<div class="csl-bib-body">
<div class="csl-entry">Hartl, A., Annessi, R., & Zseby, T. (2018). Subliminal Channels in High-Speed Signatures. <i>Journal of Wireless Mobile Networks, Ubiquitous Computing, and Dependable Applications (JoWUA)</i>, <i>9</i>(1), 30–53. https://doi.org/10.22667/JOWUA.2018.03.31.030</div>
</div>
-
dc.identifier.issn
2093-5382
-
dc.identifier.uri
http://hdl.handle.net/20.500.12708/144435
-
dc.description.abstract
Subliminal channels in digital signatures can be used to secretly transmit information between two or more communication partners. If subliminal messages are embedded in standard signatures in network protocols, neither network operators nor legitimate receivers notice any suspicious activity. Subliminal channels already exist in older signatures, such as ElGamal and ECDSA. Nevertheless, in classical network protocols such signatures are used only sparsely, e.g., during authentication in the protocol setup. Therefore, the overall potential subliminal bandwidth and their usability as carrier for hidden messages or information leakage is limited. However, with the advent of high-speed signatures such as EdDSA and MQ-based signatures such as PFlash or MQQ-SIG, scenarios such as signed broadcast clock synchronization or signed sensor data export become feasible. In those scenarios large sequences of packets are each individually signed and then transferred over the network. This increases the available bandwidth for transmitting subliminal information significantly and makes subliminal channels usable for large scale data exfiltration or even the operation of command and control structures. In this paper, we show the existence of subliminal channels in recent high-speed signatures and discuss the implications of the ability to hide information in a multitude of packets in different example scenarios: broadcast clock synchronization, signed sensor data export, and classical TLS. In a previous paper we already presented subliminal channels in the EdDSA signature scheme. We here extend this work by investigating subliminal channels in MQ signatures. We present specific results for existing MQ signatures but also show that whole classes of MQ-based methods for constructing signature schemes are prone to the existence of subliminal channels. We then discuss the applicability of different countermeasures against subliminal channels but conclude that none of the existing solutions can sufficiently protect against data exfiltration in network protocols secured by EdDSA or MQ signatures.
en
dc.language.iso
en
-
dc.relation.ispartof
Journal of Wireless Mobile Networks, Ubiquitous Computing, and Dependable Applications (JoWUA)
-
dc.subject
Information leakage
-
dc.subject
Insider threats
-
dc.subject
Subliminal channel
-
dc.subject
EdDSA
-
dc.title
Subliminal Channels in High-Speed Signatures
en
dc.type
Artikel
de
dc.type
Article
en
dc.description.startpage
30
-
dc.description.endpage
53
-
dc.type.category
Original Research Article
-
tuw.container.volume
9
-
tuw.container.issue
1
-
tuw.journal.peerreviewed
true
-
tuw.peerreviewed
true
-
tuw.researchTopic.id
I7
-
tuw.researchTopic.name
Telecommunication
-
tuw.researchTopic.value
100
-
dcterms.isPartOf.title
Journal of Wireless Mobile Networks, Ubiquitous Computing, and Dependable Applications (JoWUA)
-
tuw.publication.orgunit
E389-01 - Forschungsbereich Networks
-
tuw.publisher.doi
10.22667/JOWUA.2018.03.31.030
-
dc.description.numberOfPages
24
-
wb.sciencebranch
Elektrotechnik, Elektronik, Informationstechnik
-
wb.sciencebranch.oefos
2020
-
wb.facultyfocus
Telekommunikation
de
wb.facultyfocus
Telecommunications
en
wb.facultyfocus.faculty
E350
-
item.languageiso639-1
en
-
item.openairetype
research article
-
item.grantfulltext
none
-
item.fulltext
no Fulltext
-
item.cerifentitytype
Publications
-
item.openairecristype
http://purl.org/coar/resource_type/c_2df8fbb1
-
crisitem.author.dept
E389-01 - Forschungsbereich Networks
-
crisitem.author.dept
E389 - Institute of Telecommunications
-
crisitem.author.dept
E389-01 - Forschungsbereich Networks
-
crisitem.author.orcid
0000-0003-4376-9605
-
crisitem.author.orcid
0000-0002-5391-467X
-
crisitem.author.parentorg
E389 - Institute of Telecommunications
-
crisitem.author.parentorg
E350 - Fakultät für Elektrotechnik und Informationstechnik