Skip to main content
QUICK REVIEW

[論文レビュー] On White-box Cryptography and Obfuscation

Amitabh Saxena, Brecht Wyseur|ArXiv.org|May 30, 2008
Cryptography and Data Security参考文献 21被引用数 4
ひとこと要約

この論文は、白ボックス暗号とプログラムオブfuscationの関係を形式化し、白ボックス設定におけるセキュリティ要件を捉えるために、White-Box Property (WBP) を導入する。すべての仕様に対して、いかなるオブfuscatorもWBPを満たせないことが示され、特に近似的に学習不能なプログラムに対してはそのような性質が達成不可能である。一方で、特定の意味のある仕様に対してはオブfuscatorがWBPを満たすことができ、近似的に学習可能な族に対してはUWBPが達成可能であることが示された。

ABSTRACT

We study the relationship between obfuscation and white-box cryptography. We capture the requirements of any white-box primitive using a \emph{White-Box Property (WBP)} and give some negative/positive results. Loosely speaking, the WBP is defined for some scheme and a security notion (we call the pair a \emph{specification}), and implies that w.r.t. the specification, an obfuscation does not leak any ``useful'' information, even though it may leak some ``useless'' non-black-box information. Our main result is a negative one - for most interesting programs, an obfuscation (under \emph{any} definition) cannot satisfy the WBP for every specification in which the program may be present. To do this, we define a \emph{Universal White-Box Property (UWBP)}, which if satisfied, would imply that under \emph{whatever} specification we conceive, the WBP is satisfied. We then show that for every non-approximately-learnable family, there exist (contrived) specifications for which the WBP (and thus, the UWBP) fails. On the positive side, we show that there exists an obfuscator for a non-approximately-learnable family that achieves the WBP for a certain specification. Furthermore, there exists an obfuscator for a non-learnable (but approximately-learnable) family that achieves the UWBP. Our results can also be viewed as formalizing the distinction between ``useful'' and ``useless'' non-black-box information.

研究の動機と目的

  • 白ボックス暗号のセキュリティ要件を、新しい形式的枠組みであるWhite-Box Property (WBP) を用いて形式化すること。
  • オブfuscatorが、プログラムが使用されるすべての可能な仕様において、白ボックス設定でセキュリティを保持できるかどうかを調査すること。
  • オブfuscatedプログラムにおける「有用」な情報漏洩と「無意味」な情報漏洩を区別すること。
  • オブfuscatorが普遍的白ボックスセキュリティ(UWBP)を達成できる条件を特定すること。

提案手法

  • オブfuscatedプログラムが与えられた仕様において「有用な」情報を漏洩しないことを保証する形式的セキュリティ概念として、White-Box Property (WBP) を導入する。
  • オブfuscatorがすべての可能な仕様に対してWBPを満たさなければならないというより強い要件として、Universal White-Box Property (UWBP) を定義する。
  • 非近似的に学習不能なプログラム族に対しては、任意のオブfuscatorがUWBPを満たせないことを示すために、恣意的な仕様「find-q」を用いる。
  • 計算的区別不能性と利得に基づく定義を用いて漏洩を測定し、ブラックボックスとホワイトボックス攻撃の成功確率を比較する利得関数を導入する。
  • 特に、学習可能と非学習可能なプログラム族の違いを区別する計算学習理論の結果を応用する。
  • 非近似的に学習不能なプログラムに対しては、任意のオブfuscatorが有用な情報を漏洩するような仕様が存在し、WBPが破られることが証明される。

実験結果

リサーチクエスチョン

  • RQ1プログラムが使用されるすべての可能な仕様に対して、オブfuscatorがWhite-Box Property (WBP) を満たすことは可能か?
  • RQ2非学習可能なプログラム族に対して、Universal White-Box Property (UWBP) を満たすオブfuscatorを構築することは可能か?
  • RQ3どのような条件下で、オブfuscatorが意味的かつ非自明な仕様に対してWBPを達成できるか?
  • RQ4プログラム族の計算的学習可能性とUWBPの達成可能性との関係は何か?
  • RQ5オブfuscatedプログラムにおける「有用」と「無意味」な非ブラックボックス情報漏洩を正式に区別できるか?

主な発見

  • 非近似的に学習不能なプログラム族に対しては、任意のオブfuscatorがWBPを満たせないような恣意的な仕様が存在し、普遍的オブfuscationの根本的限界を示している。
  • 非近似的に学習不能な族に対しては、ブラックボックスとホワイトボックス攻撃の利得差が無視できないことが示され、このような設定では有用な情報が漏洩することを証明している。
  • 特定の意味的かつ非自明な仕様に対しては、非近似的に学習不能なプログラムに対してWBPを満たすオブfuscatorが存在し、制限された文脈での実現可能性を示している。
  • 非学習可能だが近似的に学習可能なプログラムに対しては、Universal White-Box Property (UWBP) を満たすオブfuscatorが存在し、学習可能性と普遍的セキュリティの境界を示している。
  • Barakらの不可能性結果がこのモデルに拡張可能であるが、本論文はさらに、非近似的に学習不能な族に対しても、特定の非普遍的仕様においてはWBPが達成可能であることを示している。
  • 「有用」と「無意味」な非ブラックボックス情報漏洩の区別が形式的に定義され、オブfuscatedプログラムのセキュリティ評価において極めて重要であることが示された。

より良い研究を、今すぐ始めましょう

論文の読解から最終レビューまで、研究時間を劇的に削減しましょう。

クレジットカード登録不要

このレビューはAIが作成し、人間の編集者が確認しました。