<?xml version="1.0"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title>Engadget - Comments for </title>
<link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link>
<description>Engadget Comments for </description>
<image>
<url>http://www.engadget.com/media/feedlogo.gif</url>
<title>Engadget</title>
<link>http://www.engadget.com</link>
</image>
<language>en-us</language>
<copyright>Copyright 2012 Weblogs, Inc. The contents of this feed are available for non-commercial use only.</copyright>
<generator>Blogsmith http://www.blogsmith.com/</generator><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[If humans make it, Humans can destroy it.<br><br>Its that simple.]]></description><dc:creator><![CDATA[Max]]></dc:creator><pubDate>Mar 9th 2010 2:54AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@MaxL <br><br>That's why some people only buy Alienware™. ]]></description><dc:creator><![CDATA[Blackstar]]></dc:creator><pubDate>Mar 9th 2010 3:06AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Humans didn't make math. The math behind RSA encryption is still sound. Pentiums suck. ]]></description><dc:creator><![CDATA[Joe]]></dc:creator><pubDate>Mar 9th 2010 6:21AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@MaxL<br>I don't get it, doesn't this mean they need access to the private key in the first place? This requires tampering with the CPU that is encrypting my message with my private key. If you have that access, just take my private key already... If I'm sending an encrypted message over the internet, nobody can fluctuate my computers' power supply before it's already encrypted and shot off to the interwebs.<br><br>I guess a well implemented virus can do such a thing, but then again, if there's a virus that can 'carefully starve my CPU', it can probably access pretty much anything on my computer anyway.]]></description><dc:creator><![CDATA[Ariel Horwitz]]></dc:creator><pubDate>Mar 9th 2010 6:46AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@JoeRodricks  <br><br>They used P4s to get the key from a SPARC]]></description><dc:creator><![CDATA[jodosh]]></dc:creator><pubDate>Mar 9th 2010 9:41AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@MaxL <br>I hate these kind of posts that induce completely unfounded and unrealistic paranoia. First of all this is specific to an implementation, THEIR implementation that relies on meticulously placed data in memory and what not. Anything can be setup to fail like this. You do not have access to the server in any real world application. This is not a reason to be even slightly concerned.<br><br>It's like being concerned that a midget could be hiding inside your safe and will open it when a burglar comes by.]]></description><dc:creator><![CDATA[Kurian]]></dc:creator><pubDate>Mar 9th 2010 11:18AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@Kurian  <br><br>Theirs a midget in my safe? why din't anyone tell me this sooner??? I have to get home!]]></description><dc:creator><![CDATA[Scuba Steve]]></dc:creator><pubDate>Mar 9th 2010 3:14PM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Paranoia, even as pun, wasn't intended... I suppose!<br>However, I think the beauty is in the process, and how they did it... <br><br>]]></description><dc:creator><![CDATA[onproxy]]></dc:creator><pubDate>Mar 9th 2010 9:03PM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Better late than never. <br>/. reported this ages ago.]]></description><dc:creator><![CDATA[MikeZ]]></dc:creator><pubDate>Mar 9th 2010 2:55AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Downranking a comment because Engadget reports old news?]]></description><dc:creator><![CDATA[MikeZ]]></dc:creator><pubDate>Mar 9th 2010 10:37AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Go Blue :)]]></description><dc:creator><![CDATA[shooks]]></dc:creator><pubDate>Mar 9th 2010 2:57AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[It's unlikely that an attacker would have access to the server hardware to cause power fluctuations.]]></description><dc:creator><![CDATA[Joe]]></dc:creator><pubDate>Mar 9th 2010 2:58AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[You're right, and there's no need to panic, but the fact remains that these hackers cracked industrial strength security using a truly innovative technique.]]></description><dc:creator><![CDATA[linuxamp]]></dc:creator><pubDate>Mar 9th 2010 3:42AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@jeblis <br>A year ago Cisco had to recall a bunch of their switches/routers that had been manufactured in China and delivered to US agencies because the Chinese had manufactured weaknesses into them in order to aid their hackers.  <br><br>Where are your power supplies made?  Is anything out of the question in this day and age? ]]></description><dc:creator><![CDATA[Matt]]></dc:creator><pubDate>Mar 9th 2010 4:29AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@formetopoopon  <br>link please I would love to read that store.]]></description><dc:creator><![CDATA[k2001]]></dc:creator><pubDate>Mar 9th 2010 5:04AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@linuxamp <br><br>Indeed! That is one helluva clever approach.<br><br>I thought I might add though that they don't need access to your server room. If you think about it one carefully placed router tweaked internally would suffice ]]></description><dc:creator><![CDATA[Cy Starkman]]></dc:creator><pubDate>Mar 9th 2010 5:25AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@formetopoopon  yes, link please - i can't find it on google.]]></description><dc:creator><![CDATA[Tim]]></dc:creator><pubDate>Mar 9th 2010 5:46AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@linuxamp  <br>They did not crack anything. If your server is compromised, you can just transfer the private key via 100s of methods. Including just reading it off the HDD since you have so much access to adjust the CPU voltage.]]></description><dc:creator><![CDATA[Kurian]]></dc:creator><pubDate>Mar 9th 2010 11:22AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@jeblis <br>It's not really that hard to imagine a scenario where sensitive items fall into the wrong (or right) hands.<br><br>Think of all the times that a laptop with sensitive data has been lost or stolen.  Or in a war zone where a officers with toughbooks full of troop movements or deployment info being ambushed or simply having their laptop stolen.<br><br>There's also the NSA law enforcement line.  Any equipment seized in a raid can be cracked.  Very helpful in prosecuting people breaking the law who are smart enough to encrypt their data.  This crack could lead to busting of child pornography rings.]]></description><dc:creator><![CDATA[Kerensky97]]></dc:creator><pubDate>Mar 9th 2010 11:25AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Or you could just beat up the admin until he gives you the password...]]></description><dc:creator><![CDATA[PyRo1509]]></dc:creator><pubDate>Mar 9th 2010 3:01AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@PyRo1509 <br>I already know the password. This is just for fun. *CLUB*]]></description><dc:creator><![CDATA[Kurian]]></dc:creator><pubDate>Mar 9th 2010 11:23AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@PyRo1509 <br><br>Brute force FTW!]]></description><dc:creator><![CDATA[Matt L]]></dc:creator><pubDate>Mar 9th 2010 12:08PM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Practical or not, that is an amazing accomplishment. ]]></description><dc:creator><![CDATA[spectracide]]></dc:creator><pubDate>Mar 9th 2010 3:02AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Die hard did it first]]></description><dc:creator><![CDATA[AJ]]></dc:creator><pubDate>Mar 9th 2010 3:10AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[So, if somebody steals your supercomputer, they might be able to hack it?]]></description><dc:creator><![CDATA[Dr_white]]></dc:creator><pubDate>Mar 9th 2010 3:17AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Pentium 4 ftw!]]></description><dc:creator><![CDATA[digitallysick]]></dc:creator><pubDate>Mar 9th 2010 3:21AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[It's not since 1977... iit's since 1997 when Rivest, Shamir  and Adleman first used that algorithm that was discovered in 1973 by a British mathematician working for the UK intelligence agency (GCHQ)... just saying. True story; back in 2002, I met a man at work who had a son (he was just that year) that invented a way to break most of the encryption algorithms used at that time, but then a couple of FBI agents (Not NSA) came with a document (this was in Chile by the way) that stated that the US and Chile had an agreement (as well as most of the world) that was designed to ensure two things; first that nobody developed a stronger algorithm that blocked US ability to scan info around the world and two; that encryption algorithms remain safe for regular people to use. So I think this guys will soon hear from them :)]]></description><dc:creator><![CDATA[Patricio Arnechino]]></dc:creator><pubDate>Mar 9th 2010 3:21AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@Patricio Arnechino <br><br>Breaks like these are presented all the time. There was even one about Rijndael that could be broken, though it was a few rounds less than what AES-128 required.<br><br>Me thinks even the US government would welcome such research as it is better to be discovered now by a good guy instead of being instantly exploited by a bad guy.]]></description><dc:creator><![CDATA[rnieto]]></dc:creator><pubDate>Mar 9th 2010 4:04AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@Patricio Arnechino: that just sounds like bull... Noone can prevent you from using any encryption-algorithm..]]></description><dc:creator><![CDATA[SuperDre]]></dc:creator><pubDate>Mar 9th 2010 4:16AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@Patricio Arnechino You're not right in what you say, RSA was in use way before 1997. The rest of your comment is pure conspiracy junk.]]></description><dc:creator><![CDATA[Chris]]></dc:creator><pubDate>Mar 9th 2010 8:16AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[2048 bit encryption it is then!]]></description><dc:creator><![CDATA[sacredgeometry]]></dc:creator><pubDate>Mar 9th 2010 3:26AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@sacredgeometry In this method encryption length will not greatly increase processing time]]></description><dc:creator><![CDATA[peterthorpe81]]></dc:creator><pubDate>Mar 9th 2010 4:33AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@petebob796  im sure thats only true up until a point]]></description><dc:creator><![CDATA[sacredgeometry]]></dc:creator><pubDate>Mar 9th 2010 5:20AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@sacredgeometry - usually these bit-flipping attacks are more linear than exponential (like brute force is), so, mathematically speaking, doubling the key size doesn't slow down an attacker - it'll take 10 days instead of 5.]]