KR101712850B1 - 화이트 박스로부터 암호화설비를 보호하는 시스템 및 그 방법 - Google Patents
화이트 박스로부터 암호화설비를 보호하는 시스템 및 그 방법 Download PDFInfo
- Publication number
- KR101712850B1 KR101712850B1 KR1020127026744A KR20127026744A KR101712850B1 KR 101712850 B1 KR101712850 B1 KR 101712850B1 KR 1020127026744 A KR1020127026744 A KR 1020127026744A KR 20127026744 A KR20127026744 A KR 20127026744A KR 101712850 B1 KR101712850 B1 KR 101712850B1
- Authority
- KR
- South Korea
- Prior art keywords
- signature
- integer
- private key
- transformed
- operand
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/002—Countermeasures against attacks on cryptographic mechanisms
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/30—Public key, i.e. encryption algorithm being computationally infeasible to invert or user's encryption keys not requiring secrecy
- H04L9/3066—Public key, i.e. encryption algorithm being computationally infeasible to invert or user's encryption keys not requiring secrecy involving algebraic varieties, e.g. elliptic or hyper-elliptic curves
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
- H04L9/3252—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures using DSA or related signature schemes, e.g. elliptic based signatures, ElGamal or Schnorr schemes
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/16—Obfuscation or hiding, e.g. involving white box
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Theoretical Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Algebra (AREA)
- Mathematical Analysis (AREA)
- Mathematical Optimization (AREA)
- Mathematical Physics (AREA)
- Pure & Applied Mathematics (AREA)
- Physics & Mathematics (AREA)
- Computing Systems (AREA)
- Storage Device Security (AREA)
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CA2010/000486 WO2011120125A1 (en) | 2010-03-31 | 2010-03-31 | System and method for protecting cryptographic assets from a white-box attack |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| KR20130024897A KR20130024897A (ko) | 2013-03-08 |
| KR101712850B1 true KR101712850B1 (ko) | 2017-03-07 |
Family
ID=44711254
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020127026744A Expired - Fee Related KR101712850B1 (ko) | 2010-03-31 | 2010-03-31 | 화이트 박스로부터 암호화설비를 보호하는 시스템 및 그 방법 |
Country Status (7)
| Country | Link |
|---|---|
| US (1) | US9009481B2 (enExample) |
| EP (1) | EP2553866B1 (enExample) |
| JP (1) | JP5697180B2 (enExample) |
| KR (1) | KR101712850B1 (enExample) |
| CN (1) | CN103081398B (enExample) |
| CA (1) | CA2792787C (enExample) |
| WO (1) | WO2011120125A1 (enExample) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20250061572A (ko) | 2023-10-27 | 2025-05-08 | 국민대학교산학협력단 | 모바일 환경에 적합한 ec-kcdsa 전자서명의 화이트박스 암호 구현 장치 및 방법 |
Families Citing this family (29)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN104396181B (zh) * | 2012-02-09 | 2018-02-23 | 爱迪德技术有限公司 | 用于生成和保护密码密钥的系统和方法 |
| EP2634993B1 (en) * | 2012-03-01 | 2017-01-11 | Certicom Corp. | Devices and methods for connecting client devices to a network |
| JP6366595B2 (ja) * | 2012-11-12 | 2018-08-01 | クリプトグラフィ リサーチ, インコーポレイテッド | 耐グリッチ性暗号離散対数ベースの署名のための方法及びシステム |
| SG10201405852QA (en) | 2014-09-18 | 2016-04-28 | Huawei Internat Pte Ltd | Encryption function and decryption function generating method, encryption and decryption method and related apparatuses |
| GB201418815D0 (en) * | 2014-10-22 | 2014-12-03 | Irdeto Bv | Providing access to content |
| DE102014016548A1 (de) * | 2014-11-10 | 2016-05-12 | Giesecke & Devrient Gmbh | Verfahren zum Testen und zum Härten von Softwareapplikationen |
| US9639674B2 (en) * | 2014-12-18 | 2017-05-02 | Nxp B.V. | Using single white-box implementation with multiple external encodings |
| EP3491600B1 (en) * | 2016-07-29 | 2023-09-13 | nChain Licensing AG | Blockchain-implemented method and system |
