Feeds

Boffins deduce chip's crypto just by looking at it

Smartcard hacking enters script-kiddie phase

The essential guide to IT transformation

Black Hat Hackers have released tools that unlock the software stored on heavily fortified chips so researchers can independently assess their security and spot weaknesses.

At the heart of the the release, which was announced Wednesday at the Black Hat Security conference in Las Vegas, is Degate, software developed by Martin Schobert for hardware experts to analyze small silicon structures. It has recently been refined so it can be used by amateurs to analyze chips the size of smartcards.

The tools are the work of cryptographer Karsten Nohl and hardware hacker Christopher Tarnovsky, who are both veteran reverse engineers of extremely sophisticated smart chips.

In 2008, Nohl and a team of colleagues cracked the encryption of the widely used Mifare Classic smartcard after physically dissecting its circuitry and analyzing it with a microscope and optical recognition software. The 18-month task uncovered a proprietary algorithm on one of the chips generated cryptographically weak outputs that allowed attackers to break or clone an individual card in just minutes.

And last year, Tarnovsky cracked the Infineon SLE 66PE one of the most locked-down chips ever put into a consumer device, through a grueling six-month process that involved an electron microscope, microscopic needles, and a steady supply of microcontrollers bought on the surplus market in Hong Kong.

“We found a way now to give everybody the ability to extract software out of smartcards,” Nohl, who is chief scientist at Berlin-based Security Research Labs, told The Register. Degate “can be used by less skilled people, but the results are even more expressive than they were before.”

He estimated that had Degate existed in its current form then, it would have taken a few weeks to reverse engineer the Mifare card.

He compared Degate to disassembler software used by researchers to analyze hundreds of thousands of lines of binary code to figure out how it works.

“Degate is essentially a disassembler in the hardware world,” Nohl said.

The software recognizes structures on chips, traces the connections between them, and pieces together the algorithms implemented by the circuits.

Nohl said the tools are intended to make it easier for software experts to assess the security of chips stored on credit cards and other types of smartcards.

“These smartcards are being abused today for storing proprietary protocols and keeping them away from independent analysis,” he said. “We want to help the software hackers to find more interesting software for analysis.” ®

Next gen security for virtualised datacentres

More from The Register

next story
Ice cream headache as black hat hacks sack Dairy Queen
I scream, you scream, we all scream 'DATA BREACH'!
Goog says patch⁵⁰ your Chrome
64-bit browser loads cat vids FIFTEEN PERCENT faster!
NIST to sysadmins: clean up your SSH mess
Too many keys, too badly managed
Scratched PC-dispatch patch patched, hatched in batch rematch
Windows security update fixed after triggering blue screens (and screams) of death
Researchers camouflage haxxor traps with fake application traffic
Honeypots sweetened to resemble actual workloads, complete with 'secure' logins
Attack flogged through shiny-clicky social media buttons
66,000 users popped by malicious Flash fudging add-on
New Snowden leak: How NSA shared 850-billion-plus metadata records
'Federated search' spaffed info all over Five Eyes chums
Three quarters of South Korea popped in online gaming raids
Records used to plunder game items, sold off to low lifes
Oz fed police in PDF redaction SNAFU
Give us your metadata, we'll publish your data
prev story

Whitepapers

5 things you didn’t know about cloud backup
IT departments are embracing cloud backup, but there’s a lot you need to know before choosing a service provider. Learn all the critical things you need to know.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Backing up Big Data
Solving backup challenges and “protect everything from everywhere,” as we move into the era of big data management and the adoption of BYOD.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?