[Cryptech Tech] RAM as source of entropy

Leif Johansson leifj at sunet.se
Sun Feb 9 09:31:58 UTC 2014


On 2014-02-09 00:32, Steven Bellovin wrote:
> On Feb 8, 2014, at 6:28 PM, Randy Bush <randy at psg.com> wrote:
>
>>> https://www.usenix.org/legacy/event/sec08/tech/full_papers/halderman/halderman_html/
>>> might have some data on that.
>> seen anything on SRAM?
> No.
>> i suspect part of what may be going on here is some of us are nervous
>> using memory as an entropy source because of that and other DRAM papers
>> and because it's MEMORY damn it
> Yes, and there can be issues of the operational environment to think of.
>> do we need an entropometer setup?
>>
> Sure, if only it were possible..
>
>
>
Is it possible to find systematic problems by using correlation (in the
statistical sense) between several DRAM sources? Not something for use
in an operational situation but can it validate the idea?




More information about the Tech mailing list