SlideShare a Scribd company logo
1 of 4
Rubber hose resistant cryptography




H. Bojinov, D. Sanchez, P. Reber, D. Boneh, P. Lincoln
Rubber hose attacks

Problem:
   authenticating users at the entrance to a secure facility

Current solutions:
• Smartcards: can be stolen
• Biometrics: can be copied or spoofed
• Passwords: can be extracted with a rubber hoze

         Is there a non-extractable credential?
The human memory system
• Hippocampus:         conscious learning
  – Learns from single examples

• Basal ganglia:    “implicit learning”
  – Learns from many repeated samples



Our work: use implicit learning to teach a credential
  – Credential can be tested at authentication time
  – … but credential is not consciously accessible !!
Implicitly learning a credential
                    http://brainauth.com




Participants exhibit essentially no recognition after training

More Related Content

More from Amy Lenzo

Wisdom emerging
Wisdom emergingWisdom emerging
Wisdom emergingAmy Lenzo
 
Level 1 Learnign Program- SlideShow2
Level 1 Learnign Program- SlideShow2Level 1 Learnign Program- SlideShow2
Level 1 Learnign Program- SlideShow2Amy Lenzo
 
Participant list
Participant listParticipant list
Participant listAmy Lenzo
 
Level One Online - SlideShow1
Level One Online - SlideShow1Level One Online - SlideShow1
Level One Online - SlideShow1Amy Lenzo
 
The World Café Conversation
The World Café ConversationThe World Café Conversation
The World Café ConversationAmy Lenzo
 

More from Amy Lenzo (6)

Wisdom emerging
Wisdom emergingWisdom emerging
Wisdom emerging
 
Level 1 Learnign Program- SlideShow2
Level 1 Learnign Program- SlideShow2Level 1 Learnign Program- SlideShow2
Level 1 Learnign Program- SlideShow2
 
Participant list
Participant listParticipant list
Participant list
 
Level One Online - SlideShow1
Level One Online - SlideShow1Level One Online - SlideShow1
Level One Online - SlideShow1
 
Just Water
Just WaterJust Water
Just Water
 
The World Café Conversation
The World Café ConversationThe World Café Conversation
The World Café Conversation
 

Rubber Hose Resistant Cryptography

  • 1. Rubber hose resistant cryptography H. Bojinov, D. Sanchez, P. Reber, D. Boneh, P. Lincoln
  • 2. Rubber hose attacks Problem: authenticating users at the entrance to a secure facility Current solutions: • Smartcards: can be stolen • Biometrics: can be copied or spoofed • Passwords: can be extracted with a rubber hoze Is there a non-extractable credential?
  • 3. The human memory system • Hippocampus: conscious learning – Learns from single examples • Basal ganglia: “implicit learning” – Learns from many repeated samples Our work: use implicit learning to teach a credential – Credential can be tested at authentication time – … but credential is not consciously accessible !!
  • 4. Implicitly learning a credential http://brainauth.com Participants exhibit essentially no recognition after training