Computer Science

Y. Yarom, Daniel Genkin, N. Heninger

2016.8.17Journal of Cryptographic Engineering

DOI: 10.1007/s13389-017-0152-y

tlooto Summary

It is shown that scatter-gather is not constant time, and a cache timing attack against the scatter–gather implementation used in the modular exponentiation routine in OpenSSL version 1.0.2f is implemented.

Abstract

Abstract is not available.

Citation format

YAROM, Y.; GENKIN, Daniel; HENINGER, N. Cachebleed: A timing attack on openssl constant-time RSA. Journal of Cryptographic Engineering, 2016, 7: 99–112.