Bitcoin Forum
November 14, 2024, 12:09:17 AM *
News: Check out the artwork 1Dq created to commemorate this forum's 15th anniversary
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Password fan memory scraping risk mitigation  (Read 452 times)
clemahieu (OP)
Full Member
***
Offline Offline

Activity: 238
Merit: 122


View Profile WWW
November 04, 2015, 04:49:01 AM
 #1

I put up a short blurb about a technique we use for mitigating the risk of memory scraping encryption keys.  I haven't seen others do it, we call it a password fan.  Basically we break apart the key in to a thousand or so separate places in memory and only reassemble it when actual signing needs to be done.

https://github.com/clemahieu/raiblocks/wiki/Password-fan

It's trivial to implement, I thought others may want to copy the technique.

RaiBlocks coin:  Instant blocks, no fees
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!