dc.contributor.advisor |
Focardi, Riccardo |
it_IT |
dc.contributor.author |
Pretotto, Andrea <1989> |
it_IT |
dc.date.accessioned |
2014-02-04 |
it_IT |
dc.date.accessioned |
2014-03-29T10:44:29Z |
|
dc.date.available |
2015-04-07T13:58:29Z |
|
dc.date.issued |
2014-03-11 |
it_IT |
dc.identifier.uri |
http://hdl.handle.net/10579/4332 |
|
dc.description.abstract |
Starting from previous vulnerability analysis of the standard PKCS#11, we describe Microsoft CryptoAPI interface identifying all the possible attacks that can be performed to discover secret keys values, in hardware devices which support key management by both the standards. First, we formalize a model for CAPI, then a super model for both the standards, to describe in a unique way all the operations that can be performed. We consider interoperability between PKCS#11 and CryptoAPI, evidencing APIs differences in structures and usages. We try to use functions of both the APIs to test extensively other attacks on sensitive keys stored in the tokens. In addition to vulnerabilities, we propose some solutions to set up the most possible secure configuration for hardware devices. Future work considers the Microsoft CNG APIs, and possible new integration with PKCS#11. |
it_IT |
dc.language.iso |
en |
it_IT |
dc.publisher |
Università Ca' Foscari Venezia |
it_IT |
dc.rights |
© Andrea Pretotto, 2014 |
it_IT |
dc.title |
Security and interoperability of APIs for cryptographic devices |
it_IT |
dc.title.alternative |
|
it_IT |
dc.type |
Master's Degree Thesis |
it_IT |
dc.degree.name |
Informatica - computer science |
it_IT |
dc.degree.level |
Laurea magistrale |
it_IT |
dc.degree.grantor |
Dipartimento di Scienze Ambientali, Informatica e Statistica |
it_IT |
dc.description.academicyear |
2012/2013, sessione straordinaria |
it_IT |
dc.rights.accessrights |
openAccess |
it_IT |
dc.thesis.matricno |
820955 |
it_IT |
dc.subject.miur |
INF/01 INFORMATICA |
it_IT |
dc.description.note |
|
it_IT |
dc.degree.discipline |
|
it_IT |
dc.contributor.co-advisor |
|
it_IT |
dc.provenance.upload |
Andrea Pretotto (820955@stud.unive.it), 2014-02-04 |
it_IT |
dc.provenance.plagiarycheck |
Riccardo Focardi (focardi@unive.it), 2014-02-17 |
it_IT |