[E-Lang] Timing Analysis of Keystrokes and Timing Attacks on SSH

Ben Laurie ben@algroup.co.uk
Wed, 22 Aug 2001 21:55:38 +0100


Bill Frantz wrote:
> 
> This message just came forwarded to the cryptography mailing list.  I
> suspect that some of the techniques Song et. al. are using to attack SSH
> could also be used to attack E machine-to-machine messages.  I haven't had
> a chance to carefully examine the paper yet.

The important attack here is timing analysis on keystrokes - so although
traffic analysis may well yield some amusement with E, it seems clear it
would be of a different ilk to this problem except when the
inter-machine messages are linked with, err, keystrokes.

Cheers,

Ben.

--
http://www.apache-ssl.org/ben.html

"There is no limit to what a man can do or how far he can go if he
doesn't mind who gets the credit." - Robert Woodruff