| EP3340094B1 (en) * | 2016-12-22 | 2021-04-28 | Mastercard International Incorporated | Method for renewal of cryptographic whiteboxes under binding of new public key and old identifier |
| CN106712965B (zh) * | 2017-01-17 | 2020-02-18 | 数安时代科技股份有限公司 | 数字签名方法、装置以及密码设备 |
| FR3063857B1 (fr) * | 2017-03-08 | 2020-02-14 | Safran Identity & Security | Procede de signature electronique d'un document avec une cle secrete predeterminee |
| EP3376705A1 (en) * | 2017-03-17 | 2018-09-19 | Koninklijke Philips N.V. | Elliptic curve point multiplication device and method in a white-box context |
| GB201707168D0 (en) * | 2017-05-05 | 2017-06-21 | Nchain Holdings Ltd | Computer-implemented system and method |
| FR3066845B1 (fr) * | 2017-05-24 | 2019-06-14 | Idemia Identity And Security | Procede de signature electronique d'un document avec une cle secrete predeterminee |
| CN109104272A (zh) * | 2017-06-20 | 2018-12-28 | 上海策链信息科技有限公司 | 私钥保存方法、系统及计算机可读存储介质 |
| US10516541B2 (en) * | 2017-09-13 | 2019-12-24 | Nxp B.V. | Nonce to message binding in digital signature generation |
| EP3493460A1 (en) * | 2017-12-01 | 2019-06-05 | Gemalto Sa | Cryptography device having secure provision of random number sequences |
| EP3493456A1 (en) | 2017-12-01 | 2019-06-05 | Gemalto Sa | Cryptography device having improved security against side-channel attacks |
| US12483397B1 (en) * | 2018-04-13 | 2025-11-25 | Hushmesh Inc. | Use of cryptographic twins for secure storage and access of entity data |
| JP7328969B2 (ja) * | 2018-12-21 | 2023-08-17 | 01 コミュニーク ラボラトリー インコーポレイテッド | 暗号システムおよび方法 |
| EP3713148B1 (en) | 2019-03-22 | 2022-08-03 | Giesecke+Devrient Mobile Security GmbH | White-box ecc implementation |
| US20220329439A1 (en) * | 2019-08-05 | 2022-10-13 | Securify Bilisim Teknolojileri Ve Guvenligi Egt. Dan. San. Ve Tic. Ltd. Sti. | Method for generating digital signatures |
| WO2021236446A1 (en) * | 2020-05-19 | 2021-11-25 | Visa International Service Association | Systems and methods for whitebox device binding |
| CN114338039B (zh) * | 2021-12-28 | 2024-07-30 | 上海市数字证书认证中心有限公司 | 白盒处理后的椭圆曲线签名方法和系统 |
| FR3133251B1 (fr) * | 2022-03-03 | 2024-03-22 | Idemia France | Procédé de signature cryptographique d’une donnée, dispositif électronique et programme d’ordinateur associés |
| CN115473633B (zh) * | 2022-08-24 | 2024-05-31 | 武汉大学 | 一种多方协同产生sm2数字签名的方法及装置 |
| WO2024072529A1 (en) * | 2022-09-30 | 2024-04-04 | Microsoft Technology Licensing, Llc | Low-cost, high-security solutions for digital signature algorithm |
| US12273462B2 (en) | 2022-09-30 | 2025-04-08 | Microsoft Technology Licensing, Llc | Low-cost, high-security solutions for digital signature algorithm |
| KR20250085322A (ko) | 2023-12-05 | 2025-06-12 | 주식회사 삼광 | 화이트박스 암호를 이용한 데이터 보호장치 |
Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20060140401A1 (en) | 2000-12-08 | 2006-06-29 | Johnson Harold J | System and method for protecting computer software from a white box attack |
| US20090094464A1 (en) | 2005-12-28 | 2009-04-09 | Yuichi Futa | Signature generating device, signature generating method and signature generating program |
| US20090252327A1 (en) | 2008-04-02 | 2009-10-08 | Mathieu Ciet | Combination white box/black box cryptographic processes and apparatus |
| US20100023771A1 (en) | 2006-11-15 | 2010-01-28 | Marinus Struik | Implicit certificate verification |
Family Cites Families (17)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN1260055A (zh) * | 1997-06-09 | 2000-07-12 | 联信公司 | 用于提高软件安全性的模糊技术 |
| EP1088420B1 (en) * | 1998-06-23 | 2007-05-02 | Microsoft Corporation | A tecnique for producing privately authenticable cryptographic signatures and for using such a signature in conjunction with a product copy |
