Invention Grant
- Patent Title: Method to protect secrets against encrypted section attack
- Patent Title (中): 保护秘密免受加密部分攻击的方法
-
Application No.: US12188600Application Date: 2008-08-08
-
Publication No.: US08010804B2Publication Date: 2011-08-30
- Inventor: Masana Murase , Kanna Shimizu , Wilfred Edmund Plouffe, Jr.
- Applicant: Masana Murase , Kanna Shimizu , Wilfred Edmund Plouffe, Jr.
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Hamilton & Terrile, LLP
- Agent Stephen A. Terrile
- Main IPC: G06F11/30
- IPC: G06F11/30 ; H04L9/32 ; H04L9/00

Abstract:
A method, system, and computer-usable medium are disclosed for controlling unauthorized access to encrypted application program code. Predetermined program code is encrypted with a first key. The hash value of an application verification certificate associated with a second key is calculated by performing a one-way hash function. Binding operations are then performed with the first key and the calculated hash value to generate a third key, which is a binding key. The binding key is encrypted with a fourth key to generate an encrypted binding key, which is then embedded in the application. The application is digitally signed with a fifth key to generate an encrypted and signed program code image. To decrypt the encrypted program code, the application verification key certificate is verified and in turn is used to verify the authenticity of the encrypted and signed program code image. The encrypted binding key is then decrypted with a sixth key to extract the binding key. The hash value of the application verification certificate associated with the second key is then calculated and used with the extracted binding key to extract the first key. The extracted first key is then used to decrypt the encrypted application code.
Public/Granted literature
- US20100037068A1 Method to Protect Secrets Against Encrypted Section Attack Public/Granted day:2010-02-11
Information query