Backdoor
Backdoor (computing)
A backdoor in a computer system (or cryptosystem or algorithm) is a method of bypassing normal authentication, securing remote access to a computer, obtaining access to plaintext, and so on, while attempting to remain undetected. The backdoor may take the form of an installed program (e.g., Back Orifice), or could be a modification to an existing program or hardware device.
Contents
- Overview
- Reflections on Trusting Trust
- References
- External links
Overview
The threat of backdoors surfaced when multiuser and networked operating systems became widely adopted. Petersen and Turn discussed computer subversion in a paper published in the proceedings of the 1967 AFIPS Conference. They noted a class of active infiltration attacks that use “trapdoor” entry points into the system to bypass security facilities and permit direct access to data. The use of the word trapdoor here clearly coincides with more recent definitions of a backdoor. However, since the advent of public key cryptography the term trapdoor has acquired a different meaning. More generally, such security breaches were discussed at length in a RAND Corporation task force report published under ARPA sponsorship by J.P. Anderson and D.J. Edwards in 1970.
A backdoor in a login system might take the form of a hard coded user and password combination which gives access to the system. A famous example of this sort of backdoor was as a plot device in the 1983 film WarGames, in which the architect of the “WOPR” computer system had inserted a hardcoded password (his dead son’s name) which gave the user access to the system, and to undocumented parts of the system (in particular, a video game–like simulation mode and direct interaction with the artificial intelligence).
An attempt to plant a backdoor in the Linux kernel, exposed in November 2003, showed how subtle such a code change can be. In this case a two-line change appeared to be a typographical error, but actually gave the caller to the sys_wait4 function root access to the system.
Although the number of backdoors in systems using proprietary software (that is, software whose source code is not readily available for inspection) is not widely credited, they are nevertheless periodically (and frequently) exposed. Programmers have even succeeded in secretly installing large amounts of benign code as Easter eggs in programs, although such cases may involve official forbearance, if not actual permission.
It is also possible to create a backdoor without modifying the source code of a program, or even modifying it after compilation. This can be done by rewriting the compiler so that it recognizes code during compilation that triggers inclusion of a backdoor in the compiled output. When the compromised compiler finds such code, it compiles it as normal, but also inserts a backdoor (perhaps a password recognition routine). So, when the user provides that input, he gains access to some (likely undocumented) aspect of program operation. This attack was first outlined by Ken Thompson in his famous paper Reflections on Trusting Trust (see below).
Many computer worms, such as Sobig and Mydoom, install a backdoor on the affected computer (generally a PC on broadband running insecure versions of Microsoft Windows and Microsoft Outlook). Such backdoors appear to be installed so that spammers can send junk e-mail from the infected machines. Others, such as the Sony/BMG rootkit distributed silently on millions of music CDs through late 2005, are intended as DRM measures — and, in that case, as data gathering agents, since both surreptitious programs they installed routinely contacted central servers.
A traditional backdoor is a symmetric backdoor: anyone that finds the backdoor can in turn use it. The notion of an asymmetric backdoor was introduced by Adam Young and Moti Yung in the Proceedings of Advances in Cryptology: Crypto ‘96. An asymmetric backdoor can only be used by the attacker who plants it, even if the full implementation of the backdoor becomes public (e.g., via publishing, being discovered and disclosed by reverse engineering, etc.). Also, it is computationally intractable to detect the presence of an asymmetric backdoor under black-box queries. This class of attacks have been termed kleptography; they can be carried out in software, hardware (for example, smartcards), or a combination of the two. The theory of asymmetric backdoors is part of a larger field now called cryptovirology.
There exists an experimental asymmetric backdoor in RSA key generation. This OpenSSL RSA backdoor was designed by Young and Yung, utilizes a twisted pair of elliptic curves, and has been made available.
Reflections on Trusting Trust
Ken Thompson’s Reflections on Trusting Trust was the first major paper to describe black box backdoor issues, and points out that trust is relative. It described a very clever backdoor mechanism based upon the fact that people only review source (human-written) code, and not compiled machine code. A program called a compiler is used to create the second from the first, and the compiler is usually trusted to do an honest job.