| US7599491B2 (en) * | 1999-01-11 | 2009-10-06 | Certicom Corp. | Method for strengthening the implementation of ECDSA against power analysis |
| US6594761B1 (en) | 1999-06-09 | 2003-07-15 | Cloakware Corporation | Tamper resistant software encoding |
| US6779114B1 (en) | 1999-08-19 | 2004-08-17 | Cloakware Corporation | Tamper resistant software-control flow encoding |
| US6873706B1 (en) | 1999-09-29 | 2005-03-29 | Hitachi, Ltd. | Processing apparatus, program, or system of secret information |
| US7020778B1 (en) | 2000-01-21 | 2006-03-28 | Sonera Smarttrust Oy | Method for issuing an electronic identity |
| JP2003098962A (ja) * | 2001-09-20 | 2003-04-04 | Hitachi Ltd | 楕円曲線スカラー倍計算方法及び装置並びに記録媒体 |
| JP3676280B2 (ja) * | 2001-10-16 | 2005-07-27 | 株式会社エヌ・ティ・ティ・データ | 電子署名装置およびicカード、ならびにその電子署名プログラム |
| CA2369304A1 (en) * | 2002-01-30 | 2003-07-30 | Cloakware Corporation | A protocol to hide cryptographic private keys |
| JP2004253950A (ja) * | 2003-02-19 | 2004-09-09 | Toyo Commun Equip Co Ltd | 事前計算による電子署名高速生成方法および装置 |
| US7966499B2 (en) | 2004-01-28 | 2011-06-21 | Irdeto Canada Corporation | System and method for obscuring bit-wise and two's complement integer computations in software |
| CA2573101C (en) * | 2004-07-23 | 2014-06-10 | Data Security Systems Solutions Pte Ltd | System and method for implementing digital signature using one time private keys |
| DE102005024609A1 (de) * | 2005-05-25 | 2006-11-30 | Siemens Ag | Bestimmung einer modularen Inversen |
| CA2542556C (en) * | 2005-06-03 | 2014-09-16 | Tata Consultancy Services Limited | An authentication system executing an elliptic curve digital signature cryptographic process |
| CN101547099B (zh) * | 2009-05-07 | 2011-08-03 | 张键红 | 基于椭圆曲线的自认证签名方法与装置 |
| JP5446678B2 (ja) * | 2009-09-29 | 2014-03-19 | 富士通株式会社 | 楕円曲線暗号演算装置及び方法 |
-
2010
- 2010-03-31 US US13/637,811 patent/US9009481B2/en active Active
- 2010-03-31 EP EP10848644.0A patent/EP2553866B1/en active Active
- 2010-03-31 WO PCT/CA2010/000486 patent/WO2011120125A1/en not_active Ceased
- 2010-03-31 CA CA2792787A patent/CA2792787C/en not_active Expired - Fee Related
- 2010-03-31 JP JP2013501569A patent/JP5697180B2/ja not_active Expired - Fee Related
- 2010-03-31 CN CN201080065944.7A patent/CN103081398B/zh active Active
- 2010-03-31 KR KR1020127026744A patent/KR101712850B1/ko not_active Expired - Fee Related
Patent Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20060140401A1 (en) | 2000-12-08 | 2006-06-29 | Johnson Harold J | System and method for protecting computer software from a white box attack |
| US20090094464A1 (en) | 2005-12-28 | 2009-04-09 | Yuichi Futa | Signature generating device, signature generating method and signature generating program |
| US20100023771A1 (en) | 2006-11-15 | 2010-01-28 | Marinus Struik | Implicit certificate verification |
| US20090252327A1 (en) | 2008-04-02 | 2009-10-08 | Mathieu Ciet | Combination white box/black box cryptographic processes and apparatus |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20250061572A (ko) | 2023-10-27 | 2025-05-08 | 국민대학교산학협력단 | 모바일 환경에 적합한 ec-kcdsa 전자서명의 화이트박스 암호 구현 장치 및 방법 |
Also Published As
| Publication number | Publication date |
|---|---|
| CA2792787C (en) | 2017-07-25 |
| US20130024699A1 (en) | 2013-01-24 |
| WO2011120125A1 (en) | 2011-10-06 |
| CN103081398B (zh) | 2016-04-06 |
| EP2553866A4 (en) | 2017-06-28 |
| EP2553866B1 (en) | 2018-11-21 |
| JP2013524263A (ja) | 2013-06-17 |
| CN103081398A (zh) | 2013-05-01 |
| CA2792787A1 (en) | 2011-10-06 |
| JP5697180B2 (ja) | 2015-04-08 |
| US9009481B2 (en) | 2015-04-14 |
| EP2553866A1 (en) | 2013-02-06 |
| KR20130024897A (ko) | 2013-03-08 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| KR101712850B1 (ko) | 화이트 박스로부터 암호화설비를 보호하는 시스템 및 그 방법 | |
| Bos et al. | Elliptic curve cryptography in practice | |
