Appl Modern Cryptography
Appl Modern Cryptography
Appl Modern Cryptography
Cryptography
Bruce Schneier
Counterpane Systems
101 East Minnehaha Parkway, Minneapolis, MN 55419
Phone: (612) 823 1098; Fax: (612) 823-1590
[email protected]
http://www.counterpane.com
Black Hat 99
Las Vegas, NV7 July 1999
Introduction
Outline
10
11
12
13
14
Bad Randomization
Session keys.
Seeds for generating public keys.
Random values for digital signatures.
Protocol nonces.
Cult of Mathematics
17
19
21
22
23
25
Reliance on User-Remembered
Secrets
26
Reliance on User-Remembered
Secrets (cont.)
27
28
29
Weaknesses in Authentication
Infrastructure
Weaknesses in Authentication
Infrastructure (cont.)
31
Weaknesses in Authentication
Infrastructure (cont.)
32
35
Automated Attacks
36
37
40
41
Poor Forensics
42
43
44