中文

证明掩码冗余电路对 SIFA 的防护性

密码学与安全 2021-07-06 v1 计算机科学中的逻辑

摘要

侧信道与故障攻击等实现攻击对物理上可被攻击者接触的密码设备构成显著威胁。因此,智能卡等设备实现了相应对策,如冗余计算与掩码。近来,统计无效故障攻击(SIFA)被证明能够规避这些经典对策技术。我们提出一种验证任意掩码实现(硬件与软件)SIFA 防护性的新方法。所提方法利用布尔依赖分析、因式分解以及掩码计算的已知性质,来判断冗余掩码电路的故障检测机制是否会泄露所处理秘密值的信息。我们将这一新方法实现于名为 Danira 的工具中,它能在数分钟内展示如 AES S-Box 等密码实现的 SIFA 抗性。

关键词

引用

@article{arxiv.2107.01917,
  title  = {Proving SIFA Protection of Masked Redundant Circuits},
  author = {Vedad Hadzic and Robert Primas and Roderick Bloem},
  journal= {arXiv preprint arXiv:2107.01917},
  year   = {2021}
}

备注

This is the extended version of the paper published at ATVA 2021