<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Kryptoblog &#187; Hårdvara</title>
	<atom:link href="http://www.strombergson.com/kryptoblog/tag/hardvara/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.strombergson.com/kryptoblog</link>
	<description>Kryptografi och IT-säkerhet på svenska</description>
	<lastBuildDate>Thu, 20 Jan 2011 21:25:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><atom:link rel="hub" href="http://superfeedr.com/hubbub"/>		<item>
		<title>Hanko-stämpel med skydd mot förfalskning</title>
		<link>http://www.strombergson.com/kryptoblog/2010/09/07/hanko-stampel-med-skydd-mot-forfalskning/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/09/07/hanko-stampel-med-skydd-mot-forfalskning/#comments</comments>
		<pubDate>Tue, 07 Sep 2010 19:25:36 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Verktyg]]></category>
		<category><![CDATA[Hanko]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1397</guid>
		<description><![CDATA[<p>Fortfarande lika underbara <a href="http://boingboing.net/">Boingboing</a> ber&#228;ttade f&#246;r ett tag sedan om ett fenomen jag inte k&#228;nde till. Tydligen &#228;r det vanligt i Japan att man anv&#228;nder en <a href="http://en.wikipedia.org/wiki/Hanko_%28stamp%29">Hanko</a>, e personlig st&#228;mpel som signatur. Ett problem med Hanko-st&#228;mplar &#228;r&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Fortfarande lika underbara <a href="http://boingboing.net/">Boingboing</a> ber&#228;ttade f&#246;r ett tag sedan om ett fenomen jag inte k&#228;nde till. Tydligen &#228;r det vanligt i Japan att man anv&#228;nder en <a href="http://en.wikipedia.org/wiki/Hanko_%28stamp%29">Hanko</a>, e personlig st&#228;mpel som signatur. Ett problem med Hanko-st&#228;mplar &#228;r att de kan kopieras (<em>precis som en namnteckning</em>). Detta har <a href="http://www.boingboing.net/2010/08/23/hanko-stamp-with-ant.html">Mitsubishi Pencil f&#246;rs&#246;kt l&#246;sa genom att skapa en Hanko med inbyggt skydd mot f&#246;rfalskning</a>.</p>

	<p><img src="http://www.boingboing.net/_item_p_ginko_images_dialbank_setumei.jpg" alt="Mitsubishis s&#228;kra Hanko" /><br />
<em>Mitsubishis s&#228;kra(re) Hanko.</em></p>

	<p>S&#228;kerheten sitter i att det finns tv&#229; ringar med 10 olika positioner vardera. Ringarna s&#228;tter ett valbart kantm&#246;nster runt det fasta st&#228;mpelm&#246;nstret. Tv&#229; ringar med 10 olika positioner ger allts&#229; 100 olika m&#246;nster, vilket inte &#228;r s&#229;&#229; s&#228;kert. Men visst, en viss f&#246;rb&#228;ttrad s&#228;kerhet blir det. Och visst &#228;r Hankon snygg?</p>

 <div class="shr-publisher-1397"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/09/07/hanko-stampel-med-skydd-mot-forfalskning/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sectra får order från EU</title>
		<link>http://www.strombergson.com/kryptoblog/2010/09/02/sectra-far-order-fran-eu/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/09/02/sectra-far-order-fran-eu/#comments</comments>
		<pubDate>Thu, 02 Sep 2010 19:16:39 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Företag och affärer]]></category>
		<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[affärer]]></category>
		<category><![CDATA[eu]]></category>
		<category><![CDATA[Kryptering]]></category>
		<category><![CDATA[sectra]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1357</guid>
		<description><![CDATA[<p><a href="http://etn.se/">Elektroniktidningen</a> ber&#228;ttar att <a href="http://www.etn.se/index.php?option=com_content&#38;view=article&#38;id=51933">Sectra f&#229;tt en stor order fr&#229;n EU f&#246;r s&#228;ker telefoni</a>. EU-r&#229;det har lagt ett ramavtal f&#246;r att k&#246;pa in Sectras telefonl&#246;sning XS till h&#246;ga chefer, tj&#228;nstem&#228;n m.fl och g&#228;ller under fyra &#229;r.</p>

	<p><img src="http://t3.gstatic.com/images?q=tbn:ANd9GcTRMDNzBuDVZb9cqMqMhARLIl9a3Xj6HaH_GN2RIuQ5SicRBVg&#38;t=1&#38;usg=__BIWf1ylddlcyQSDMl45gzCqwgOw=" alt="Sectra XS" /><br />
<em>Sectra XS</em>&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p><a href="http://etn.se/">Elektroniktidningen</a> ber&#228;ttar att <a href="http://www.etn.se/index.php?option=com_content&#38;view=article&#38;id=51933">Sectra f&#229;tt en stor order fr&#229;n EU f&#246;r s&#228;ker telefoni</a>. EU-r&#229;det har lagt ett ramavtal f&#246;r att k&#246;pa in Sectras telefonl&#246;sning XS till h&#246;ga chefer, tj&#228;nstem&#228;n m.fl och g&#228;ller under fyra &#229;r.</p>

