March 6, 2023, 6:06 p.m. |

IACR News www.iacr.org

ePrint Report: Caveat Implementor! Key Recovery Attacks on MEGA

Martin R. Albrecht, Miro Haller, Lenka Mareková, Kenneth G. Paterson


MEGA is a large-scale cloud storage and communication platform that aims to provide end-to-end encryption for stored data. A recent analysis by Backendal, Haller and Paterson (IEEE S&P 2023) invalidated these security claims by presenting practical attacks against MEGA that could be mounted by the MEGA service provider. In response, the MEGA developers added lightweight sanity checks on the user RSA …

amp analysis attacks claims cloud cloud storage communication data developers encryption end end-to-end eprint report ieee key large mega miro platform recovery report response scale security service service provider storage

Senior Security Engineer - Detection and Response

@ Fastly, Inc. | US (Remote)

Application Security Engineer

@ Solidigm | Zapopan, Mexico

Defensive Cyber Operations Engineer-Mid

@ ISYS Technologies | Aurora, CO, United States

Manager, Information Security GRC

@ OneTrust | Atlanta, Georgia

Senior Information Security Analyst | IAM

@ EBANX | Curitiba or São Paulo

Senior Information Security Engineer, Cloud Vulnerability Research

@ Google | New York City, USA; New York, USA