[Full-disclosure] plz suggest security for DLL functions

Michael Holstein michael.holstein at csuohio.edu
Fri Jul 1 20:17:58 BST 2005


> Please guide us in making those functions secret or encrypted so that
> others cannt use our functions.

Nope. You can make it marginally more difficult (encrypted) but you
can't "prevent" it entirely .. and the harder you try to make it, the
more fun you make it for crackers to reverse-engineer.

About the best you could do to hide the "super secret sauce" (lol ..
Vladis) is put it on a secure token (eg: SmartCard) and call it from
there. While not foolproof, hardware is [generally] more difficult to hack.

Cheers,

Michael Holstein CISSP GCIA
Cleveland State University




Full-Disclosure is hosted and sponsored by Secunia.