DocumentCode :
3111650
Title :
Security Issues on the CNG Cryptography Library (Cryptography API: Next Generation)
Author :
Kyungroul Lee ; Youngjun Lee ; Junyoung Park ; Kangbin Yim ; Ilsun You
Author_Institution :
Dept. of Inf. Security Eng., Soonchunhyang Univ., Asan, South Korea
fYear :
2013
fDate :
3-5 July 2013
Firstpage :
709
Lastpage :
713
Abstract :
This paper introduces structure, features, and programming techniques of CNG (Cryptography API: Next Generation), which was released as a substitute of the previous CAPI (Cryptography API) library from Microsoft. Because it is constructed with individual modules based on plug-in architecture, we can reconfigure the incorporated functions in CNG at any time. This means CNG is exceedingly helpful in the cost of development as well as the facility of extension. In addition, specific characteristics of recent new cryptography algorithms and audit policies can be easily embedded into existing library and even supported by the kernel mode expansion for cryptographic services at all points in companies, public government and so on. On the opposite side of these advantages, considerations on security issues are quite insufficient. Therefore, research on security assurance is strongly required in the environment of distributing and utilizing the CNG library. In this paper, we introduce current security issues of CNG and the related considerations on it.
Keywords :
application program interfaces; cryptography; software libraries; CAPI library; CNG cryptography library; Cryptography API: Next Generation; Microsoft; audit policy; cryptography algorithms; kernel mode expansion; plug-in architecture; programming techniques; security assurance; Algorithm design and analysis; Cryptography; Kernel; Libraries; Next generation networking; CNG; Crypto API; Crypto Library; API Hooking;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Innovative Mobile and Internet Services in Ubiquitous Computing (IMIS), 2013 Seventh International Conference on
Conference_Location :
Taichung
Type :
conf
DOI :
10.1109/IMIS.2013.128
Filename :
6603762
Link To Document :
بازگشت