...
【24h】

Online template attacks

机译:在线模板攻击

获取原文
获取原文并翻译 | 示例
           

摘要

Template attacks are a special kind of side-channel attacks that work in two stages. In a first stage, the attacker builds up a database of template traces collected from a device which is identical to the attacked device, but under the attacker's control. In the second stage, traces from the target device are compared to the template traces to recover the secret key. In the context of attacking elliptic curve scalar multiplication with template attacks, one can interleave template generation and template matching and reduce the amount of template traces. This paper enhances the power of this technique by defining and applying the concept of online template attacks, a general attack technique with minimal assumptions for an attacker, who has very very limited control over the template device. We show that online template attacks need only one power consumption trace of a scalar multiplication on the target device; they are thus suitable not only against ECDSA and static elliptic curve Diffie-Hellman (ECDH), but also against elliptic curve scalar multiplication in ephemeral ECDH. In addition, online template attacks need only one template trace per scalar bit and they can be applied to a broad variety of scalar multiplication algorithms. To demonstrate the power of online template attacks, we recover scalar bits of a scalar multiplication using the double-and-add-always algorithm on a twisted Edwards curve running on a smartcard with an ATmega163 CPU.
机译:模板攻击是一种特殊的旁路攻击,分为两个阶段。在第一阶段,攻击者建立了从设备收集的模板跟踪数据库,该设备与被攻击设备相同,但处于攻击者的控制之下。在第二阶段中,将来自目标设备的跟踪与模板跟踪进行比较以恢复密钥。在利用模板攻击攻击椭圆曲线标量乘法的情况下,可以交错模板生成和模板匹配并减少模板迹线的数量。本文通过定义和应用在线模板攻击的概念来增强此技术的功能,在线模板攻击是一种对攻击者具有最小假设的通用攻击技术,攻击者对模板设备的控制非常有限。我们展示了在线模板攻击只需要在目标设备上进行一次标量乘法的功耗跟踪;因此,它们不仅适用于ECDSA和静态椭圆曲线Diffie-Hellman(ECDH),而且还适用于短暂ECDH中的椭圆曲线标量乘法。此外,在线模板攻击每个标量位只需要一个模板迹线,它们可以应用于多种标量乘法算法。为了演示在线模板攻击的强大功能,我们使用运行在具有ATmega163 CPU的智能卡上的扭曲Edwards曲线上的双倍加总算法,恢复了标量乘法的标量位。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号