Home / Series / Chaos Communication Congress / Aired Order / Season 34 / Episode 15

Squeezing a key through a carry bit

Speaker: Filippo Valsorda The Go implementation of the P-256 elliptic curve had a small bug due to a misplaced carry bit affecting less than 0.00000003% of field subtraction operations. We show how to build a full practical key recovery attack on top of it, capable of targeting JSON Web Encryption.

English
  • Originally Aired December 27, 2017
  • Runtime 60 minutes
  • Production Code 9021
  • Created December 27, 2017 by
    Administrator admin
  • Modified December 27, 2017 by
    Administrator admin