Protecting the creation of digital signatures with trusted computing platform technology against attacks by Trojan Horse programs

  • Authors:
  • Adrian Spalka;Armin B. Cremers;Hanno Langweg

  • Affiliations:
  • Univ. of Bonn, Bonn, Germany;Univ. of Bonn, Bonn, Germany;Univ. of Bonn, Bonn, Germany

  • Venue:
  • Sec '01 Proceedings of the 16th international conference on Information security: Trusted information: the new decade challenge
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

Digital signatures are a key technology for many Internet-based commercial and administrative applications and, therefore, and increasingly popular target of attacks. Due to their strong cryptographic properties an attacker is more likely to subvert them with malicious software, ie Trojan horse programs. We show that by fusing two techniques, our WORM-supported reliable input method and the Intelligent Adjunct model of the Trusted Computing Platform Alliance, we can achieve a high degree of protection from Trojan horse programs during the process of creating digital signatures. Existing software products immediately benefit form our results. Moreover, we examine three ways of storing and executing the signing software the respect to its susceptibility to Trojan horse programs and identify the most suitable combination.