Diplomová práce

Analysis of EC keys in the wild

Bc. Jan Kubeša, učo 456462
Anotace

Kryptografie eliptických křivek (ECC) je široce používaná k zabezpečení aplikací které používáme na denní bázi.Kryptoměny jsou systém který využívá ECC aby zajistil decentralizovanou bezpečnost a integritu transakcí. Tato práce poskytuje přehled současného stavu ECC a více se soustředí na její využití v kryptoměnách, konrétně na měnu Bitcoin a analýzu účetní kniihy této kryptoměnu, tzv. blockchainu …více

Abstract

Elliptic curve cryptography (ECC) is widely used to secure applications that we use on daily basis. Cryptocurrencies are systems that rely on ECC for decentralized security and integrity of their ledger of transactions. This thesis provides an overview of the current state of ECC and focuses more on its use in cryptocurrencies, specifically Bitcoin and the analysis of its transaction ledger, blockchain …více

Zadání práce
The focus of the thesis is elliptic curve public-key key cryptography. Bos et al. in "Elliptic curve cryptography in practice" analyzed EC keys from (Bitcoin and TLS, SSH) in order to reveal unique mistakes and vulnerabilities that arise in implementations of ECC. They generated their own keys using highly non-random scalars and tried to find a match with a database of real-world keys. The goal of this thesis is to generalize their approach in two ways: 1. Larger sets and different types of own scalars. 2. Fingerprinting of keys based on the difference of public keys, assuming patterns in differences of the corresponding private keys. The thesis will cover the following parts: 1. Student will collect ECC data from widely used sources - at least public keys from Bitcoin will be used. 2. Student will survey fails of the random number generators in the past. Based on the results of this survey he will propose types of patterns that can be expected for improperly generated RNGs. 3. Student will propose and implement the tool that will generate given types of patterns and extract private keys or fingerprint the public keys. 4. Student will analyze use of faulty real-world keys and summarize the findings.
Práce zkontrolována:
16. 12. 2021 17:40, Mgr. Marek Sýs, Ph.D., učo 232886
Jazyk práce
angličtina angličtina
Termín obhajoby
2. 2. 2022
Práce byla úspěšně obhájena

Vedoucí

Mgr. Marek Sýs, Ph.D., učo 232886
KPSK FI MU

Oponent

doc. RNDr. Petr Švenda, Ph.D., učo 4085
KPSK FI MU

Masarykova univerzita Fakulta informatiky
Plán
Informační bezpečnost
  • Přidání souboru

    Soubor nebo složku lze nahrát pomocí tlačítka Přidat.
  • Další operace se soubory

    Podrobnosti lze zjistit označením příslušného řádku.
  • Pohled pro experty

    Pro častou práci je možné zvolit režim Více možností.
  • Vyhledávání souborů

    Vyhledávaný výraz můžete zadat přímo do adresního řádku.
  • Rychlý přístup k souborům

    Pomocí funkce Nedávné je možné se rychle vrátit k právě prohlíženým souborům. Oblíbené soubory je také možné označit Hvězdičkou.