Vis enkel innførsel

dc.contributor.authorVåge, Henry Faltin
dc.date.accessioned2022-06-28T00:00:40Z
dc.date.available2022-06-28T00:00:40Z
dc.date.issued2022-05-13
dc.date.submitted2022-06-27T22:00:14Z
dc.identifier.urihttps://hdl.handle.net/11250/3001128
dc.description.abstractWhen generating RSA keys, proper random generators are crucial. If the generators are not truly random, keys may be generated with the same factors, making them vulnerable to compromise. Doing a simple greatest common divisor computation would reveal the secret factors. We collected over 159 million unique RSA public keys from the Certificate Transparency logs, which is, to our knowledge, the largest set used for such an analysis so far. Our goal was to check if any of these keys shared factors, thus allowing us to compute the private keys easily. To do this, we implemented a batch greatest common divisor algorithm used for this purpose in previous studies. Our result from checking the 159 million RSA keys was that we factored eight keys, all of which were issued by the same certificate authority. We then gathered more than 700,000 keys from that particular certificate authority, of which we were able to factor 355 keys. We reached out to the issuer of the broken certificates, and they launched an investigation into our findings. Their investigation concluded that all broken keys were generated by a single user who they claim had abused their system.
dc.language.isoeng
dc.publisherThe University of Bergen
dc.rightsCopyright the Author. All rights reserved
dc.subjectPKI
dc.subjectRSA
dc.subjectfaktorisering
dc.subjectfactoring
dc.subjectcertificates
dc.subject sertifikater
dc.subjectTLS
dc.subjectsertifikater
dc.titleFinding shared RSA factors in the Certificate Transparency logs
dc.typeMaster thesis
dc.date.updated2022-06-27T22:00:14Z
dc.rights.holderCopyright the Author. All rights reserved
dc.description.degreeMasteroppgave i informatikk
dc.description.localcodeINF399
dc.description.localcodeMAMN-PROG
dc.description.localcodeMAMN-INF
dc.subject.nus754199
fs.subjectcodeINF399
fs.unitcode12-12-0


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel