RSA Key Extraction via Low-Bandwidth Acoustic Cryptanalysis

Whoa, holy fuck. Thoughts, folks?

http://www.cs.tau.ac.il/~tromer/acoustic/

That, combined with a possible audio vector for computer virus transmission, makes it look like a Faraday cage is no longer enough. To be secure, PCs now need white noise generators, as well.

I’m more & more tempted to go back to dog-on-a-string, lives in a bus crusty every day…

Amazing work, but I am still skeptical that this would work in any kind of real world scenario. Nice that they worked with the GnuPG authors to introduce software enhancements that make this attack harder – which as they note in the article, means they need low level access to the encryption code routines for this attack to be viable at all.

1 Like

This topic was automatically closed after 1156 days. New replies are no longer allowed.