	<p><img src="http://t3.gstatic.com/images?q=tbn:ANd9GcTRMDNzBuDVZb9cqMqMhARLIl9a3Xj6HaH_GN2RIuQ5SicRBVg&#38;t=1&#38;usg=__BIWf1ylddlcyQSDMl45gzCqwgOw=" alt="Sectra XS" /><br />
<em>Sectra XS</em></p>

	<p>Grattis Sectra! Det &#228;r alltid kul att se att det g&#229;r bra f&#246;r svenska s&#228;kerhetsf&#246;retag och <span class="caps">XS </span>&#228;r en smart produkt.</p>
 <div class="shr-publisher-1357"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/09/02/sectra-far-order-fran-eu/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Fina Enigmabilder</title>
		<link>http://www.strombergson.com/kryptoblog/2010/08/09/fina-enigmabilder/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/08/09/fina-enigmabilder/#comments</comments>
		<pubDate>Mon, 09 Aug 2010 19:40:14 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[övrigt]]></category>
		<category><![CDATA[enigma]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1347</guid>
		<description><![CDATA[	<p><a href="http://www.nsa.gov/about/cryptologic_heritage/museum/">NSAs National Cryptologic Museum</a> har (naturligtvis) Enigma-maskiner att visa upp. <a href="http://www.silicon.com/technology/hardware/2010/08/06/photos-the-enigma-machines-on-show-at-the-national-cryptologic-museum-39746184/">Silicom.com har varit p&#229; sommarbes&#246;k</a> och tagit n&#229;gra fina bilder. Den h&#228;r p&#229; Enigma-rotorer exempelvis:<br />
<img src="http://www.silicon.com/i/s4/illo/photos/2010/August/engima_news.com/enigma_5.jpg" alt="Enigma-rotorer." /></p>
 <div class="shr-publisher-1347"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p><a href="http://www.nsa.gov/about/cryptologic_heritage/museum/">NSAs National Cryptologic Museum</a> har (naturligtvis) Enigma-maskiner att visa upp. <a href="http://www.silicon.com/technology/hardware/2010/08/06/photos-the-enigma-machines-on-show-at-the-national-cryptologic-museum-39746184/">Silicom.com har varit p&#229; sommarbes&#246;k</a> och tagit n&#229;gra fina bilder. Den h&#228;r p&#229; Enigma-rotorer exempelvis:<br />
<img src="http://www.silicon.com/i/s4/illo/photos/2010/August/engima_news.com/enigma_5.jpg" alt="Enigma-rotorer." /></p>
 <div class="shr-publisher-1347"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/08/09/fina-enigmabilder/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Två nya attacker på AES</title>
		<link>http://www.strombergson.com/kryptoblog/2010/06/12/tva-nya-attacker-pa-aes/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/06/12/tva-nya-attacker-pa-aes/#comments</comments>
		<pubDate>Sat, 12 Jun 2010 19:15:51 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Forskning]]></category>
		<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[AES]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[sidoattack]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1303</guid>
		<description><![CDATA[<p>Det var inte s&#229; l&#228;nge sedan jag bloggade <a href="http://www.strombergson.com/kryptoblog/2010/06/01/halsolaget-for-aes/">om att det varit mycket attacker p&#229; det symmetriska blockkryptot <span class="caps">AES</span> det senaste dryga &#229;ret</a>. Och nu kommer ett par nya attacker.</p>

	<p>Den f&#246;rsta attacken &#228;r en attack p&#229;&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Det var inte s&#229; l&#228;nge sedan jag bloggade <a href="http://www.strombergson.com/kryptoblog/2010/06/01/halsolaget-for-aes/">om att det varit mycket attacker p&#229; det symmetriska blockkryptot <span class="caps">AES</span> det senaste dryga &#229;ret</a>. Och nu kommer ett par nya attacker.</p>

	<p>Den f&#246;rsta attacken &#228;r en attack p&#229; <a href="http://en.wikipedia.org/wiki/Advanced_Encryption_Standard"><span class="caps">AES</span>-algoritmen</a> i sig och knyter d&#228;rmed an direkt till de attacker jag bloggade om. &#197;terigen &#228;r det Orr Dunkelman, Nathan Keller och Adi Shamir som ligger bakom den kryptanalytiska attacken.</p>

