Efail Breaking S MIME and OpenPGP Email Encryption using Exfiltration Channels @HackersOnBoard
Efail Breaking S MIME and OpenPGP Email Encryption using Exfiltration Channels  @HackersOnBoard
Uploaded October 2019 | Updated September 2026, 4 days ago
Black Hat USA 2018
OpenPGP and S/MIME are the two prime standards for providing end-to-end security for emails. From today's viewpoint this is surprising as both standards rely on outdated cryptographic primitives that were responsible for vulnerabilities in major cryptographic standards. The belief in email security is likely based on the fact that email is non-interactive and thus an attacker cannot directly exploit vulnerability types present in TLS, SSH, or IPsec.

We show that this assumption is wrong. We use a novel attack technique called malleability gadgets to inject malicious plaintext snippets into encrypted emails via malleable encryption. These snippets abuse existing and standard-conforming backchannels, for example, in HTML, CSS, or x509 functionality, to exfiltrate the full plaintext after decryption. The attack is triggered when the victim decrypts a single maliciously crafted email from the attacker.

We devise working malleability gadgets for both OpenPGP and S/MIME encryption, and show that exfiltration channels exist for 25 of the 35 tested S/MIME email clients and 10 of the 28 tested OpenPGP email clients. While it is necessary to change the OpenPGP and S/MIME standards to fix these vulnerabilities, some clients had even more severe implementation flaws allowing straightforward exfiltration of the plaintext.
Efail Breaking S MIME and OpenPGP Email Encryption using Exfiltration ChannelsBlack Hat USA 2018 - Exploitation of a Modern Smartphone BasebandBlack Hat USA 2018 - A Deep Dive into macOS MDM and How it can be CompromisedDEF CON 27 - Douglas McKee - HVACking Understand the Delta Between Security and RealityDEF CON 27 - Kyle Gwinnup - Next Generation Process Emulation with BineeBlockchain Autopsies - Analyzing Ethereum Smart Contract DeathsMiasm Reverse Engineering FrameworkFollow the White Rabbit Simplifying Fuzz Testing Using FuzzExMachinaDEF CON 27 - More Keys Than A Piano: Finding Secrets In Publicly Exposed Ebs VolumesBeating the Blockchain by Mapping Out Decentralized Namecoin and Emercoin InfrastructureDEF CON 27 - All the things you wanted to know about the DEF CON NOC and we wont tell you about
HackersOnBoard |

Efail Breaking S MIME and OpenPGP Email Encryption using Exfiltration Channels

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER