Smartphone can use its microphone to extract RSA decryption key from laptop
schneier.com
schneier.com
https://news.ycombinator.com/item?id=6927905 (tau.ac.il) (92 comments)
Other submissions:
https://news.ycombinator.com/item?id=6940827 (theregister.co.uk)
https://news.ycombinator.com/item?id=6938536 (dailymail.co.uk)
https://news.ycombinator.com/item?id=6935289 (tau.ac.il)
https://news.ycombinator.com/item?id=6933255 (slashdot.org)
https://news.ycombinator.com/item?id=6932445 (slideshare.net)
Once again, this is a reminder that any adversary that has physical access to your box can extract all your secrets, and there's almost nothing you can do about it.
For defending against acoustic attacks when encrypting/decrypting/typing in your password, play loud music. I recommend "What does the fox say?" by Ylvis since it has a wide range of powerful frequencies.
(There are other types of physical attacks than acoustic attacks, so this is more tongue in cheek than a real defense mechanism.)
Now I really want to repeat Shamir's experiment with Gangnam Style blaring just to see what would happen.
If you are listening for sounds higher than "normal music" you can't capture them with a standard mic, let alone the mic on your phone, since it is optimized for vocal range.
If you're trying to defend against the cellphone (or chasis microphone) attack vector, then you can defintely defend with human audible noise. Your cellphone is going to have an aggressive low pass filter prior to the ADC to prevent aliasing. This will limit the cellphone range to roughly human audible range. The difficulty is in generating sufficient noise at the frequencies required. As the FAQ on the page points out the majority of this lies in +10kHz, so using normal music won't be too effective, but artificial noise is certainly possible.
The Q&A on the linked site answers all sorts relevant questions and is quite enlightening.
In the actual paper is maddening non-specific about how widespread audible range attacks are. Ultrasonic attacks are likely viable against nearly all unprotected machines, however the paper only says that 'some' machines are vulnerable to audible spectrum attacks.
So, I was wondering, what about the FM radio built into many (if not most) mobile phones? Connected my earbuds (they also function as antenna), turned on the phone loudspeaker, laid the earbud cable over my laptop, tuned the FM radio to some frequency where there is no radio station (thus statics playing), and voilà, I can clearly hear correlation between noise and activity. Even when I'm placing my earbuds/phone a foot away from the laptop I can still clearly hear when I'm opening some new window. The sounds are not as 'colorful' as they were on an AM radio when listening to calculators, but I'd wager a guess that it's better than an acoustic attack.
So much for thinking that making acoustic noise like playing music would dwarf the attack vector "mobile phone".
PS: what might prevent this attack is that on some (most?) phones the output of the FM radio can't be captured directly. It could be played through the speaker and recorded through the mic, though. The attack as carried out by Genkin/Shamir/Tromer is sending tons of encrypted emails and would probably arouse suspicion anyway if the computer was attended, thus this indirection may not pose a problem.
If this were real there would be a "submit your recording" or an opensource library for others to try.
The physics of this don't work.
If they did work the experiment should be documented in a way that there could be peer review. If you can't repeat it, it isn't valid.
I lost lots of Karma the last time I mentioned this, but I kind of don't care. These kinds of fake "hacks" are only designed to create fear, and keep people from working on real security issues while creating a reputation based on falsehoods for the author.
What i can't understand is how you can compress a whole RSA decryption key, which is say 4096 bits, into space SMALLER than itself (source data from microphone with 16 bits per sample, mono, at 44,100 hz, will take 6ms to accumulate 4096 bits - for sure encryption of a short email will take less!). So it sounds like a hoax.
Obviously the key can't be 'comperssed' because it's ramdom data with a high quality of randomness. And you cannot pull it out of SMALLER amount of data recorded by the microphone in the time it takes to make an encryption. That is, if anything happening within the processor can make acoustic noise loud enough for microphone to detect, which i really doubt.
I believe this even less than air-powered cars, or cold fusion.
Really? You dismiss a scientific claim because you, YOU cannot understand it? There's a scientific paper written by a security researcher (who by the way co-invented RSA) that goes into great detail explaining what's going on. There's data to analyse. People can try to replicate the results. Do you have anything to say about the paper?
There have been a few threads about this already. What I have learned from those, and from other threads where a paper is discussed, is that practically nobody who comments has read the paper.
> I believe this even less than air-powered cars ...
Air-powered vehicles are quite common.http://www.fastcoexist.com/1681429/this-air-powered-car-gets...
http://auto.howstuffworks.com/fuel-efficiency/vehicles/air-c...
http://www.dailymail.co.uk/news/article-2266632/Car-runs-air...
http://en.wikipedia.org/wiki/Compressed_air_car
http://www.popularmechanics.com/cars/news/preview-concept/42...
One of the guys who wrote the RSA algorithm in 1977.
RSA -> Ron Rivest, Adi Shamir and Leonard Adleman
This is legit.
(Appeal to authority fallacy?)
He's been wrong before. Recently, like last week, he was wrong about Satoshi. Don't appeal to authority.
I thought the fallacy was using an unrelated property as evidence to support the truth of a factual statement (the author's previous work, shoe size, favourite music, etc).
If $RANDOMDUDE says something is bullshit without having looked at the research and $PROVENEXPERT after a lot of research says it is not, it doesn't mean the expert is right. The facts should stand on their own, regardless of who made them. However, it means $RANDOMDUDE's opinion is completely uninformed and the research is worth looking into.
Now, mistakes CAN happen. But in this case, it would be very hard to make one. If they built a system that reconstructs the cryptographic key then you could compare the keys on both sides.