	<p>Det intressanta med den h&#228;r attacken &#228;r att till skillnad fr&#229;n de flesta attacker p&#229; <span class="caps">AES</span>-algoritmen kr&#228;ver den h&#228;r inte ett stort antal nycklar, utan bygger p&#229; en enskild nyckel. Just att de senaste &#229;rens attacker kr&#228;vt ett stort antal relaterade (kopplade) nycklar har varit dessa attacker svaghet.  Eller som EU-projektet <a href="http://www.ecrypt.eu.org/"><span class="caps">ECRYPT II</span></a> skriver i <a href="http://www.ecrypt.eu.org/documents/D.SPA.13.pdf">sin &#229;rliga rapport om nyckell&#228;ngder och kryptoprimitiver</a>: <blockquote>We note that related-key attacks&#8217; practical relevance depends on context, and these attacks are unlikely to affect practical uses of the <span class="caps">AES</span> algorithm.<br />
</blockquote></p>

	<p>Shamirs, Dunkelmans och Kellers nya attack, <em><a href="http://eprint.iacr.org/2010/322">Improved Single-Key Attacks on 8-round <span class="caps">AES</span></a></em> kan d&#228;rmed ses som ett svar p&#229; detta, F&#246;rfattarna skriver: <blockquote><span class="caps">AES</span> is the most widely used block cipher today, and its security is one of the most important issues in cryptanalysis. After 13 years of analysis, related-key attacks were recently found against two of its flavors (AES-192 and <span class="caps">AES</span>-256).<br />
<br />
</p>

	<p>However, such a strong type of attack is not universally accepted as a valid attack model, and in the more standard single-key attack model at most 8 rounds of these two versions can be currently attacked. In the case of 8-round <span class="caps">AES</span>-192, the only known attack (found 10 years ago) is extremely marginal, requiring the evaluation of essentially all the 2**128 possible plaintext/ciphertext pairs in order to speed up exhaustive key search by a factor of 16.<br />
<br />
</p>

	<p>In this paper we introduce three new cryptanalytic techniques, and use them to get the first non-marginal attack on 8-round <span class="caps">AES</span>-192 (making its time complexity about a million times faster than exhaustive search, and reducing its data complexity to about 1/32,000 of the full codebook).<br />
<br />
</p>

	<p>In addition, our new techniques can reduce the best known time complexities for all the other combinations of 7-round and 8-round <span class="caps">AES</span>-192 and <span class="caps">AES</span>-256.<br />
</blockquote></p>

	<p>Fortfarande &#228;r det p&#229; <span class="caps">AES</span>-versioner med ett f&#228;rre antal iterationer &#228;n det som normalt anv&#228;nds. Men det &#228;r &#228;nnu ett s&#229;r i <span class="caps">AES</span>-bygget.</p>

	<p>Den andra attacken &#228;r inte p&#229; algoritmen, utan en <a href="http://en.wikipedia.org/wiki/Side_channel_attack">sidoattack</a> p&#229; implementationen av <span class="caps">AES </span>- mer exakt p&#229; en datorplattform som exekverat <span class="caps">AES</span> och som sedan st&#228;ngts av(!). Genom att anv&#228;nda verktyg f&#246;r att l&#246;sa Boolean <span class="caps">SAT</span>-problem (svensutvecklade <a href="http://minisat.se/">MiniSat</a>) anpassad kryptoproblem &#8211; <a href="http://planete.inrialpes.fr/~soos/CryptoMiniSat/index.html">CryptoMiniSat</a>. Detta verktyg har anv&#228;nts f&#246;r att l&#246;sa en Boolesk beskrivning av nyckelschemal&#228;ggningen i <span class="caps">AES</span> kan dom &#229;terskapa nyckeln &#228;ven fr&#229;n ett minne som varit avst&#228;ngt och d&#228;rmed tappat en stor del av sitt inneh&#229;ll.</p>

	<p><span class="caps">SRAM</span>-minnen och till viss del &#228;ven <span class="caps">DRAM</span>-minnen tappar sin information n&#228;r str&#246;mmen kopplas bort, men kan beh&#229;lla informationen under en l&#228;ngre tid &#8211; kallas <em><a href="http://en.wikipedia.org/wiki/Data_remanence">data remanence</a></em>. Speciellt i kalla f&#246;rh&#229;llanden kan ett <span class="caps">SRAM</span>-minne beh&#229;lla sin information under l&#229;ng tid.</p>

