quote  

  10. #10  
    AlternateZ is offline Registered User
    Join Date
    May 2011
    Posts
    2
    Downloads
    0
    Uploads
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    Likes Given
    0
    Likes Received
    0
    The easiest solution is obviously to break into Sony's offices and steal the encryption keys

    Or blackmail an employee to do so.
    Reply With Quote  

Posting Permissions
  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •