{"id":"https://openalex.org/W2296163951","doi":"https://doi.org/10.1007/978-3-319-24174-6_21","title":"Practical Invalid Curve Attacks on TLS-ECDH","display_name":"Practical Invalid Curve Attacks on TLS-ECDH","publication_year":2015,"publication_date":"2015-01-01","ids":{"openalex":"https://openalex.org/W2296163951","doi":"https://doi.org/10.1007/978-3-319-24174-6_21","mag":"2296163951"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-319-24174-6_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-319-24174-6_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-319-24174-6_21.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/978-3-319-24174-6_21.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5090157645","display_name":"Tibor Jager","orcid":"https://orcid.org/0000-0002-3205-7699"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Tibor Jager","raw_affiliation_strings":["Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053201224","display_name":"J\u00f6rg Schwenk","orcid":"https://orcid.org/0000-0001-9315-7354"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"J\u00f6rg Schwenk","raw_affiliation_strings":["Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5091741421","display_name":"Juraj Somorovsky","orcid":"https://orcid.org/0000-0002-3593-7720"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Juraj Somorovsky","raw_affiliation_strings":["Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"Horst G\u00f6rtz Institute for IT Security, Ruhr University Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5090157645"],"corresponding_institution_ids":["https://openalex.org/I904495901"],"apc_list":{"value":5000,"currency":"EUR","value_usd":5392},"apc_paid":{"value":5000,"currency":"EUR","value_usd":5392},"fwci":10.8472,"has_fulltext":true,"cited_by_count":34,"citation_normalized_percentile":{"value":0.9868438,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"407","last_page":"425"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11693","display_name":"Cryptography and Residue Arithmetic","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11693","display_name":"Cryptography and Residue Arithmetic","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.800156831741333},{"id":"https://openalex.org/keywords/random-oracle","display_name":"Random oracle","score":0.6959615349769592},{"id":"https://openalex.org/keywords/oracle","display_name":"Oracle","score":0.6398617625236511},{"id":"https://openalex.org/keywords/elliptic-curve-cryptography","display_name":"Elliptic curve cryptography","score":0.570517361164093},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.5672732591629028},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.5541067123413086},{"id":"https://openalex.org/keywords/cryptosystem","display_name":"Cryptosystem","score":0.5285921096801758},{"id":"https://openalex.org/keywords/java","display_name":"Java","score":0.47632771730422974},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.43910038471221924},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.3878936469554901},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.38169121742248535},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.37614744901657104},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.35841885209083557},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.1876351237297058},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.1690939962863922}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.800156831741333},{"id":"https://openalex.org/C94284585","wikidata":"https://www.wikidata.org/wiki/Q228184","display_name":"Random oracle","level":4,"score":0.6959615349769592},{"id":"https://openalex.org/C55166926","wikidata":"https://www.wikidata.org/wiki/Q2892946","display_name":"Oracle","level":2,"score":0.6398617625236511},{"id":"https://openalex.org/C167615521","wikidata":"https://www.wikidata.org/wiki/Q1048911","display_name":"Elliptic curve cryptography","level":4,"score":0.570517361164093},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.5672732591629028},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.5541067123413086},{"id":"https://openalex.org/C6295992","wikidata":"https://www.wikidata.org/wiki/Q976521","display_name":"Cryptosystem","level":3,"score":0.5285921096801758},{"id":"https://openalex.org/C548217200","wikidata":"https://www.wikidata.org/wiki/Q251","display_name":"Java","level":2,"score":0.47632771730422974},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.43910038471221924},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.3878936469554901},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.38169121742248535},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.37614744901657104},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.35841885209083557},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.1876351237297058},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.1690939962863922}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1007/978-3-319-24174-6_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-319-24174-6_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-319-24174-6_21.