	<p>I artikeln <em><a href="http://eprint.iacr.org/2010/324">Applications of <span class="caps">SAT </span>Solvers to <span class="caps">AES</span> key Recovery from Decayed Key Schedule Images</a></em> visar Abdel Alim Kamal och Amr M. Youssef att dom f&#246;r 10000 nycklar d&#228;r 72% nycklen har f&#246;rst&#246;rts (bitarna har &#228;ndrat v&#228;rden slumpm&#228;ssigt) kan dom &#229;terskapa 92% av nycklarna p&#229; mindre &#228;n 10 sekunder. Nu g&#228;ller detta inte enbart <span class="caps">AES</span>, utan som f&#246;rfattarna skriver:<blockquote>In this work, we modelled the problem of key recovery of the <span class="caps">AES</span>-128 key schedules from its corresponding decayed memory images as a Boolean <span class="caps">SAT</span> problem and solved it using the CryptoMiniSat solver. Our experimental results confirm the versatility of our proposed approach which allows us to efficiently recover the <span class="caps">AES</span>-128 key schedules for large decay factors.<br />
<br />
</p>

	<p>The method presented in this work can be extended in a straightforward way to <span class="caps">AES</span>-192, <span class="caps">AES</span>-256 and other ciphers with key schedules that can be presented as a set of Boolean equations and, hence, lend themselves naturally to <span class="caps">SAT</span> solvers.<br />
</blockquote></p>

	<p>F&#246;r den som vill l&#228;sa mer om data remanence rekommenderas <a href="http://www.cs.auckland.ac.nz/~pgut001/">Peter Gutmanns</a> klassiska <em><a href="http://www.cypherpunks.to/~peter/usenix01.pdf">Data Remanence in Semiconductor Devices</a></em>.</p>


 <div class="shr-publisher-1303"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/06/12/tva-nya-attacker-pa-aes/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>GPU-accelererad lösenordsknäckare</title>
		<link>http://www.strombergson.com/kryptoblog/2010/03/27/gpu-accelererad-losenordsknackare/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/03/27/gpu-accelererad-losenordsknackare/#comments</comments>
		<pubDate>Sat, 27 Mar 2010 19:47:06 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Verktyg]]></category>
		<category><![CDATA[GPGPU]]></category>
		<category><![CDATA[GPU]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1174</guid>
		<description><![CDATA[<p><a href="http://www.elcomsoft.com/">Elcomsoft</a> har sl&#228;ppt <a href="http://www.net-security.org/secworld.php?id=9021">l&#246;senordskn&#228;ckare som &#228;r accelererade prestandam&#228;ssigt med grafikprocessorer</a> (<a href="http://en.wikipedia.org/wiki/Gpgpu"><span class="caps">GPU</span></a>).</p>

	<p><a href="http://www.elcomsoft.com/"><img src="http://femida.us/Images/elcomsoft_logo.gif" alt="Elcomsoft" /></a></p>

	<p>De nya l&#246;senordskn&#228;ckarna attackerar l&#246;senord f&#246;r Wi-Fi l&#246;senord (<a href="http://en.wikipedia.org/wiki/Wi-Fi_Protected_Access"><span class="caps">WPA</span>-PSK</a>) samt l&#246;senordsskyddade backuper fr&#229;n iPhone och iPod. Elcomsoft anv&#228;nder <span class="caps">ATI </span>Radeon 5000-GPU:er.</p>

	<p><img src="http://www.net-security.org/images/articles/ati-radeon-5000.jpg" alt="ATI Radeon 5000" /></p>

	<p>Benchmarkm&#228;tningar&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p><a href="http://www.elcomsoft.com/">Elcomsoft</a> har sl&#228;ppt <a href="http://www.net-security.org/secworld.php?id=9021">l&#246;senordskn&#228;ckare som &#228;r accelererade prestandam&#228;ssigt med grafikprocessorer</a> (<a href="http://en.wikipedia.org/wiki/Gpgpu"><span class="caps">GPU</span></a>).</p>

	<p><a href="http://www.elcomsoft.com/"><img src="http://femida.us/Images/elcomsoft_logo.gif" alt="Elcomsoft" /></a></p>

	<p>De nya l&#246;senordskn&#228;ckarna attackerar l&#246;senord f&#246;r Wi-Fi l&#246;senord (<a href="http://en.wikipedia.org/wiki/Wi-Fi_Protected_Access"><span class="caps">WPA</span>-PSK</a>) samt l&#246;senordsskyddade backuper fr&#229;n iPhone och iPod. Elcomsoft anv&#228;nder <span class="caps">ATI </span>Radeon 5000-GPU:er.</p>

	<p><img src="http://www.net-security.org/images/articles/ati-radeon-5000.jpg" alt="ATI Radeon 5000" /></p>

	<p>Benchmarkm&#228;tningar visar enligt ElcomSoft att <span class="caps">ATI </span>Radeon <span class="caps">HD5970</span> ger 20x h&#246;gre prestanda f&#246;r l&#246;senordskn&#228;ckning &#228;n Intels Core i7-960. Elmcomsoft ser &#228;ven att dom f&#229;r mycket b&#228;ttre prestanda &#228;n med <a href="http://www.nvidia.com/object/tesla_computing_solutions.html">Nvidias Tesla</a>-kort:</p>

