Skip to main navigation Skip to search Skip to main content

acTVsM! - Advanced Cryptographic Trusted Virtual Security Module

  • Pirker, Martin (Attendee / Assistant)
  • Tögl, Ronald (Attendee / Assistant)
  • Niederl, Andreas (Attendee / Assistant)
  • Bloem, Roderick (Project manager)

Project: Research project

Project Details

Description

Public Key Infrastructures (PKIs) are becoming the global business community's choice for authentication, digital signature and encryption solutions. Trustworthy PKI applications ultimately rely on the secure handling of private key material. A common way to secure the private key material of PKI solutions is to use cost intensive Hardware Security Modules (HSM). During the course of this project we will try to realize a software security module capable of acting as a secure key store, with the benefits of a hardware security module by taking advantage of Trusted Computing technology. Trusted Computing is an evolving concept, which tries to enhance the security of existing platforms against software-based attacks. Although the number of applications is still rather limited in practice, major vendors now ship hardware that implements Trusted Computing concepts. The related field of hardware-supported virtualization has seen a recent renaissance in the commodity PC and server market. This was due its potential to efficiently utilize and share server hardware and to simplify maintenance. A relatively new approach is to employ hardware virtualization to isolate security critical code and to use trusted computing to create a trusted execution environment. A major and sometimes the only possible point of attack for malicious entities are the external interfaces of a security component. Therefore it is imperative to protect them. Based on the encouraging results of formal protocol analysis, new classes of attacks have been discovered in the APIs of security modules. Project acTvSM will tie these technologies together to create and demonstrate a novel class of secure software services.
StatusFinished
Effective start/end date1/04/0931/03/11

Fingerprint

Explore the research topics touched on by this project. These labels are generated based on the underlying awards/grants. Together they form a unique fingerprint.
  • Verification of a Trusted Virtual Security Module

    Tögl, R., 2013, Analysis of Security APIs (Dagstuhl Seminar 12482). Dagstuhl: Schloss Dagstuhl - Leibniz-Zentrum für Informatik, p. 166-166 (Dagstuhl Reports).

    Research output: Chapter in Book/Report/Conference proceedingConference paperpeer-review

  • Waltzing the Bear, or: A Trusted Virtual Security Module

    Tögl, R., Reimair, F. & Pirker, M., 2012, Public Key Infrastructures, Services and Applications: 9th European Workshop, EuroPKI 2012, Pisa, Italy, September 13-14, 2012, Revised Selected Papers. Berlin; Heidelberg: Springer Verlag, p. 145-160 (Lecture Notes in Computer Science; vol. 7868).

    Research output: Chapter in Book/Report/Conference proceedingConference paperpeer-review

    Open Access
    File
  • acTvSM: A Dynamic Virtualization Platform for Enforcement of Application Integrity

    Tögl, R., Pirker, M. & Gissing, M., 2011, (Accepted/In press) Trusted Systems: Second International Conference, INTRUST 2010, Beijing, China, December 13-15, 2010, Revised Selected Papers. Berlin; Heidelberg: Springer Verlag, p. 326-345 (Lecture Notes in Computer Science; vol. 6802).

    Research output: Chapter in Book/Report/Conference proceedingConference paperpeer-review

    Open Access
    File