Fault attacks on RSA with CRT:: Concrete results and practical countermeasures

被引:0
作者
Aumüller, C [1 ]
Bier, P [1 ]
Fischer, W [1 ]
Hofreiter, P [1 ]
Seifert, JP [1 ]
机构
[1] Infineon Technol, Secur & ChipCard ICs, D-81609 Munich, Germany
来源
CRYPTOGRAPHIC HARDWARE AND EMBEDDED SYSTEMS - CHES 2002 | 2002年 / 2523卷
关键词
Bellcore attack; Chinese remainder theorem; fault attacks; hardware security; RSA; spike attacks; software countermeasures; transient fault model;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This article describes concrete results and practically validated countermeasures concerning differential fault attacks on RSA using the CRT. We investigate smartcards with an RSA coprocessor where any hardware countermeasures to defeat fault attacks have been switched off. This scenario was chosen in order to analyze the reliability of software countermeasures. We start by describing our laboratory setting for the attacks. Hereafter, we describe the experiments and results of a straightforward implementation of a well-known countermeasure. This implementation turned out to be not sufficient. With the data obtained by these experiments we developed a practical error model. This enabled us to specify enhanced software countermeasures for which we were not able to produce any successful attacks on the investigated chips. Nevertheless, we are convinced that only sophisticated hardware countermeasures (sensors, filters, etc.) in combination with software countermeasures will be able to provide security.
引用
收藏
页码:260 / 275
页数:16
相关论文
共 38 条
  • [11] FISCHER W, 2002, LECT NOTES COMPUT SC, V2384, P136
  • [12] GANDOLFI K, 2001, LECT NOTES COMPUT SC, V2162, P255
  • [13] Gutmann P, 1998, PROCEEDINGS OF THE SEVENTH USENIX SECURITY SYMPOSIUM, P243
  • [14] GUTMANN P, 1997, P 6 USENIX SEC S, P77
  • [15] HANDSCHUH H, 1998, LECT NOTES COMPUT SC, V1820, P372
  • [16] HANDSCHUH H, 1998, CRYPTOBYTES, V4, P6
  • [17] *ISO, 2002, 78163 ISOIEC
  • [18] Chinese remaindering based cryptosystems in the presence of faults
    Joye, M
    Lenstra, AK
    Quisquater, JJ
    [J]. JOURNAL OF CRYPTOLOGY, 1999, 12 (04) : 241 - 245
  • [19] JOYE M, 1997, LECT NOTES COMPUT SC, V1335, P155
  • [20] JOYE M, 2002, LECT NOTES COMPUT SC, V2271, P17