Exetools  

Go Back   Exetools > General > General Discussion

Notices

Reply
 
Thread Tools Display Modes
  #1  
Old 08-18-2017, 05:09
mr.exodia mr.exodia is offline
Retired Moderator
 
Join Date: Nov 2011
Posts: 783
Rept. Given: 490
Rept. Rcvd 1,123 Times in 305 Posts
Thanks Given: 89
Thanks Rcvd at 716 Times in 333 Posts
mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299 mr.exodia Reputation: 1100-1299
Very interesting! I could integrate this in my Armadillo Key Tool (https://github.com/mrexodia/akt)...

The previous attack (as far as I know) was on a weak implementation by Baboon (http://baboon.rce.free.fr/index.php?post/2010/09/04/Armadillo-mange-des-ours-en-slips) but I don't think a brute force approach was tested in public.

You can get the best target by making your own unpackme, or try Armadillo itself...

The latest public (and custom) v9.60 uses:

Code:
  Short V3 Level 10:
    Chk : B5EC5364
    Sym: BDA4FA1C
  BaseP : 1570789295 (Size=50, Diff=112C, MD5=0F656698)
  Pub.X : 2127081270816270912006137526418476
  Pub.Y : 7206819234412870204027887633390168
Feel free to ping me if you need something...
Reply With Quote
The Following 2 Users Say Thank You to mr.exodia For This Useful Post:
contextrax (08-18-2017)
  #2  
Old 08-18-2017, 06:30
contextrax contextrax is offline
Friend
 
Join Date: Aug 2017
Posts: 43
Rept. Given: 0
Rept. Rcvd 17 Times in 7 Posts
Thanks Given: 4
Thanks Rcvd at 72 Times in 19 Posts
contextrax Reputation: 17
Quote:
Originally Posted by mr.exodia View Post
You can get the best target by making your own unpackme, or try Armadillo itself...
I would not find it to interested breaking my own ecc parameters

Quote:
Originally Posted by mr.exodia View Post
The latest public (and custom) v9.60 uses:

Code:
  Short V3 Level 10:
    Chk : B5EC5364
    Sym: BDA4FA1C
  BaseP : 1570789295 (Size=50, Diff=112C, MD5=0F656698)
  Pub.X : 2127081270816270912006137526418476
  Pub.Y : 7206819234412870204027887633390168
Feel free to ping me if you need something...
This is the real ecc parameters for armadillo itself?
I thought armadillo was obsolete
Reply With Quote
The Following User Says Thank You to contextrax For This Useful Post:
the_beginner (04-21-2019)
  #3  
Old 08-18-2017, 18:10
contextrax contextrax is offline
Friend
 
Join Date: Aug 2017
Posts: 43
Rept. Given: 0
Rept. Rcvd 17 Times in 7 Posts
Thanks Given: 4
Thanks Rcvd at 72 Times in 19 Posts
contextrax Reputation: 17
Quote:
Originally Posted by mr.exodia View Post
Very interesting! I could integrate this in my Armadillo Key Tool (https://github.com/mrexodia/akt)...
Damn your tool roxx. I spend countless of hrs extracting the crypto params that your tool can do with just one click
Love it.

(Hope I wont get banned for this reply)
Reply With Quote
The Following 2 Users Say Thank You to contextrax For This Useful Post:
Apuromafo (03-05-2019), mr.exodia (08-18-2017)
  #4  
Old 08-20-2017, 20:15
contextrax contextrax is offline
Friend
 
Join Date: Aug 2017
Posts: 43
Rept. Given: 0
Rept. Rcvd 17 Times in 7 Posts
Thanks Given: 4
Thanks Rcvd at 72 Times in 19 Posts
contextrax Reputation: 17
Quote:
Originally Posted by mr.exodia View Post

Code:
  Short V3 Level 10:
    Chk : B5EC5364
    Sym: BDA4FA1C
  BaseP : 1570789295 (Size=50, Diff=112C, MD5=0F656698)
  Pub.X : 2127081270816270912006137526418476
  Pub.Y : 7206819234412870204027887633390168
I see there are many more of these certs in Armadillo. Did you verify that this is the correct ones to break?

I calculated the base point from basepoint init using the armadillo keygen source "KeyMakerV420j.c".
Don't know if this is the latest code so if you could check and see if they matches yours.

Code:
Target: "Armadillo v9.64 Public"

Optimal Normal Base Type II
BasepointInit: 1570789295 (0x5DA057AF)
ONB2 Base.X  : 4089747062247003654720736468506441
ONB2 Base.Y  : 10111618751385367037406972360317044
ONB2 Pub.X   : 2127081270816270912006137526418476
ONB2 Pub.Y   : 7206819234412870204027887633390168
And here they are in polynomial base if anyone wants to play with them
Code:
Polynomial base (t^113 + t^9 + 1)
Poly Base.X  : 1C1A1BB26597755705B9D996CC209
Poly Base.Y  : 7229DDE3CDDFAC01016B1E84D648
Poly Pub.X   : 4CA5BE7E12F5B8C8CAA93744E99
Poly Pub.Y   : 788BCC901CC832FAA020610A14EB
Reply With Quote
The Following 2 Users Say Thank You to contextrax For This Useful Post:
Apuromafo (03-04-2019), tonyweb (08-26-2017)
Reply

Tags
bolero, ecdlp

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Replacing ECDSA in Target (arma) Mynotos General Discussion 3 11-22-2019 00:49


All times are GMT +8. The time now is 13:19.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )