2021
DOI: 10.1007/978-3-030-78375-4_3
|View full text |Cite
|
Sign up to set email alerts
|

Threat for the Secure Remote Password Protocol and a Leak in Apple’s Cryptographic Library

Abstract: The Secure Remote Password protocol is a password-based authenticated key-exchange between two parties. One advantage is to prevent offline dictionary attacks from an adversary eavesdropping the communication. We present how such an attack is feasible if the modular exponentiation at the heart of the protocol is vulnerable and leaks some data related to the password. In the case of a fixed exponent, adding randomness during the execution is a classical protection mechanism, and such a mechanism is present in A… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2023
2023
2023
2023

Publication Types

Select...
1

Relationship

0
1

Authors

Journals

citations
Cited by 1 publication
references
References 23 publications
0
0
0
Order By: Relevance