Improvement on a Masked White-Box Cryptographic Implementation

被引:7
|
作者
Lee, Seungkwang [1 ,2 ]
Kim, Myungchul [1 ]
机构
[1] Korea Adv Inst Sci & Technol, Dept Sch Comp, Daejeon 34141, South Korea
[2] ETRI, Cryptog Engn Res Sect, Daejeon 34129, South Korea
关键词
Encoding; Correlation; Software; Encryption; Licenses; White-box cryptography; AES; DCA; collision attack; bucketing attack; countermeasure;
D O I
10.1109/ACCESS.2020.2993651
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
White-box cryptography is a software technique to protect secret keys of cryptographic algorithms from attackers who have access to memory. By adapting techniques of differential power analysis to computation traces consisting of runtime information, Differential Computation Analysis (DCA) has recovered the secret keys from white-box cryptographic implementations. In order to thwart DCA, a masked white-box implementation was suggested. It was a customized masking technique that randomizes all the values in the lookup tables with different masks. However, the round output was only permuted by byte encodings, not protected by masking. This is the main reason behind the success of DCA variants on the masked white-box implementation. In this paper, we improve the masked white-box cryptography in such a way to protect against DCA variants by obfuscating the round output with random masks. Specifically, we introduce a white-box AES (WB-AES) implementation applying the masking technique to the key-dependent intermediate value and the several outer-round outputs computed by partial bits of the key. Our analysis and experimental results show that the proposed WB-AES can protect against DCA variants including DCA with a 2-byte key guess, collision, and bucketing attacks. This work requires approximately 3.7 times the table size and 0.7 times the number of lookups compared to the previous masked WB-AES.
引用
收藏
页码:90992 / 91004
页数:13
相关论文
共 50 条
  • [1] A Masked White-Box Cryptographic Implementation for Protecting Against Differential Computation Analysis
    Lee, Seungkwang
    Kim, Taesung
    Kang, Yousung
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (10) : 2602 - 2615
  • [2] A White-Box Cryptographic Implementation for Protecting against Power Analysis
    Lee, Seungkwang
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2018, E101D (01) : 249 - 252
  • [3] A White-Box Implementation of IDEA
    Pang, Siyu
    Lin, Tingting
    Lai, Xuejia
    Gong, Zheng
    SYMMETRY-BASEL, 2021, 13 (06):
  • [4] Cryptanalysis of a Perturbated White-Box AES Implementation
    De Mulder, Yoni
    Wyseur, Brecht
    Preneel, Bart
    PROGRESS IN CRYPTOLOGY - INDOCRYPT 2010, 2010, 6498 : 292 - +
  • [5] A New Attempt of White-box AES Implementation
    Luo, Rui
    Lai, Xuejia
    You, Rong
    2014 INTERNATIONAL CONFERENCE ON SECURITY, PATTERN ANALYSIS, AND CYBERNETICS (SPAC), 2014, : 423 - 429
  • [6] WAS: improved white-box cryptographic algorithm over AS iteration
    Yatao Yang
    Yuying Zhai
    Hui Dong
    Yanshuo Zhang
    Cybersecurity, 6
  • [7] WAS: improved white-box cryptographic algorithm over AS iteration
    Yang, Yatao
    Zhai, Yuying
    Dong, Hui
    Zhang, Yanshuo
    CYBERSECURITY, 2023, 6 (01)
  • [8] On Security of a White-Box Implementation of SHARK
    Shi, Yang
    Fan, Hongfei
    INFORMATION SECURITY, ISC 2015, 2015, 9290 : 455 - 471
  • [9] White-box Implementation of Stream Cipher
    Fukushima, Kazuhide
    Hidano, Seira
    Kiyomoto, Shinsaku
    ICISSP: PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2017, : 263 - 269
  • [10] White-Box AES Implementation Revisited
    Baek, Chung Hun
    Cheon, Jung Hee
    Hong, Hyunsook
    JOURNAL OF COMMUNICATIONS AND NETWORKS, 2016, 18 (03) : 273 - 287