Thompson’s paper described a modified version of the Unix C compiler that would:
* Put an invisible backdoor in the Unix login command when it noticed that the login program was being compiled, and as a twist
* Also add this feature undetectably to future compiler versions upon their compilation as well.
Because the compiler itself was a compiled program, users would be extremely unlikely to notice the machine code instructions that performed these tasks. (Because of the second task, the compiler’s source code would appear “clean”.) What’s worse, in Thompson’s proof of concept implementation, the subverted compiler also subverted the analysis program (the disassembler), so that anyone who examined the binaries in the usual way would not actually see the real code that was running, but something else instead. This version was, officially, never released into the wild. It is believed, however, that a version was distributed to BBN and at least one use of the backdoor was recorded.
Once a system has been compromised with a backdoor or Trojan horse, such as the Trusting Trust compiler, it is very hard for the “rightful” user to regain control of the system. However, several practical weaknesses in the Trusting Trust scheme have been suggested. For example, a sufficiently motivated user could painstakingly review the machine code of the untrusted compiler before using it. As mentioned above, there are ways to hide the trojan horse, such as subverting the disassembler; but there are ways to counter that defense, too, such as writing your own disassembler from scratch, so the infected compiler won’t recognize it, however such proposals are generally impractical. If a user had a serious concern that the compiler was compromised they would be better off avoiding using it all together rather than reviewing the binary in detail using only tools that have been verified to be untainted. A user that did not have serious concerns that the compiler was compromised could not be practically expected to undertake the vast amount of work required.
[...] Athlete Foot Causes and Advanced Treatment Author: admin / Category: Alternative Medicine Rachel Broune asked: Athlete’s foot is a skin infection in the foot caused by a fungus. The fungus that causes Athlete foot is called Trichophyton. When the feet, or other areas of the body, stay moist, warm and irritated, this fungus can thrive and infect the upper layer of the skin. The symptoms of Athlete foot include itching and burning feet. The skin frequently peels and, in particularly severe cases, there may be some cracking, pain and bleeding as well. It is caused by moulds that grows on the surface of the skin and then into the living skin tissue itself, causing the infection. It usually occurs between the toes, but in severely lasting cases may appear as an extensive “moccasin” pattern on the bottom and sides of the foot.It is not easy to prevent athlete’s foot because it is usually contracted in dressing rooms, showers, and swimming pool locker rooms where bare feet come in contact with the fungus. However, you can do much to prevent infection by practicing good foot hygiene. Daily washing of the feet with soap and water; drying carefully, especially between the toes; and changing shoes and hose regularly to decrease moisture, help prevent the fungus from infecting the feet. Also helpful is daily use of a quality foot powder.Prevention TipsAvoid wearing tight or synthetic footwear that doesn’t allow your feet to “breathe.”Wear sandals around pool areas, public showers, and gyms to steer clear of the fungus.Wear socks that soak up wetness. Cotton is one material that does this.Change your socks every day (or more frequently) if they get damp.Ask your parent to buy antifungal powder to put in your sneakers or shoes.Athlete’s foot usually affects the spaces between your toes, but it can spread to your toenails and the soles and sides of your feet. Often, athlete’s foot responds well to over-the-counter (nonprescription) treatments you can apply to your skin. More severe cases may require prescription medications. There are many conventional medications (over-the-counter and prescription) as well as alternative treatments for fungal skin infections, including athlete’s foot. Important with any treatment plan is the practice of good hygiene.Athletes foot, does not get hard skin, more red sore and can be weepy. The way to treat it, get some cream or talc from the Pharmacy, but you have to talc all your shoes, boil the sock and towels, let alone bleach the bath/shower. Hard skin sounds as if your feet are rebelling to your footwear. Try wearing open sandals, without socks. Feet do need to breathe! Long term infection will often result in nail infection, which is much harder to knock out and requires oral therapy with Lamisil or similar product for quite some time. I think part of the problem is, people used to wear leather shoes that had leather soles, and no synthetic parts in them. They breathed alot better.Backdoor [...]
[...] trivia knowledge. December 9th, 2008 by admin | Filed under KevinLo Answer Blip Team asked: Backdoor Tags: Bacon Number | Basterds | Harum Scarum | Horror Movie Trivia | Summer Movie [...]