All Things Email

About | Contact

A Chosen Ciphertext Attack Against Several E-Mail Encryption Protocols

by Jonathan Katz, Bruce Schneier

Usenix, 2004-08-14
Language: English

Note: Proceedings of the 9th USENIX Security Symposium

External links

Full text: PDF

Information about this paper

Abstract

Several security protocols (PGP, PEM, MOSS, S/MIME, PKCS#7, CMS, etc.) have been developed to proivide confidentialtiy and authentication of electronic mail. These protocols are widely used and trusted for private communication over the Internet. We point out a potentially serous security hole in these protocols: any encrypted e-mail can be decrypted using a one-message, adaptive chosen-ciphertext attack which exploits the structure of the block cipher chaining models used. Although such attacks seem to be of primarily theoretical interest, we argue that they are feasible in the networked systems in which these e-mail protocols are used. We suggest several solutions to protect against this class of attack.

Creative Commons. Some Rights Reserved.
Copyright © 2004 Jochen Topf
Unless otherwise noted the contents on this site are licensed under the
Creative Commons Attribution-ShareAlike License.