	<p><img src="http://www.net-security.org/images/articles/ewsa_perf_blue.jpg" alt="WPA-PSK-prestanda." /></p>



 <div class="shr-publisher-1174"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/03/27/gpu-accelererad-losenordsknackare/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>En Duracellkanin? Nej, en Energizer-trojan</title>
		<link>http://www.strombergson.com/kryptoblog/2010/03/12/en-duracellkanin-nej-en-energizer-trojan/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/03/12/en-duracellkanin-nej-en-energizer-trojan/#comments</comments>
		<pubDate>Fri, 12 Mar 2010 13:21:28 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Elak kod]]></category>
		<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Inbyggda system]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1128</guid>
		<description><![CDATA[<p>Batterif&#246;retaget <a href="http://www.energizer.com/Pages/default.aspx">Energizer</a> sl&#228;ppte f&#246;r ett tag sedan en <span class="caps">USB</span>-kopplad batteriladdare kallad Energizer Duo.</p>

	<p><img src="http://www.imaging-resource.com/NPICS1/DUOCHARGER_1_S.JPG" alt="Energizer Duo" /></p>

	<p>F&#246;rutom att ladda via <span class="caps">USB</span> kunde produkten k&#246;ra en liten applikationen p&#229; datorn som visade laddstatus f&#228;&#246;r batterierna.</p>

	<p><img src="http://www.imaging-resource.com/NPICS1/DUOCHARGER_2_S.JPG" alt="Laptop med applikationen." /></p>

	<p>Men det var&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Batterif&#246;retaget <a href="http://www.energizer.com/Pages/default.aspx">Energizer</a> sl&#228;ppte f&#246;r ett tag sedan en <span class="caps">USB</span>-kopplad batteriladdare kallad Energizer Duo.</p>

	<p><img src="http://www.imaging-resource.com/NPICS1/DUOCHARGER_1_S.JPG" alt="Energizer Duo" /></p>

	<p>F&#246;rutom att ladda via <span class="caps">USB</span> kunde produkten k&#246;ra en liten applikationen p&#229; datorn som visade laddstatus f&#228;&#246;r batterierna.</p>

	<p><img src="http://www.imaging-resource.com/NPICS1/DUOCHARGER_2_S.JPG" alt="Laptop med applikationen." /></p>

	<p>Men det var nu inte det enda som k&#246;rdes n&#228;r laddaren kopplades in. Enligt Symantec kom batteriladdaren med en elak liten trojan. <a href="http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software">Symantec har en l&#228;ngre beskrivning av Energizertrojanen</a> som bla beskriver vad den kunde g&#246;ra:</p>

	<p><blockquote><br />
&#8226;    Download a file<br />
&#8226;    Execute a file<br />
&#8226;    Send a directory listing to the remote attacker<br />
&#8226;    Send files to the remote attacker<br />
&#8226;    Modify the following registry entry:<br />
</blockquote></p>

	<p>Energizer har dragit tillbaka produkten. Det jag undrar &#246;ver &#228;r hur trojanen hittade in i koden till laddaren fr&#229;n f&#246;rsta b&#246;rjan. Hade det varit ett <span class="caps">USB</span>-minne hade det varit en sak, men nu &#228;r det inte det och d&#229; brukar m&#228;ngden minne som finns vara h&#246;gst begr&#228;nsat. M&#228;rkligt.</p>
 <div class="shr-publisher-1128"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/03/12/en-duracellkanin-nej-en-energizer-trojan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Vackra bilder på Fialka-rotorer</title>
		<link>http://www.strombergson.com/kryptoblog/2010/03/10/vackra-bilder-pa-fialka-rotorer/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/03/10/vackra-bilder-pa-fialka-rotorer/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 22:01:36 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[Fialka]]></category>
		<category><![CDATA[Historia]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=1140</guid>
		<description><![CDATA[<p>Ok, det b&#246;rjar bli sent, men jag kan inte l&#229;ta bli att posta n&#229;gra bilder fr&#229;n <a href="http://w1tp.com/enigma/mfr.htm">en sida med extremt detaljerad beskrivning av rotorerna till den gamla ryska, elektromekaniska kryptomaskinen Fialka</a>. Det h&#228;r &#228;r vackert:</p>

