TC: Medium: Collaborative Research: Random Number Generation and Use in Virtualized Environments
TC: Medium: Collaborative Research: Random Number Generation and Use in Virtualized Environments
批准号:
1065288
负责人:
Yevgeniy Dodis
金额:
$44.99万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2011
资助国家:
美国
项目状态:
已结题
起止时间:
2011-09-01 至 2016-08-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Hypervisors and virtualization simplify application and system deployment. The many benefits of virtualization have resulted in a headlong rush into a world where virtualization is ubiquitous. However, virtualization can break assumptions that applications and operating systems make about the platform. This research investigates an important case: the intersection of virtualization and random-number generators (RNGs). Strong randomization is requisite in today's computer security tools.Deployment of existing RNGs in virtualized settings introduces vulnerabilities. When RNGs fail, catastrophic attacks can be mounted on the the cryptographic services upon which modern information security relies. VM snapshots, which can be used to reset a VM and its contained applications, can cause RNGs to repeat outputs and break some encryption systems. Moreover, the environment presented by virtualization can degrade the quality of RNG outputs because entropy sources are virtual rather than physical hardware and hence lower quality.This research develops the theoretical and architectural foundations for the next generation of RNG designs and RNG-using mechanisms. The investigators quantify the scope of VM-introduced vulnerabilities using dynamic and static analysis of program source code. They develop new, secure RNG systems for use in VMs. Finally, the reserearch advances cryptographic theory by extending provable security techniques to better account for the realities of RNG deployment and use in virtualized settings.This work not only provides practical impact via stronger RNG systems but also opens up new directions in cryptographic theory in the important areas of generating and using randomness.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: CORE: Medium: Making Crypto Too BIG To Break
-
批准号:2055578
-
项目类别:Standard Grant
-
资助金额:$60.0万
-
财政年份:2021
-
负责人:Yevgeniy Dodis
-
依托单位:
SaTC: CORE: Small: On the Power of Preprocessing and Non-Uniformity
-
批准号:1815546
-
项目类别:Standard Grant
-
资助金额:$38.0万
-
财政年份:2018
-
负责人:Yevgeniy Dodis
-
依托单位:
TWC: Small: On the Design of Secure Hash Functions and Block Ciphers
-
批准号:1619158
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2016
-
负责人:Yevgeniy Dodis
-
依托单位:
TWC: Small: On Imperfect Randomness and Leakage-Resilient Cryptography
-
批准号:1319051
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2013
-
负责人:Yevgeniy Dodis
-
依托单位:
TWC: Medium: Collaborative: The Theory and Practice of Key Derivation
-
批准号:1314568
-
项目类别:Standard Grant
-
资助金额:$66.88万
-
财政年份:2013
-
负责人:Yevgeniy Dodis
-
依托单位:
TC: Small: The Design of Secure Hash Functions and Block Ciphers
-
批准号:1017471
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2010
-
负责人:Yevgeniy Dodis
-
依托单位:
CT-ISG: On Imperfect Randomness and Exposure-Resilient Cryptography
-
批准号:0831299
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2008
-
负责人:Yevgeniy Dodis
-
依托单位:
Collaborative Research: Rigorous Cryptography from Biometrics and Other Noisy Data
-
批准号:0515121
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2005
-
负责人:Yevgeniy Dodis
-
依托单位:
Collaborative Research: Mitigating the Damaging Effects of Key Exposure
-
批准号:0311095
-
项目类别:Continuing Grant
-
资助金额:$18.0万
-
财政年份:2003
-
负责人:Yevgeniy Dodis
-
依托单位:
CAREER: Exposure-Resilient Cryptography
-
批准号:0133806
-
项目类别:Continuing Grant
-
资助金额:$33.0万
-
财政年份:2002
-
负责人:Yevgeniy Dodis
-
依托单位:
海外基金