ISO/IEC TR 24485:2022 PDF

ISO/IEC TR 24485:2022 PDF

Name:
ISO/IEC TR 24485:2022 PDF

Published Date:
09/30/2022

Status:
Active

Description:

Information security, cybersecurity and privacy protection - Security techniques - Security properties and best practices for test and evaluation of white box cryptography

Publisher:
International Org. for Standardization/International Electrotechnical Commission (Technical Report)

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$24.3
Need Help?

This document introduces security properties and provides best practices on the test and evaluation of white box cryptography (WBC). WBC is a cryptographic algorithm specialized for a key or secret, but where the said key cannot be extracted.

The WBC implementation can consist of plain source code for the cryptographic algorithm and/or of a device implementing the algorithm. In both cases, security functions are implemented to deter an attacker from uncovering the key or secret.

Security properties consist in the secrecy of security parameters concealed within the implementation of the white box cryptography. Best practices for the test and evaluation includes mathematical and practical analyses, static and dynamic analyses, non-invasive and invasive analyses.

This document is related to ISO/IEC 19790 which specifies security requirements for cryptographic modules. In those modules, critical security parameters (CSPs) and public security parameters (PSPs) are the assets to protect. WBC is one solution to conceal CSPs inside of the implementation.


File Size : 1 file , 1.2 MB
Published : 09/30/2022

History


Related products


Best-Selling Products

CAN/CSA-ISO/IEC ISP 10608-1-99 (R2003)
Published Date: 02/22/2000
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless- Mode Network Service - Part 1: General Overview and Subnetwork- Independent Requirements (Adopted ISO/IEC 10608-1:1992, first edition)
$21.9
CAN/CSA-ISO/IEC ISP 10608-12-99 (2003)
Published Date: 02/18/2000
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless- Mode Network Service - Part 12: MAC Sublayer and Physical Layer Dependent Requirements for a CSMA/CD LAN Subnetwork (Adopted ISO/IEC ISP 10608-12:1996)
$15.9
CAN/CSA-ISO/IEC ISP 10608-13-01
Published Date: 03/12/2001
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless-Mode Network Service - Part 13: MAC Sublayer and Physical Layer Dependent Requirements for a Token Ring LAN Subnetwork (Adopted ISO/IEC ISP 10608-13:1994, first edition, 1994-0
$15.9
CAN/CSA-ISO/IEC ISP 10608-14-99 (R2003)
Published Date: 02/19/2000
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless- Mode Network Service - Part 14: MAC, PHY and PMD Sublayer Dependent and Station Management Requirements Over an FDDI LAN Subnetwork (Adopted ISO/IEC ISP 10608-14:1995)
$27
CAN/CSA-ISO/IEC ISP 10608-2-99 (R2003)
Published Date: 02/19/2000
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless- Mode Network Service - Part 2: TA51 Profile Including Subnetwork Dependent Requirements for CSMA/CD Local Area Networks (LANs) (Adopted ISO/IEC ISP 10608-2:1992)
$15.9
CAN/CSA-ISO/IEC ISP 10608-4-99 (R2003)
Published Date: 02/18/2000
Information Technology - International Standardized Profile TAnnnn - Connection-Mode Transport Service Over Connectionless- Mode Network Service - Part 4: Definition of Profile TA53, Operation Over a Token Ring LAN Subnetwork (Adopted ISO/IEC ISP 10608-4:1994, first edition)
$14.1