	<p><img src="http://w1tp.com/enigma/u_170s2a.jpg" alt="Rotorer 1" /><br />
<img src="http://w1tp.com/enigma/u_170s6e.jpg"&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Ok, det b&#246;rjar bli sent, men jag kan inte l&#229;ta bli att posta n&#229;gra bilder fr&#229;n <a href="http://w1tp.com/enigma/mfr.htm">en sida med extremt detaljerad beskrivning av rotorerna till den gamla ryska, elektromekaniska kryptomaskinen Fialka</a>. Det h&#228;r &#228;r vackert:</p>

	<p><img src="http://w1tp.com/enigma/u_170s2a.jpg" alt="Rotorer 1" /><br />
<img src="http://w1tp.com/enigma/u_170s6e.jpg" alt="Rotorer - koppling" /><br />
<img src="http://w1tp.com/enigma/u_170s7t.jpg" alt="Vackert fodral" /><br />
<img src="http://w1tp.com/enigma/u_170s6k.jpg" alt="Extreme closeup" /></p>
 <div class="shr-publisher-1140"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/03/10/vackra-bilder-pa-fialka-rotorer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hårdvaruimplementationer av SHA-3-kandidater</title>
		<link>http://www.strombergson.com/kryptoblog/2010/02/12/hardvaruimplementationer-av-sha-3-kandidater/</link>
		<comments>http://www.strombergson.com/kryptoblog/2010/02/12/hardvaruimplementationer-av-sha-3-kandidater/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 12:47:49 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Forskning]]></category>
		<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[NIST AHS]]></category>
		<category><![CDATA[sha-3]]></category>
		<category><![CDATA[hashfunktioner]]></category>

		<guid isPermaLink="false">http://www.strombergson.com/kryptoblog/?p=948</guid>
		<description><![CDATA[<p>Den senaste tiden har det kommit flera artiklar som beskriver h&#229;rdvaruimplementationer av hashfunktioner som &#228;r kandidater till <span class="caps">NIS</span>Ts kommande <span class="caps">SHA</span>-3-standard. N&#229;gra av dessa artiklar &#228;r <em><a href="http://eprint.iacr.org/2010/010">Evaluation of Hardware Performance for the <span class="caps">SHA</span>-3 Candidates Using <span class="caps">SASEBO</span>-GII</a></em>&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>Den senaste tiden har det kommit flera artiklar som beskriver h&#229;rdvaruimplementationer av hashfunktioner som &#228;r kandidater till <span class="caps">NIS</span>Ts kommande <span class="caps">SHA</span>-3-standard. N&#229;gra av dessa artiklar &#228;r <em><a href="http://eprint.iacr.org/2010/010">Evaluation of Hardware Performance for the <span class="caps">SHA</span>-3 Candidates Using <span class="caps">SASEBO</span>-GII</a></em> och <a href="http://eprint.iacr.org/2009/603">An <span class="caps">FPGA </span>Technologies Area Examination of the <span class="caps">SHA</span>-3 Hash Candidate Implementations</a> och <em><a href="http://eprint.iacr.org/2009/349.pdf">Compact Hardware Implementations of the <span class="caps">SHA</span>-3 Candidates <span class="caps">ARIRANG</span>, BLAKE, Gr0stl, and Skein</a></em>.</p>

	<p>Det p&#229;g&#229;r &#228;ven flera forskningsprojekt d&#228;r man bygger upp ramverk f&#246;r att p&#229; olika s&#228;tt j&#228;mf&#246;ra implementationer (SW och HW) av olika kryptografiska funktioner &#8211; krypton, hashfunktioner etc. Ett s&#229;dan projekt &#228;r <a href="http://cryptography.gmu.edu/athena/">Athena-projektet</a> som fokuserar p&#229; h&#229;rdvaruimplementationer. Ett annat projekt &#228;r <a href="http://bench.cr.yp.to/ebash.html"><span class="caps">ECRYP</span>Ts eBASH</a> som mer tittar p&#229; SW-implementationer &#246;ver ett stort antal processorarkitekturer.</p>

	<p>Ett bekymmer med alla olika HW-implementationer &#228;r att det finns s&#229; m&#229;nga design- och teknologim&#228;ssiga frihetsgrader. &#196;r en given implementation optimerad f&#246;r maximal prestanda eller minimal storlek? &#196;r m&#229;lteknologin en <span class="caps">ASIC</span>-process (och i s&#229; fall vilken processnod) eller en <span class="caps">FPGA</span>? Vilka teknologispecifika funktioner utntyttjas etc. Det &#228;r l&#228;tt att det blir en j&#228;mf&#246;relse mellan &#228;pplen och p&#228;ron, och kanske &#228;pplen och k&#246;ttf&#228;rslimpa.</p>

