Cryptanalysis of Satellite Phone Encryption Algorithms
From the abstract of the paper: In this paper, we analyze the encryption systems used in the two existing (and competing) satphone standards, GMR-1 and GMR-2. The first main contribution is that we were able to completely reverse engineer the encryption algorithms employed. Both ciphers had not been publicly known previously. We describe the details of the recovery of the two algorithms from freely available DSP-firmware updates for satphones, which included the development of a custom disassembler and tools to analyze the code, and extending prior work on binary analysis to efficiently identify cryptographic code. We note that these steps had to be repeated for both systems, because the available binaries were from two entirely different DSP processors. Perhaps somewhat surprisingly, we found that the GMR-1 cipher can be considered a proprietary variant of the GSM A5/2 algorithm, whereas the GMR-2 cipher is an entirely new design. The second main contribution lies in the cryptanalysis of the two proprietary stream ciphers. We were able to adopt known A5/2 ciphertext-only attacks to the GMR-1 algorithm with an average case complexity of 232 steps. With respect to the GMR-2 cipher, we developed a new attack which is powerful in a known-plaintext setting. In this situation, the encryption key for one session, i.e., one phone call, can be recovered with approximately 5065 bytes of key stream and a moderate computational complexity. A major finding of our work is that the stream ciphers of the two existing satellite phone systems are considerably weaker than what is state-oft-he-art in symmetric cryptography. Press release. And news stories....
Source: Schneier on Security - Thursday, 16 February
Related articles:
- Older News
- 4Vote! Alan Turing Cryptanalysis Papers
Schneier on Security - Monday, 23 April
- 4Vote! The Fastest-Ever Random Number Generator Conjures Digits from Subatomic Noise in a Vacuum
PopSci.com - Science - Wednesday, 11 April
- 6Vote! Pay by phone: More merchants embrace direct mobile billing
PhysOrg - Friday, 6 April
- 4Vote! Research team discovers new quantum encryption method to foil hackers
LabSpaces - Monday, 2 April
- 2Vote! U of T-led research team discovers new quantum encryption method to foil hackers
e! Science News - Monday, 2 April
- 1Vote! Researchers discover new quantum encryption method to foil hackers
PhysOrg - Monday, 2 April
- 5Vote! Can the NSA Break AES?
Schneier on Security - Thursday, 22 March
- 7Vote! Dish closes on 2 purchases key to broadband plans
PhysOrg - Monday, 12 March
- 13Vote! NASA's Lax Security Leaves Information for Thieves, Hackers
(ContributorNetwork)
Yahoo Science News - Saturday, 3 March
- 7Vote! Scientists break satellite telephony security standards
PhysOrg - Wednesday, 8 February
- 17Vote! FPGA based prime number generator for RSA encryption
Embedds.com - Thursday, 22 December
- 18Vote! Should I Upgrade My Android Phone Now, or Wait?
Lifehacker - Wednesday, 7 December
- 12Vote! Shredder Challenge solved
PhysOrg - Monday, 5 December
- 7Vote! Full-Disk Encryption Works
Schneier on Security - Friday, 2 December
- 10Vote! Research team finds disk encryption foils law enforcement efforts
PhysOrg - Monday, 21 November, 2011
- 15Vote! How to Create a Personal Encryption Scheme to Easily Hide Your Data in Plain Sight
Lifehacker - Friday, 4 November, 2011
- 6Vote! How to Create a Personal Information Encryption Scheme to Easily Hide Your Data in Plain Sight
Lifehacker - Friday, 4 November, 2011
- 14Vote! Murdoch lawyer accused BBC of phone hacking vendetta
(Reuters)
Yahoo Science News - Wednesday, 26 October, 2011
- 6Vote! German researchers break W3C XML encryption standard
PhysOrg - Wednesday, 19 October, 2011
- 18Vote! World's toughest encryption scheme found 'vulnerable'
PhysOrg - Tuesday, 23 August, 2011