1995-12-17 - Re: kocher’s timing attack

Header Data

From: Jiri Baum <jirib@sweeney.cs.monash.edu.au>
To: cypherpunks@toad.com
Message Hash: be6a3328ccab5f4b8809a2fc9a6585e23a4239a8cf37c1fd11d8beec5535d439
Message ID: <199512170409.PAA22283@sweeney.cs.monash.edu.au>
Reply To: <199512150203.VAA00869@opine.cs.umass.edu>
UTC Datetime: 1995-12-17 12:36:03 UTC
Raw Date: Sun, 17 Dec 1995 20:36:03 +0800

Raw message

From: Jiri Baum <jirib@sweeney.cs.monash.edu.au>
Date: Sun, 17 Dec 1995 20:36:03 +0800
To: cypherpunks@toad.com
Subject: Re: kocher's timing attack
In-Reply-To: <199512150203.VAA00869@opine.cs.umass.edu>
Message-ID: <199512170409.PAA22283@sweeney.cs.monash.edu.au>
MIME-Version: 1.0
Content-Type: text/plain


-----BEGIN PGP SIGNED MESSAGE-----

Hello cypherpunks@toad.com (Cypherpunks Mailing List)
  and futplex@pseudonym.com (Futplex)

Futplex writes:
... [in reply to others] ...
> You are overlooking the main point that this is a _timing_ attack. Unless
...
> Just beware of
> people with extremely precise stopwatches at key signing parties ;>

Hold on, you *never* sign directly at key signing parties!

Never take your key where:
  - it could be stolen
  - you suspect others may wish to influence your signing
  - somebody might spy your passphrase (hidden cameras in ceiling)

You take fingerprints, and sign when you get back home.


Re the timing subject, do you think it'd make a good party trick?

  * Think of a number between 20 and 30.
  * for 4-5 numbers a, "Multiply the orignal number by <a>"
  * the number you are thinking of is <number>

Now, anybody have statistics for mental arithmetic?

Jiri
- --
If you want an answer, please mail to <jirib@cs.monash.edu.au>.
On sweeney, I may delete without reading!
PGP 463A14D5 (but it's at home so it'll take a day or two)
PGP EF0607F9 (but it's at uni so don't rely on it too much)

-----BEGIN PGP SIGNATURE-----
Version: 2.6.2i

iQCVAwUBMNOXuyxV6mvvBgf5AQFEtgP/Wf5I205BAuqiuSEwkslbGP0nwV8ylA0G
nnmS1FFJjFkkfICxEp+/C0iQqLcYpp1ytio+yyWmAE+nDEomcmnQb40ElGjYB/2m
btP6cT9ozfM8lXY6Tfn+G+kduZWfpKyngoMDSPzYSNAuizD5qyUodYJXyjfz4y0p
BoXBMwB9IUA=
=EpU4
-----END PGP SIGNATURE-----





Thread