	<p>I h&#246;stas kom artikeln Artikeln <em><a href="http://eprint.iacr.org/2009/510.pdf">High-Speed Hardware Implementations of <span class="caps">BLAKE</span>, Blue Midnight Wish, CubeHash, <span class="caps">ECHO</span>, Fugue, Gr{o}stl, Hamsi, JH, Keccak, Luffa, Shabal, SHAvite-3, <span class="caps">SIMD</span>, and Skein</a></em> d&#228;r man f&#246;rs&#246;kt hantera detta. Genom att v&#228;lja samma m&#229;lteknologi, samma verktygsfl&#246;de, samma metodik och implementationstategi har man f&#246;rs&#246;kt skapa implementationer av kandidater som skall g&#229; att j&#228;mf&#246;ra med varandra.</p>

	<p>Rapporten ger en bra &#246;versiktlig beskrivning av samtliga HW-implementationer som skapats. M&#229;lteknologi &#228;r en 180nm <a href="http://en.wikipedia.org/wiki/Standard_cell">Standard Cell-process</a> (ASIC) fr&#229;n <a href="http://www.faraday-tech.com/index.html">Faraday</a> och man har tagit design genom <a href="http://en.wikipedia.org/wiki/Logic_synthesis">syntes</a> ned till n&#228;tlista och d&#228;r gjort prestandaskattningar.</p>

	<p>Utifr&#229;n ren prestanda n&#229;r Keccak 21 Gbit/s och vinner med bred marginal:<br />
<img src="http://www.strombergson.com/kryptoblog/wp-content/SHA-3_HW_prestandatabell.png" alt="Prestandatabell." /></p>

	<p>En mer intressant blir det om man tittar p&#229; prestanda kontra storlek p&#229; implementationen:<br />
<img src="http://www.strombergson.com/kryptoblog/wp-content/SHA-3_HW_imp_speed_vs_area.png" alt="Prestanda vs area." /></p>

	<p>Det verkar som de flesta kandidater ligger inom 40-60 kGates och d&#228;r &#229;terfinns de fem snabbaste kandidaterna. I diagrammet ser man &#228;ven hur Keccak och Luffa sticker ut prestandam&#228;ssigt. Vidare &#228;r det v&#228;rt att notera hur mycket mer komplexa de st&#246;rsta kandidaterna &#228;r, och att det iaf inte ger n&#229;gon prestandaf&#246;rdel. Om man skulle g&#229; p&#229; dessa siffror (och utg&#229;r ifr&#229;n att s&#228;kerheten &#228;r lika h&#246;g hos alla kandidater) borde Keccak och Luffa ligga bra till samt att <span class="caps">BMW</span> och <span class="caps">SIMD</span> samt Skein sitta s&#228;mre till.</p>

	<p>Det jag saknar nu &#228;r en bra j&#228;mf&#246;relse med SW-implementationer, ex fr&#229;n eBASH samt vad andra f&#229;r fram f&#246;r resultat av HW-implementationer (ex Athena). Visserligen riskerar det att bli &#228;pplen och k&#246;ttf&#228;rslimpa, men jag tror att den samlade bilden &#228;r viktig.</p>
 <div class="shr-publisher-948"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2010/02/12/hardvaruimplementationer-av-sha-3-kandidater/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Kör beräkningar på din PS3:a</title>
		<link>http://www.strombergson.com/kryptoblog/2009/03/01/kor-berakningar-pa-din-ps3a/</link>
		<comments>http://www.strombergson.com/kryptoblog/2009/03/01/kor-berakningar-pa-din-ps3a/#comments</comments>
		<pubDate>Sun, 01 Mar 2009 19:56:25 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Verktyg]]></category>

		<guid isPermaLink="false">http://strombergson.com/kryptoblog/?p=632</guid>
		<description><![CDATA[<p>(<em>Har haft dom h&#228;r l&#228;nkarna liggande p&#229; tok f&#246;r l&#228;nge i min lista med intressanta saker&#8230;</em>)</p>

	<p>Enligt en artikel p&#229; Physorg har n&#229;gra forskare p&#229; Dartmouth-universitetet <a href="http://www.physorg.com/news148749271.html">sl&#228;ppt ett system + instruktioner f&#246;r att k&#246;ra parallella ber&#228;kningar p&#229; en</a>&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p>(<em>Har haft dom h&#228;r l&#228;nkarna liggande p&#229; tok f&#246;r l&#228;nge i min lista med intressanta saker&#8230;</em>)</p>

	<p>Enligt en artikel p&#229; Physorg har n&#229;gra forskare p&#229; Dartmouth-universitetet <a href="http://www.physorg.com/news148749271.html">sl&#228;ppt ett system + instruktioner f&#246;r att k&#246;ra parallella ber&#228;kningar p&#229; en Sony PlayStation 3</a> (PS3).</p>

