{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T03:33:59Z","timestamp":1760240039688,"version":"build-2065373602"},"reference-count":6,"publisher":"MDPI AG","issue":"2","license":[{"start":{"date-parts":[[2019,2,23]],"date-time":"2019-02-23T00:00:00Z","timestamp":1550880000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100010418","name":"Institute for Information and communications Technology Promotion","doi-asserted-by":"publisher","award":["R-20160229-002941"],"award-info":[{"award-number":["R-20160229-002941"]}],"id":[{"id":"10.13039\/501100010418","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Entropy"],"abstract":"<jats:p>A new attack algorithm is proposed for a secure key generation and management method introduced by Yang and Wu. It was previously claimed that the key generation method of Yang and Wu using a keystore seed was information-theoretically secure and could solve the long-term key storage problem in cloud systems, thanks to the huge number of secure keys that the keystone seed can generate. Their key generation method, however, is considered to be broken if an attacker can recover the keystore seed. The proposed attack algorithm in this paper reconstructs the keystore seed of the Yang\u2013Wu key generation method from a small number of collected keys. For example, when     t = 5     and     l =  2 7     , it was previously claimed that more than      2 53      secure keys could be generated, but the proposed attack algorithm can reconstruct the keystone seed based on only 84 collected keys. Hence, the Yang\u2013Wu key generation method is not information-theoretically secure when the attacker can gather multiple keys and a critical amount of information about the keystone seed is leaked.<\/jats:p>","DOI":"10.3390\/e21020212","type":"journal-article","created":{"date-parts":[[2019,2,25]],"date-time":"2019-02-25T03:06:52Z","timestamp":1551064012000},"page":"212","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Attack Algorithm for a Keystore-Based Secret Key Generation Method"],"prefix":"10.3390","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6743-0927","authenticated-orcid":false,"given":"Seungjae","family":"Chae","sequence":"first","affiliation":[{"name":"The Department of Electrical and Computer Engineering, Institute of New Media and Communications (INMC), Seoul National University, Seoul 08826, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4114-4935","authenticated-orcid":false,"given":"Young-Sik","family":"Kim","sequence":"additional","affiliation":[{"name":"The Department of Information and Communication Engineering, Chosun University, Gwangju 61452, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jong-Seon","family":"No","sequence":"additional","affiliation":[{"name":"The Department of Electrical and Computer Engineering, Institute of New Media and Communications (INMC), Seoul National University, Seoul 08826, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Young-Han","family":"Kim","sequence":"additional","affiliation":[{"name":"The Department of Electrical and Computer Engineering, University of California, San Diego, La Jolla, CA 92093, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2019,2,23]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"594","DOI":"10.1145\/359168.359172","article-title":"Password security: A case history","volume":"22","author":"Morris","year":"1979","journal-title":"Commun. ACM"},{"key":"ref_2","unstructured":"Monrose, F., Reiter, M.K., Li, Q., and Wetzel, S. (2001, January 14\u201316). Cryptographic key generation from voice. Proceedings of the 2001 IEEE Symposium on Security and Privacy, Oakland, CA, USA."},{"key":"ref_3","unstructured":"Menezes, A.J., van Oorschot, P., and Vanstone, S. (1996). Handbook of Applied Cryptography, CRC Press."},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Yang, E.H., and Wu, X.W. (2017, January 25\u201330). Information-theoretically secure key generation and management. Proceedings of the 2017 IEEE International Symposium on Information Theory (ISIT), Aachen, Germany.","DOI":"10.1109\/ISIT.2017.8006785"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Wu, X.W., Yang, E.H., and Wang, J.H. (2017, January 8\u201313). Lightweight security protocols for the Internet of Things. Proceedings of the 2017 IEEE 28th Annual International Symposium on Personal, Indoor, and Mobile Radio Communications (PIMRC), Montreal, QC, Canada.","DOI":"10.1109\/PIMRC.2017.8292779"},{"key":"ref_6","unstructured":"Bazm, M.-M., Lacoste, M., Sudholt, M., and Menaud, J.-M. (2019, February 17). Side Channels in the Cloud: Isolation Challenges, Attacks, and Countermeasures. Available online: https:\/\/hal.inria.fr\/hal-01591808\/."}],"container-title":["Entropy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1099-4300\/21\/2\/212\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T12:34:20Z","timestamp":1760186060000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1099-4300\/21\/2\/212"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,2,23]]},"references-count":6,"journal-issue":{"issue":"2","published-online":{"date-parts":[[2019,2]]}},"alternative-id":["e21020212"],"URL":"https:\/\/doi.org\/10.3390\/e21020212","relation":{},"ISSN":["1099-4300"],"issn-type":[{"type":"electronic","value":"1099-4300"}],"subject":[],"published":{"date-parts":[[2019,2,23]]}}}