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.704.7932","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.704.7932","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://www.nds.rub.de/media/nds/veroeffentlichungen/2015/09/14/main-full.pdf","raw_type":"text"}],"best_oa_location":{"id":"doi:10.1007/978-3-319-24174-6_21","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-319-24174-6_21","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-319-24174-6_21.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2296163951.pdf","grobid_xml":"https://content.openalex.org/works/W2296163951.grobid-xml"},"referenced_works_count":21,"referenced_works":["https://openalex.org/W119362848","https://openalex.org/W1452942402","https://openalex.org/W1558518955","https://openalex.org/W1592482282","https://openalex.org/W1602301309","https://openalex.org/W1616329586","https://openalex.org/W1623551255","https://openalex.org/W1729100754","https://openalex.org/W1733713784","https://openalex.org/W1809974132","https://openalex.org/W1857035554","https://openalex.org/W1892798954","https://openalex.org/W1935672779","https://openalex.org/W1984097153","https://openalex.org/W2163005041","https://openalex.org/W2189153846","https://openalex.org/W2266218113","https://openalex.org/W2561675875","https://openalex.org/W2916447643","https://openalex.org/W4210531213","https://openalex.org/W4300349690"],"related_works":["https://openalex.org/W2414747139","https://openalex.org/W1486255205","https://openalex.org/W3029593079","https://openalex.org/W2613410895","https://openalex.org/W2077900604","https://openalex.org/W2112914778","https://openalex.org/W2387773210","https://openalex.org/W2364255832","https://openalex.org/W1802397081","https://openalex.org/W2161209604"],"abstract_inverted_index":{"Elliptic":[0],"Curve":[1],"Cryptography":[2],"(ECC)":[3],"is":[4,39,121],"based":[5],"on":[6,91,116],"cyclic":[7],"groups,":[8],"where":[9],"group":[10,28,45],"elements":[11,29],"are":[12],"represented":[13],"as":[14],"points":[15,49],"in":[16,50,59,71,73],"a":[17,42,99,136,142],"finite":[18],"plane.":[19],"All":[20],"ECC":[21,76],"cryptosystems":[22],"implicitly":[23],"assume":[24],"that":[25,41,113,127,139],"only":[26,162],"valid":[27],"will":[30],"be":[31,54],"processed":[32],"by":[33],"the":[34,51,74,85,106,114,117,131,151,160],"different":[35],"cryptographic":[36,63],"algorithms.":[37],"It":[38,110],"well-known":[40],"check":[43,68,90],"for":[44],"membership":[46],"of":[47,78,87,119],"given":[48],"plane":[52],"should":[53],"performed":[55],"before":[56],"processing.":[57],"However,":[58],"several":[60],"widely":[61],"used":[62],"libraries":[64],"we":[65],"analyzed,":[66],"this":[67,88],"was":[69],"missing,":[70],"particular":[72],"popular":[75],"implementations":[77],"Oracle":[79],"and":[80,102],"Bouncy":[81,107],"Castle.":[82],"We":[83,123],"analyze":[84],"effect":[86,115],"missing":[89],"Oracle\u2019s":[92],"default":[93],"Java":[94],"TLS":[95,103,137],"implementation":[96],"(JSSE":[97],"with":[98],"SunEC":[100],"provider)":[101],"servers":[104],"using":[105],"Castle":[108],"library.":[109,144],"turns":[111],"out":[112],"security":[118],"TLS-ECDH":[120],"devastating.":[122],"describe":[124],"an":[125,147],"attack":[126,161],"allows":[128,146],"to":[129,149,154],"extract":[130],"long-term":[132],"private":[133],"key":[134],"from":[135],"server":[138,153],"uses":[140],"such":[141],"vulnerable":[143],"This":[145],"attacker":[148],"impersonate":[150],"legitimate":[152],"any":[155],"communication":[156],"partner,":[157],"after":[158],"performing":[159],"once.":[163]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":1},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":3},{"year":2018,"cited_by_count":7},{"year":2017,"cited_by_count":6},{"year":2016,"cited_by_count":5},{"year":2015,"cited_by_count":1},{"year":2014,"cited_by_count":1}],"updated_date":"2026-04-05T17:49:38.594831","created_date":"2025-10-10T00:00:00"}