	<p>Jag har inte testat p&#229; min egen maskin (&#228;n), men att d&#246;ma av <a href="http://www.ps3cluster.org/step1setup.html">webbsidan f&#246;r systemet</a> &#228;r det ganska r&#228;tt fram att installera och k&#246;ra. &#196;r det n&#229;gon som testat och har n&#229;gra &#229;sikter skulle jag uppskatta en kommentar.</p>
 <div class="shr-publisher-632"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2009/03/01/kor-berakningar-pa-din-ps3a/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>rule30 IP-core släppt</title>
		<link>http://www.strombergson.com/kryptoblog/2009/01/12/rule30-ip-core-slappt/</link>
		<comments>http://www.strombergson.com/kryptoblog/2009/01/12/rule30-ip-core-slappt/#comments</comments>
		<pubDate>Mon, 12 Jan 2009 18:39:41 +0000</pubDate>
		<dc:creator>Joachim Strömbergson</dc:creator>
				<category><![CDATA[Hårdvara]]></category>
		<category><![CDATA[Krypto]]></category>
		<category><![CDATA[InformAsic]]></category>
		<category><![CDATA[Om Kryptoblog]]></category>
		<category><![CDATA[prng]]></category>

		<guid isPermaLink="false">http://strombergson.com/kryptoblog/?p=614</guid>
		<description><![CDATA[<p><a href="http://www.informasic.se/informasic-lanserar-rule-30-som-open-core">I dag sl&#228;ppte vi p&#229; InformAsic</a> <a href="http://strombergson.com/kryptoblog/2008/10/13/dagens-hw-hack-wolframs-30e-regel/">den cellautomatbaserade slumptalsgenerator byggd p&#229; rule30 jag byggt som &#246;ppen IP-core</a>. Det tog lite l&#228;ngre tid att f&#229; ut den &#228;n jag hade hoppats, men nu blev det en bra start p&#229;&#8230;</p>


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[	<p><a href="http://www.informasic.se/informasic-lanserar-rule-30-som-open-core">I dag sl&#228;ppte vi p&#229; InformAsic</a> <a href="http://strombergson.com/kryptoblog/2008/10/13/dagens-hw-hack-wolframs-30e-regel/">den cellautomatbaserade slumptalsgenerator byggd p&#229; rule30 jag byggt som &#246;ppen IP-core</a>. Det tog lite l&#228;ngre tid att f&#229; ut den &#228;n jag hade hoppats, men nu blev det en bra start p&#229; nya arbets&#229;ret.</p>

	<p>F&#246;r den som vill titta p&#229; och anv&#228;nda v&#229;r IP-core <a href="http://www.informasic.se/rule-30-slumptalsgenerator-1">finns den h&#228;r</a>. Koden &#228;r <span class="caps">BSD</span> licensierad. Skriven i Verilog (naturligtvis). F&#246;rhoppningsvis kommer den till nytta f&#246;r att exempelvis driva <span class="caps">FPGA</span>-baserad test med kontrollerad, slumpm&#228;ssiga indata. Det &#228;r s&#229; jag ex anv&#228;nder den f&#246;r att testa kryptoimplementationer.</p>

	<p>Gl&#228;djande nog fick vi en del uppm&#228;rksamhet f&#246;r sl&#228;ppet, bland annat i <a href="http://etn.se/48157">Elektroniktidningen</a> och <a href="http://www.elinor.se/index.php/Slumptalsgenerator-som-Open-Core.html">Elektronik i Norden</a>. Ett litet f&#246;rtydligande ang&#229;ende <a href="http://www.opencores.org/">Opencores</a> och <a href="http://sourceforge.net/">Sourceforge</a> &#228;r att vi p&#229; InformAsic tycker att dessa &#228;r mycket bra initiativ.</p>

	<p>Dock &#228;r Opencores en aning (lite v&#228;l) kn&#246;lig att anv&#228;nda, b&#229;de f&#246;r utvecklare och anv&#228;ndare av cores. Tittar man p&#229; m&#229;nga av de (ex <a href="http://asics.ws/">Rudolf Usselman</a>) som var med att starta Opencores bor deras cores i dag p&#229; andra platser &#228;ven om det finns information om deras core p&#229; Opencores. En s&#229;dan l&#246;sning skulle s&#228;kert kunna fungera f&#246;r oss ocks&#229;. Vi f&#229;r se hur vi g&#246;r n&#228;sta g&#229;ng, speciellt n&#228;r vi snart sl&#228;pper n&#228;sta &#246;ppna <a href="http://en.wikipedia.org/wiki/Semiconductor_intellectual_property_core">IP-core</a>.</p>


 <div class="shr-publisher-614"></div>

<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/'>Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://www.strombergson.com/kryptoblog/2009/01/12/rule30-ip-core-slappt/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

