You need to have a serious discussion with your HSM vendor if that is the case.
You need to have a serious discussion with your HSM vendor if that is the case.
https://i.blackhat.com/USA-19/Thursday/us-19-Campana-Everybo...
Better hope Apple didn’t use that one - and that they regularly apply updates… odds of Apple trucking along with a several-year-old HSM don’t seem that low…
The attacker: - controls the host - can communicate with the PCI card
If Apple was using that HSM model (which is only FIPS-2 Level 3, which is still bad but maybe not as secure as a FIPS-4 they would use), an employee could potentially acquire a similar model at home, discover the vulnerabilities, and then exploit it on-premesis under the guise of a firmware update or maintenance. After that, jot the key down on an index card and put the HSM back like nothing happened. Sleep on it for 3 years so nobody remembers, and then wreak havoc.
A signing key is like, 4096 bits at most? 4 sms messages will do it.
Of course it is possible to read a key from an HSM, it’s just designed to be incredibly difficult. I don’t think I would be able to do it, at all, even if I could bring the HSM home with me for a couple weeks.
The Googles and Apples of the world are probably safe against even their own people, but do you trust Tracfone?
HSMs are hardened against individual bad actors. Their threat model envisages the presence of nation state actors.
Is it possible that an HSM attack happened here? I wouldn’t bet on it.
In some ways attacking the homes might be easier than attacking Apple Park. (Just thinking out loud...)
Private homes of the ultra wealthy and powerful are usually protected in non-obvious ways that most houses on most streets are not, to put it mildly. It turns out that machine guns are legal for private citizens (such as a 24/7 armed private security team), even in California, if you are wealthy and connected enough.
But assuming that's not the case now, my point still stands about how it would be maybe easier than attacking Apple Park, relatively speaking. Though, according to Apple's WWDC videos, invading Apple Park to swap an M1 between a MacBook and an iPad is easy when you are the CEO and wearing a rubber mask ;)
And if Xbox was doing that 20 years ago, I'd expect Apple to be as well.
It'd make sense for Sony, but some of their approaches to software security have been lol inducing, so it wouldn't shock me if they aren't.
Unfortunately, the HSM vendors are generally just as shifty as a typical SaaS vendor, so don’t believe their promises of secret inviolability if you can get uninterrupted time alone with a device.
Realistically, any decent shop manages all of these risks pretty well, but there’s a loting rigmarole to do it robustly.