Re: New Timing Attack on OpenSSL ECDSA

2011-05-25 Thread David McGrew
Hi John, thanks for forwarding. There has been a short thread on this on attack-interest yesterday and today. The way that these timing attacks work is that the attacker will time a lot of crypto operations (in this case the ECDSA signing operation) and then exploit the fact that the

RE: New Timing Attack on OpenSSL ECDSA

2011-05-25 Thread Paul Suhler
the World's Most Important Data. Yours.(tm) From: owner-openssl-...@openssl.org [mailto:owner-openssl-...@openssl.org] On Behalf Of David McGrew Sent: Wednesday, May 25, 2011 8:25 AM To: John Foley Cc: openssl-dev@openssl.org Subject: Re: New Timing Attack on OpenSSL ECDSA Hi John

Re: New Timing Attack on OpenSSL ECDSA

2011-05-25 Thread Mounir IDRASSI
: New Timing Attack on OpenSSL ECDSA Hi John, thanks for forwarding. There has been a short thread on this on attack-interest yesterday and today. The way that these timing attacks work is that the attacker will time a lot of crypto operations (in this case the ECDSA signing operation