|
Re: why "penny black" etc. are not very useful: msg#00278encryption.general
At 11:12 AM +0000 12/31/03, Ben Laurie wrote: Perry E. Metzger wrote: There is something else one can do that might help. The hashcash stamp algorithm can be designed to provide a strong, constant signature to virus detectors. For example, in my HEKS-1 algorithm, I populate a large array with pseudo random words. It would be easy enough to have some fraction (say 1/8th or 1/16th) of those words be a special constant (or one of a few special constants). There would be no way for the spammer to avoid exhibiting the same constants while generating stamps without incurring a severe computational penalty. So any stamp generation activity would be easy to detect. Since the signature would never change, the detection software could be built into the operating system (or even the CPU itself). Legitimate stamp generation would have to be distinguished, perhaps by code signing or some Touring test. A sufficiently clever virus writer with root access might be able commandeer the legitimate stamp generator. If this happens, periodic required updates of the hashcash software can be issued that thwart viruses in the field. Also a large number of countermeasure variants can be generated, making it hard for the virus to recognize them all. This reverses the tactical advantage normally enjoyed by virus writers. Illegitimate stamp generators are forced to present a fixed target while legitimate programs and counter measures can continuously morpf. Arnold Reinhold --------------------------------------------------------------------- The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to majordomo@xxxxxxxxxxxx |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: [ISN] Oh Dan Geer, where art thou?: 00278, Will Rodger |
|---|---|
| Next by Date: | Re: why "penny black" etc. are not very useful: 00278, Victor . Duchovni |
| Previous by Thread: | Re: why "penny black" etc. are not very usefuli: 00278, Ben Laurie |
| Next by Thread: | Re: why "penny black" etc. are not very useful: 00278, Victor . Duchovni |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |