Live data from Hacker News

Unforgeable Quantum Tokens Delivered over Fiber Network

spectrum.ieee.org

1–10 of 26 posts

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#2
I am worried about the future of quantum tokens...

Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key...

All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked...

I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to audit.

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#3

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

Hybrids?

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#4

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

In principle quantum communication has no side channels because side channels act like measurements, and measurements make it not a functioning quantum channel in the first place. So you need to have already solved side channel issues for basic function.

That said, wherever you convert the quantum data into classical data there will be potential side channels. For example, there have been attacks based on using a laser down the communication line to track the orientation of the measurement device at the receiver.

In general, the more you can do while the data stays quantum the better. For example, if you transduce the photon into a qubit inside a quantum computer, then the measurement can be hidden away inside the computer, instead of exposed to the communication line. And the measurement basis can be chosen after transmission arrival, instead of before.

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#5

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

Isn't the entire security of Quantum Communication predicated on its complete lack of side-channels due to the fact that measuring quantum systems collapses their wave function?

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#6

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

Isn't the entire security of Quantum Communication predicated on its complete lack of side-channels due to the fact that measuring quantum systems collapses their wave function?

Yes, in theory. In practice, photon generators won't behave perfectly. There are lots of possible attacks, like photon splitting [1].

[1] https://onlinelibrary.wiley.com/doi/full/10.1002/qute.202300...

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#7

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

With quantum tokens, law enforcement have to crack your physical devices, so they at least have to good-old-fashion bug your devices. With classical schemes, they can intercept on the way.

I wouldn't say that current side-channels, most certainly enabled by hardware, not software, are easier to audit.

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#8

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

With quantum tokens, law enforcement have to crack your physical devices, so they at least have to good-old-fashion bug your devices. With classical schemes, they can intercept on the way. I wouldn't say that current side-channels, most certainly enabled by hardware, not software, are easier to audit.

I don't think that's true. If you're paranoid you can build a very simple and easy to audit device that lets packets through exactly every x microseconds, with a short buffer to prevent timing via dropouts.

Works fine for digital, doesn't work for quantum stuff.

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#9

I am worried about the future of quantum tokens... Whilst theoretically they are secure, I worry about potential huge side-channels allowing leaking of the key... All it takes is a few extra photons emitted at some harmonic frequency for the key to be leaked... I would much prefer dumb hardware and clever digital software, because at least software is much easier to secure against side channels, and much easier to au…

With quantum tokens, law enforcement have to crack your physical devices, so they at least have to good-old-fashion bug your devices. With classical schemes, they can intercept on the way. I wouldn't say that current side-channels, most certainly enabled by hardware, not software, are easier to audit.

“lawful intercept” can be mandated to be built into anything

Re: Unforgeable Quantum Tokens Delivered over Fiber Network

#10

Earlier quoted context omitted.

Isn't the entire security of Quantum Communication predicated on its complete lack of side-channels due to the fact that measuring quantum systems collapses their wave function?

Yes, in theory. In practice, photon generators won't behave perfectly. There are lots of possible attacks, like photon splitting [1]. [1] https://onlinelibrary.wiley.com/doi/full/10.1002/qute.202300...

Once you put error correction, doenn't you lose all the nice properties of the non cloning theorem? If the protocol tolerates 30% of errors, doesn't it tolerate 30% of MITM? (60%??)
Post reply on HN