| EP3091690B1 (en) | Rsa decryption using multiplicative secret sharing | |
| Sathya et al. | A comprehensive study of blockchain services: future of cryptography | |
| JP2008252299A (ja) | 暗号処理システム及び暗号処理方法 | |
| EP2201718A2 (en) | An efficient certified email protocol | |
| CN109818730A (zh) | 盲签名的获取方法、装置和服务器 | |
| Cebeci et al. | Secure e-commerce scheme | |
| Kumar et al. | Cryptanalysis and performance evaluation of enhanced threshold proxy signature scheme based on RSA for known signers | |
| Barker | Cryptographic Standards in the Federal Government: Cryptographic Mechanisms | |
| Rahnama et al. | Countering RSA vulnerabilities and its replacement by ECC: elliptic curve cryptographic scheme for key generation | |
| Zhang et al. | Side‐Channel Attacks and Countermeasures for Identity‐Based Cryptographic Algorithm SM9 | |
| Kwon | Virtual software tokens-a practical way to secure PKI roaming | |
| KR101112570B1 (ko) | 전력 분석 및 오류 주입 공격에 안전한 디지털 서명 장치, 방법 및 그 기록 매체 | |
| KR100953715B1 (ko) | Crt-rsa 모듈라 지수승 알고리즘을 이용한 디지털서명 방법, 그 장치 및 이를 기록한 컴퓨터 판독가능 저장매체 | |
| KR100953716B1 (ko) | Crt-rsa 기반의 비트 연산을 이용한 디지털 서명방법, 그 장치 및 이를 기록한 기록 매체 | |
| Somsuk | Enhanced Algorithm for Recovering RSA Plaintext When Two Modulus Values Share at Least One Common Prime Factor | |
| JP2004222331A (ja) | ユーザが電子商取引/情報サービス提供者の正当性をチェックできるようにする方法 | |
| US20230138384A1 (en) | Method for securely performing a public key algorithm | |
| Paramathma et al. | Securing Vehicle-to-Cloud Communication: A Lightweight Approach with SCDSA | |
| Shi et al. | Enhancing Private Signing Key Protection in Digital Currency Transactions Using Obfuscation | |
| Tai et al. | Weak-keys in public key cryptosystems based on discrete logarithms | |
| Simolin | Validation of an Implementation for Pair-Wise Key Establishment | |
| Mann et al. | Realizing two-factor authentication for the Bitcoin protocol. | |
| Chen et al. | A server-aided Paillier's signature generation scheme |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PA0105 | International application |
St.27 status event code: A-0-1-A10-A15-nap-PA0105 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-3-3-R10-R18-oth-X000 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
| A201 | Request for examination | ||
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| N231 | Notification of change of applicant | ||
| PN2301 | Change of applicant |
St.27 status event code: A-3-3-R10-R13-asn-PN2301 St.27 status event code: A-3-3-R10-R11-asn-PN2301 |
|
| R17-X000 | Change to representative recorded |
St.27 status event code: A-3-3-R10-R17-oth-X000 |
|
| E902 | Notification of reason for refusal | ||
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| R15-X000 | Change to inventor requested |
St.27 status event code: A-3-3-R10-R15-oth-X000 |
|
| R16-X000 | Change to inventor recorded |
St.27 status event code: A-3-3-R10-R16-oth-X000 |
|
| E90F | Notification of reason for final refusal | ||
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| E701 | Decision to grant or registration of patent right | ||
| PE0701 | Decision of registration |
St.27 status event code: A-1-2-D10-D22-exm-PE0701 |
|
| PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
| PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U12-oth-PR1002 Fee payment year number: 1 |
|
| PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
| PC1903 | Unpaid annual fee |
St.27 status event code: A-4-4-U10-U13-oth-PC1903 Not in force date: 20200301 Payment event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE |
|
| PC1903 | Unpaid annual fee |
St.27 status event code: N-4-6-H10-H13-oth-PC1903 Ip right cessation event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE Not in force date: 20200301 |