Differential Fault Attack on Grain v1, ACORN v3 and Lizard

被引:14
作者
Siddhanti, Akhilesh [1 ]
Sarkar, Santanu [2 ]
Maitra, Subhamoy [3 ]
Chattopadhyay, Anupam [4 ]
机构
[1] BITS Pilani KK Birla, Goa Campus, Zuarinagar 403726, Goa, India
[2] IIT Madras, Dept Math, Chennai 600036, Tamil Nadu, India
[3] ISI Kolkata, Appl Stat Unit, 203 BT Rd, Kolkata 700108, India
[4] Nanyang Technol Univ, Sch Comp Engn, Singapore 639798, Singapore
来源
SECURITY, PRIVACY, AND APPLIED CRYPTOGRAPHY ENGINEERING, SPACE 2017 | 2017年 / 10662卷
关键词
Differential Fault Attack; Stream cipher; Grain v1; ACORN v3; Lizard;
D O I
10.1007/978-3-319-71501-8_14
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Differential Fault Attack (DFA) is a very well known technique to evaluate security of a stream cipher. This considers that the stream cipher can be weakened by injection of the fault. In this paper we study DFA on three ciphers, namely Grain v1, Lizard and ACORN v3. We show that Grain v1 (an eStream cipher) can be attacked with injection of only 5 faults instead of 10 that has been reported in 2012. For the first time, we have mounted the fault attack on Lizard, a very recent design and show that one requires only 5 faults to obtain the state. ACORN v3 is a third round candidate of CAESAR and there is only one hard fault attack on an earlier version of this cipher. However, the 'hard fault' model requires a lot more assumption than the generic DFA. In this paper, we mount a DFA on ACORN v3 that requires 9 faults to obtain the state. In case of Grain v1 and ACORN v3, we can obtain the secret key once the state is known. However, that is not immediate in case of Lizard. While we have used the basic framework of DFA that appears in literature quite frequently, specific tweaks have to be explored to mount the actual attacks that were not used earlier. To the best of our knowledge, these are the best known DFAs on these three ciphers.
引用
收藏
页码:247 / 263
页数:17
相关论文
共 21 条
[1]  
Babbage S., ECRYPT STREAM CIPHER
[2]  
Banik S., 2017, SOME CRYPTANALYTIC R, P346
[3]   Improved differential fault attack on MICKEY 2.0 [J].
Banik, Subhadeep ;
Maitra, Subhamoy ;
Sarkar, Santanu .
JOURNAL OF CRYPTOGRAPHIC ENGINEERING, 2015, 5 (01) :13-29
[4]  
Banik S, 2013, LECT NOTES COMPUT SC, V8086, P215, DOI 10.1007/978-3-642-40349-1_13
[5]  
Banik S, 2012, LECT NOTES COMPUT SC, V7428, P122, DOI 10.1007/978-3-642-33027-8_8
[6]  
Barenghi A, 2012, P IEEE, V100, P3056, DOI 10.1109/JPROC.2012.2188769
[7]  
De Cannire C., ESTREAM ECRYPT STREA
[8]   Full key recovery of ACORN with a single fault [J].
Dey, Prakash ;
Rohit, Raghvendra Singh ;
Adhikari, Avishek .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2016, 29 :57-64
[9]  
Hamann M, 2017, IACR T SYMMETRIC CRY, V2017, P45, DOI 10.13154/tosc.v2017.i1.45-79
[10]  
Hell M., 2005, ECRYPT STREAM CIPHER