Security and interoperability of APIs for cryptographic devices

DSpace/Manakin Repository

Show simple item record

dc.contributor.advisor Focardi, Riccardo it_IT
dc.contributor.author Pretotto, Andrea <1989> it_IT
dc.date.accessioned 2014-02-04 it_IT
dc.date.accessioned 2014-03-29T10:44:29Z
dc.date.available 2015-04-07T13:58:29Z
dc.date.issued 2014-03-11 it_IT
dc.identifier.uri http://hdl.handle.net/10579/4332
dc.description.abstract Starting from previous vulnerability analysis of the standard PKCS#11, we describe Microsoft CryptoAPI interface identifying all the possible attacks that can be performed to discover secret keys values, in hardware devices which support key management by both the standards. First, we formalize a model for CAPI, then a super model for both the standards, to describe in a unique way all the operations that can be performed. We consider interoperability between PKCS#11 and CryptoAPI, evidencing APIs differences in structures and usages. We try to use functions of both the APIs to test extensively other attacks on sensitive keys stored in the tokens. In addition to vulnerabilities, we propose some solutions to set up the most possible secure configuration for hardware devices. Future work considers the Microsoft CNG APIs, and possible new integration with PKCS#11. it_IT
dc.language.iso en it_IT
dc.publisher Università Ca' Foscari Venezia it_IT
dc.rights © Andrea Pretotto, 2014 it_IT
dc.title Security and interoperability of APIs for cryptographic devices it_IT
dc.title.alternative it_IT
dc.type Master's Degree Thesis it_IT
dc.degree.name Informatica - computer science it_IT
dc.degree.level Laurea magistrale it_IT
dc.degree.grantor Dipartimento di Scienze Ambientali, Informatica e Statistica it_IT
dc.description.academicyear 2012/2013, sessione straordinaria it_IT
dc.rights.accessrights openAccess it_IT
dc.thesis.matricno 820955 it_IT
dc.subject.miur INF/01 INFORMATICA it_IT
dc.description.note it_IT
dc.degree.discipline it_IT
dc.contributor.co-advisor it_IT
dc.provenance.upload Andrea Pretotto (820955@stud.unive.it), 2014-02-04 it_IT
dc.provenance.plagiarycheck Riccardo Focardi (focardi@unive.it), 2014-02-17 it_IT


Files in this item

This item appears in the following Collection(s)

Show simple item record