(keitai-l) Re: bitflipping out of the sandbox

From: Dirk Rösler <dirkREMOVE_at_tkm.att.ne.jp>
Date: 05/15/03
Message-Id: <C9B15BF8-866E-11D7-B04F-0030654492C6@tkm.att.ne.jp>
> is this type of thing a possible danger in "smart wallet" or similar
> applications?

Reverse the question: why shouldn't it? Flaws don't care about the 
application you're running.

This is a system integrity problem which potentially affects 
everything. Of course the risks are completely different depending on 
the values involved. But once people are able to "print" their own 
money, like in an e-wallet, you have a serious problem on your hands, 
not only as a service provider but possibly also as the master of all 
money overall (i.e. the government).

All this is theory for now, we have to see what the practicalities of 
such an attack are like. But given the direct ultimate reward (money) 
people will go to great lengths.

Dirk
Received on Thu May 15 03:49:38 2003