<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic The value of the monotonic in Intel® Software Guard Extensions (Intel® SGX)</title>
    <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133365#M1964</link>
    <description>&lt;P&gt;The value of the monotonic counter is stored in the management engine (ME), not the hard disk drive. It is thus not affected by hard disk clone attacks.&lt;/P&gt;

&lt;P&gt;You may also be interested in this paper that offers some stronger security guarantees:&lt;/P&gt;

&lt;P&gt;&lt;A href="https://www.usenix.org/system/files/conference/usenixsecurity16/sec16_paper_strackx.pdf"&gt;https://www.usenix.org/system/files/conference/usenixsecurity16/sec16_paper_strackx.pdf&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;(full disclosure: this is my work :) )&lt;/P&gt;</description>
    <pubDate>Fri, 23 Jun 2017 08:03:29 GMT</pubDate>
    <dc:creator>Raoul</dc:creator>
    <dc:date>2017-06-23T08:03:29Z</dc:date>
    <item>
      <title>Question about Monotonic Counter on hard-disk-clone-replay attack</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133364#M1963</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Currently I am working on&amp;nbsp;Monotonic Counter.&amp;nbsp; From "&lt;STRONG&gt;Intel SGX SDK Developer Reference for Windows OS.pdf&lt;/STRONG&gt;", I noticed that&amp;nbsp;Monotonic Counter can defend&amp;nbsp;Replay Attack by compare the saved previous counter value and current value of&amp;nbsp;Monotonic Counter.&lt;/P&gt;

&lt;P&gt;However, it seems the&amp;nbsp;&amp;nbsp;Monotonic Counter value is exists in non-volatile memory or sealed data. In this way, it seems&amp;nbsp;Monotonic Counter can't defend&amp;nbsp;hard-disk-clone-replay attack. By "hard-disk-clone-replay attack", I mean in &lt;STRONG&gt;Enterprise&amp;nbsp;Rights Management &lt;/STRONG&gt;(&lt;STRONG&gt;ERM&lt;/STRONG&gt;) type usages, the attacker first clone the disk (including sealed data since it also on the disk) and then replace the disk once the attacker has reached the max-time to read the protected secret document.&lt;/P&gt;

&lt;P&gt;Does&amp;nbsp;&amp;nbsp;Monotonic Counter help under this kind of attack? I think the key question is whether we can save information in the CPU even after reboot or not.&lt;/P&gt;

&lt;P&gt;Thank you,&lt;BR /&gt;
	Chao&lt;/P&gt;</description>
      <pubDate>Thu, 22 Jun 2017 18:16:24 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133364#M1963</guid>
      <dc:creator>chaoshun_z_</dc:creator>
      <dc:date>2017-06-22T18:16:24Z</dc:date>
    </item>
    <item>
      <title>The value of the monotonic</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133365#M1964</link>
      <description>&lt;P&gt;The value of the monotonic counter is stored in the management engine (ME), not the hard disk drive. It is thus not affected by hard disk clone attacks.&lt;/P&gt;

&lt;P&gt;You may also be interested in this paper that offers some stronger security guarantees:&lt;/P&gt;

&lt;P&gt;&lt;A href="https://www.usenix.org/system/files/conference/usenixsecurity16/sec16_paper_strackx.pdf"&gt;https://www.usenix.org/system/files/conference/usenixsecurity16/sec16_paper_strackx.pdf&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;(full disclosure: this is my work :) )&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2017 08:03:29 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133365#M1964</guid>
      <dc:creator>Raoul</dc:creator>
      <dc:date>2017-06-23T08:03:29Z</dc:date>
    </item>
    <item>
      <title>@Raoul         ​Thank you,</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133366#M1965</link>
      <description>&lt;P&gt;@&lt;A href="https://software.intel.com/en-us/user/504462"&gt;&lt;U&gt;&lt;FONT color="#0066cc"&gt;Raoul&lt;/FONT&gt;&lt;/U&gt;&lt;/A&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ​Thank you, that's really helpful. I am reading your paper, cool stuff !&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Jun 2017 17:10:34 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Monotonic-Counter-on-hard-disk-clone-replay/m-p/1133366#M1965</guid>
      <dc:creator>chaoshun_z_</dc:creator>
      <dc:date>2017-06-27T17:10:34Z</dc:date>
    </item>
  </channel>
</rss>

