{"title":"Hardening digital signatures against untrusted signature software","authors":"F. Buccafurri, G. Lax","doi":"10.1109/ICDIM.2007.4444217","DOIUrl":null,"url":null,"abstract":"Digital signature is nowadays a consolidated machinery allowing the management of electronic documents with full legal power. In this scenario, digital signature represents thus the key issue on every process of document de- materialization toward which both private and public organizations, as well as simple citizens, are moving quickly. Unfortunately, digital signature suffers from a severe vulnerability, directly deriving from the potential untrustworthy of the platform where the signature generation process runs. Indeed, the usage of secure smart cards does not eliminate the necessity of interfacing them with the PC. allowing the attacker to poison the PC itself to obtain signed documents with no intention from the subscriber. The problem is inherently unsolvable, provided that the current signature mechanism, as well as its legal value, are maintained. In this paper we give a solution with nice backward compatibility properties, working as a full solution in a restricted (but probable) set of untrustworthy cases, and mitigating the problem in the more general case.","PeriodicalId":198626,"journal":{"name":"2007 2nd International Conference on Digital Information Management","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2007 2nd International Conference on Digital Information Management","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICDIM.2007.4444217","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 7
Abstract
Digital signature is nowadays a consolidated machinery allowing the management of electronic documents with full legal power. In this scenario, digital signature represents thus the key issue on every process of document de- materialization toward which both private and public organizations, as well as simple citizens, are moving quickly. Unfortunately, digital signature suffers from a severe vulnerability, directly deriving from the potential untrustworthy of the platform where the signature generation process runs. Indeed, the usage of secure smart cards does not eliminate the necessity of interfacing them with the PC. allowing the attacker to poison the PC itself to obtain signed documents with no intention from the subscriber. The problem is inherently unsolvable, provided that the current signature mechanism, as well as its legal value, are maintained. In this paper we give a solution with nice backward compatibility properties, working as a full solution in a restricted (but probable) set of untrustworthy cases, and mitigating the problem in the more general case.