Diplomová práce

Security analysis of cryptocurrency hardware wallets

Bc. Milan Šorf, učo 500362
Anotace

Hardwarové peněženky pro kryptoměny jsou zařízení určená k bezpečnému ukládání klíčů a podepisování kryptoměnových transakcí. Základní myšlenka těchto zařízení je, že tajemství nikdy neopustí peněženku, která není přímo připojena k internetu a vyžaduje lidskou interakci. Kritickou součástí generování nové peněženky i podepisování transakcí je správně fungující generátor náhodných čísel. I když musí …více

Abstract

Cryptocurrency hardware wallets are devices designed to securely store keys and sign cryptocurrency transactions. The basic idea behind those devices is that the secrets never leave the wallet, which is not directly connected to the internet and requires human interaction. A critical part of both generating a new wallet and signing a transaction is a correctly working random number generator. Even …více

Zadání práce
The goal of this thesis is to systematically analyze implementations of cryptographic functions as used by cryptocurrency wallets, including those that do not provide open-source code.
The theoretical part of the work will provide an overview of cryptographic operations typically used in the context of cryptocurrency wallets and describe relevant protocols, standards, and known non-standard approaches. It will also provide an overview of existing attacks against insufficient or poorly implemented security mechanisms.
The practical part will propose a methodology for systematic testing of hardware cryptocurrency wallets, create the necessary automation tools and apply them to at least ten different devices available in the CRoCS laboratory. The data analysis of the data obtained will be performed, together with an evaluation and discussion of the security impact on tested devices.

Literature:
A. Parák, Security building blocks of cryptocurrencies hardware wallets, Masaryk University, 2022, https://is.muni.cz/auth/th/xym2w/
Arapinis et. al., A Formal Treatment of Hardware Wallets, Financial Cryptography and Data Security. LNCS 11598. Springer, Cham. https://doi.org/10.1007/978-3-030-32101-7_26
Práce zkontrolována:
14. 12. 2022 14:09, doc. RNDr. Petr Švenda, Ph.D., učo 4085
Plný text práce
24,6 MB / soubor PDF
Jazyk práce
angličtina angličtina
Termín obhajoby
25. 1. 2023
Práce byla úspěšně obhájena

Vedoucí

doc. RNDr. Petr Švenda, Ph.D., učo 4085
KPSK FI MU

Oponent

Lukasz Michal Chmielewski, PhD, učo 247858
KPSK FI MU

  • Přidání souboru

    Soubor nebo složku lze nahrát pomocí tlačítka Přidat.
  • Další operace se soubory

    Podrobnosti lze zjistit označením příslušného řádku.
  • Pohled pro experty

    Pro častou práci je možné zvolit režim Více možností.
  • Vyhledávání souborů

    Vyhledávaný výraz můžete zadat přímo do adresního řádku.
  • Rychlý přístup k souborům

    Pomocí funkce Nedávné je možné se rychle vrátit k právě prohlíženým souborům. Oblíbené soubory je také možné označit Hvězdičkou.