(Press-News.org) Millions of us send billions of emails back and forth each day without much concern for their security. On the whole, security is not a primary concern for most day-to-day emails, but some emails do contain personal, proprietary and sensitive information, documents, media, photos, videos and sound files. Unfortunately, the open nature of email means that they can be intercepted and if not encrypted easily read by malicious third parties. Even with the PGP - pretty good privacy - encryption scheme first used in 1995, if a sender's private "key" is compromised all their previous emails encrypted with that key can be exposed.
Writing in the International Journal of Security and Networks, computer scientists Duncan Wong and Xiaojian Tian of City University of Hong Kong, explain how previous researchers had attempted to define perfect email privacy that utilizes PGP by developing a technique that would preclude the decryption of other emails should a private key be compromised. Unfortunately, say Wong and Tian this definition fails if one allows the possibility that the email server itself may be compromised, by hackers or other malicious users.
The team has now defined perfect forward secrecy for email as follows and suggested a technical solution to enable email security to be independent of the server used to send the message:
"An e-mail system provides perfect forward secrecy if any third party, including the e-mail server, cannot recover previous session keys between the sender and the recipient even if the long-term secret keys of the sender and the recipient are compromised."
By building a new email protocol on this principle, the team suggests that it is now possible to exchange emails with almost zero risk of interference from third parties. "Our protocol provides both confidentiality and message authentication in addition to perfect forward secrecy," they explain.
The team's protocol involves Alice sending Bob an encrypted email with the hope that Charles will not be able to intercept and decrypt the message. Before the email is encrypted and sent the protocol suggested by Wong and Tian has Alice's computer send an identification code to the email server. The server creates a random session "hash" that is then used to encrypt the actual encryption key for the email Alice is about to send. Meanwhile, Bob as putative recipient receives the key used to create the hash and bounces back an identification tag. This allows Alice and Bob to verify each other's identity.
These preliminary steps are all automatically and without Alice or Bob needing to do anything in advance. Now, Alice writes her email, encrypts it using PGP and then "hashes" it using the random key from the server. When Bob receives the encrypted message he uses his version of the hash to unlock the container within which the PGP-encrypted email sits. Bob then uses Alice's public PGP key to decrypt the message itself. No snoopers on the internet between Alice and Bob, not even the email server ever have access to the PGP encrypted email in the open. Moreover, because a different key is used to lock up the PGP encrypted email with a second one-time layer, even if the PGP security is compromised past emails created with the same key cannot be unlocked.
###"E-mail protocols with perfect forward secrecy" in Int. J. Security and Networks, 2012, 7, 1-5
Perfecting email security
2012-09-10
ELSE PRESS RELEASES FROM THIS DATE:
Semiconductors grown on graphene
2012-09-10
Researchers at the Norwegian University of Science and Technology (NTNU) have patented and are commercializing GaAs nanowires grown on graphene, a hybrid material with competitive properties. Semiconductors grown on graphene are expected to become the basis for new types of device systems, and could fundamentally change the semiconductor industry. The technology underpinning their approach has recently been described in a publication in the American research journal Nano Letters.
The new patented hybrid material offers excellent optoelectronic properties, says Professor ...
A smart fabric sets off the alarm
2012-09-10
Thieves are unlikely to appreciate this fabric, which looks innocuous but in fact incorporates a fine web of conductive threads connected to a microcontroller that detects warning signals emitted when the fabric is cut and triggers an alarm. This system can be used to protect buildings, bank vaults, and trucks against even the most wily of intruders. Vehicles parked overnight at truck stops are particularly vulnerable to attacks by thieves who slit open the canvas tarp covering the trailer while the driver is asleep and make off with the cargo. If the tarp were made from ...
Cancer-causing gene alone doesn't trigger pancreatic cancer, Mayo-led study finds
2012-09-10
JACKSONVILLE, Fla. — More than a cancer-causing gene is needed to trigger pancreatic cancer, a study led by Mayo Clinic has found. A second factor creates a "perfect storm" that allows tumors to form, the researchers say. The study, published in the Sept. 10 issue of Cancer Cell, overturns the current belief that a mutation in the KRAS oncogene is enough to initiate pancreatic cancer and unrestrained cell growth.
The findings uncover critical clues on how pancreatic cancer develops and why few patients benefit from current therapies. The findings also provide ideas about ...
Researchers craft program to stop cloud computer problems before they start
2012-09-10
Researchers from North Carolina State University have developed a new software tool to prevent performance disruptions in cloud computing systems by automatically identifying and responding to potential anomalies before they can develop into problems.
Cloud computing enables users to create multiple "virtual machines" that operate independently, even though they are all operating on one large computing platform. However, this approach can cause performance issues when a software bug, or other problem, in one virtual machine disrupts the entire cloud.
Now researchers ...
Researchers reveal a chemo-resistant cancer stem cell as cancer's 'Achilles' heel'
2012-09-10
Scientists at Mount Sinai School of Medicine have discovered a subpopulation of cells that display cancer stem cell properties and resistance to chemotherapy, and participate in tumor progression. This breakthrough could lead to the development of new tests for early cancer diagnosis, prognostic tests, and innovative therapeutic strategies, as reported in Cancer Cell.
Resistance to chemotherapy is a frequent and devastating phenomenon that occurs in cancer patients during certain treatments. Unfortunately, tumors that initially respond to chemotherapy eventually become ...
Physician's empathy directly associated with positive clinical outcomes, confirms large study
2012-09-10
PHILADELPHIA--Patients of doctors who are more empathic have better outcomes and fewer complications, concludes a large, empirical study by a team of Thomas Jefferson University and Italian researchers who evaluated relationships between physician empathy and clinical outcomes among 20,961 diabetic patients and 242 physicians in Italy.
The study was published in the September 2012 issue of Academic Medicine, and serves as a follow up to a smaller study published in the same journal in March 2011 from Thomas Jefferson University investigating physician empathy and its ...
The problem of impatient patients
2012-09-10
A problem faced by patients seeking medical attention is often getting a clinic appointment at a time convenient to them. Conversely, cancellations and more crucially "no-shows" by patients can disrupt the day-to-day scheduling of a medical practice leading to frustration for patients and staff alike as well as affectively efficiency in a negative manner and leading to lost revenue.
Raid Al-Aomar of Abu Dhabi University in United Arab Emirates and colleague Mahmoud Awad of ALHOSN University, also in Abu Dhabi have now developed a computer model that could help practice ...
Vanderbilt study looks at benefits of progestogens to prevent early childbirth
2012-09-10
Pregnant women who have had prior preterm births may avoid a subsequent early birth if given progestogens, which are natural or synthetic forms of progesterone, a female hormone that naturally increases during pregnancy, a Vanderbilt analysis shows.
Women who have had prior preterm births and are given progestogens while expecting a single child show some benefit from additional hormone, Vanderbilt researchers reported in a systematic review released on Thursday in Obstetrics & Gynecology, the official publication of the American College of Obstetricians and Gynecologists, ...
Fighting Alzheimer's before its onset
2012-09-10
Montreal, September 10, 2012 – By the time older adults are diagnosed with Alzheimer's disease, the brain damage is irreparable. For now, modern medicine is able to slow the progression of the disease but is incapable of reversing it. What if there was a way to detect if someone is on the path to Alzheimer's before substantial and non-reversible brain damage sets in?
This was the question Erin K. Johns, a doctoral student in Concordia University's Department of Psychology and member of the Center for Research in Human Development (CRDH), asked when she started her research ...
Researchers use 'banker plants' to help battle whitefly pests
2012-09-10
This press release is available in Spanish.
A U.S. Department of Agriculture (USDA) scientist is showing growers how to combat whiteflies and other crop pests by using plants as storehouses for predatory insects that can migrate to cash crops and feed on the pests attacking those crops.
Cindy L. McKenzie, an entomologist in the Agricultural Research Service (ARS) Subtropical Insects Research Unit at Fort Pierce, Fla., has done extensive work showing how papaya, corn and ornamental peppers can serve as "banker plants" for a range of insect parasitoids and predators. ...