wiki:NewCaps/WhatCouldGoWrong

Version 1 (modified by zooko, at 2009-10-10T20:52:21Z) (diff)

What Could Go Wrong

This is about What Could Go Wrong with the "Elk Point 2" immutable file caps: http://jacaranda.org/tahoe/immutable-elkpoint-2.svg

what bad thing could happenwho could do itwhat could they targetwhat crypto property prevents ithow expensive to brute force
shape-shifter immutable file [footnote 1]creator of a filetheir own filethe hash function's and cap format's collision resistance on the read-cap (R,T)2(r+t)/2
unauthorized readanyoneany filethe cipher's security and the secrecy of the read-key R2r
forgery of immutable fileanyoneany filethe hash function's and cap format's second-pre-image resistance on (R,T)2r+t
  1. shape-shifter immutable file: creator creates more than one file matching the immutable file readcap