></description><dc:creator><![CDATA[morcheeba]]></dc:creator><pubDate>Mar 9th 2010 10:05AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Sorry, do I understand this correctly that this "hack" requires a physical access to the power supply of a server with the private key? If they have access to that, why not just steal the whole box? To me that'd be the bigger issue.<br><br>Also, would that work on a server running in a VM?<br><br>It's amazing they did that (talk about precision when you need to generate one error per clock cycle), but it's not a real threat.]]></description><dc:creator><![CDATA[Stan-O]]></dc:creator><pubDate>Mar 9th 2010 3:35AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@StanO Encryption like this isn't always just used on a server hidden away somewhere. For instance the xbox 360 signs games in a similar way.]]></description><dc:creator><![CDATA[peterthorpe81]]></dc:creator><pubDate>Mar 9th 2010 4:31AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Hackers... What don't they know !!]]></description><dc:creator><![CDATA[analogx]]></dc:creator><pubDate>Mar 9th 2010 3:50AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@analogx <br>How to stop themselves from hacking...]]></description><dc:creator><![CDATA[mr2dxtream]]></dc:creator><pubDate>Mar 9th 2010 4:22AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@brolin  <br>your mom?]]></description><dc:creator><![CDATA[Kev007]]></dc:creator><pubDate>Mar 9th 2010 5:15AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[If they can adjust how much power is getting to your server you're already screwed. ]]></description><dc:creator><![CDATA[brantyr]]></dc:creator><pubDate>Mar 9th 2010 4:30AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@Bratyr Not if your equipment is behind a UPS. Which servers often are. Controlling Vcore and other voltages of a computer requires hardware, BIOS, and/or root access.]]></description><dc:creator><![CDATA[kingu]]></dc:creator><pubDate>Mar 9th 2010 5:13AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@kingu<br>I meant if they have that level of physical access already you have a problem since adjusting power to the server would require access to the servers actual power supply if not motherboard not simply the mains feeding it - any blips you caused in the mains would be smoothed out by the PSU or the server would just shut off.]]></description><dc:creator><![CDATA[brantyr]]></dc:creator><pubDate>Mar 9th 2010 5:22AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA["until RSA hopefully fixes the flaw"<br><br>"RSA (which stands for Rivest, Shamir and Adleman who first publicly described it) is an algorithm for public-key cryptography[1]. It is the first algorithm known to be suitable for signing as well as encryption, and was one of the first great advances in public key cryptography."<br><br>How can an algorithm fix itself?]]></description><dc:creator><![CDATA[albert]]></dc:creator><pubDate>Mar 9th 2010 7:41AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@bergwitz RSA also refers to a company: <a href="http://en.wikipedia.org/wiki/RSA_Security" rel="nofollow">http://en.wikipedia.org/wiki/RSA_Security</a><br><br>... but this kind of implementation flaw is unfixable in the algorithm. Not to worry, though - it's always been up to sysadmins to provide physical & control-level security for their computers.]]></description><dc:creator><![CDATA[morcheeba]]></dc:creator><pubDate>Mar 9th 2010 10:10AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Since it seems you would need physical access to the machine, the only thing I can see this being useful for is breaking disc encryption. If the FBI/NSA/KGB/MI5/Stasi confiscates your heavily encrypted drive, they might be able to break the encryption using this technique....assuming they don't have a better one already that they're not telling us about. :)]]></description><dc:creator><![CDATA[ragtag]]></dc:creator><pubDate>Mar 9th 2010 7:57AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[@ragtag half correct. This technique relies on the cpu already knowing the key; if you've got that, then there are more invasive and easier techniques to get that. If you've got just a HD and no key, then this won't help you.]]></description><dc:creator><![CDATA[morcheeba]]></dc:creator><pubDate>Mar 9th 2010 10:12AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[not applicable, most probably not reproducible. ]]></description><dc:creator><![CDATA[varera]]></dc:creator><pubDate>Mar 9th 2010 9:29AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[So then this is how ninjas hack in to our servers...]]></description><dc:creator><![CDATA[Spiky haired boy]]></dc:creator><pubDate>Mar 9th 2010 10:28AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[2048 it is.]]></description><dc:creator><![CDATA[Tohe]]></dc:creator><pubDate>Mar 9th 2010 11:23AM</pubDate></item><item><title><![CDATA[Comments on ]]></title><link>http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</link><guid isPermaLink="true">http://www.engadget.com/2010/03/09/1024-bit-rsa-encryption-cracked-by-carefully-starving-cpu-of-ele/</guid><description><![CDATA[Could be a possible technique for getting keys from 'anti-consumer' technology where a consumer box already has the key to decode movies/games/etc, but it's difficult to extract.]]></description><dc:creator><![CDATA[sam]]></dc:creator><pubDate>Mar 9th 2010 4:41PM</pubDate></item></channel></rss>
