Marcus G. Daniels wrote at 09/13/2013 05:44 PM:
Install staff at foundries that provide chips to infrastructure/software as a service companies, and then use those same companies to listen-in on the side channels to collect keys..? I've found the instrumentation underlying IPMI monitoring for monitoring cluster health to be pretty high variance, but perhaps as voltage regulators get integrated into the chip (and mobile use-cases make people very sensitive about power usage), it would be possible to observe a physical compute node's power draw from one virtual machine vs. a target's virtual machine? Spend some money signing up for all the popular cloud computing companies and go fishing for signature power variations..
OK. Thanks. I can see how, say, China, Apple, or our own beloved CIA might credibly adopt something like this as a tactic. Is it solely a corporate/state tactic? Or do you think a group like anonymous or the syrian electronic army could pull it off? -- ⇒⇐ glen e. p. ropella Fade away, fade away
============================================================ FRIAM Applied Complexity Group listserv Meets Fridays 9a-11:30 at cafe at St. John's College to unsubscribe http://redfish.com/mailman/listinfo/friam_redfish.com
