A formal proof of countermeasures against fault injection attacks on CRT-RSA

被引:16
作者
Rauzy, Pablo [1 ]
Guilley, Sylvain [1 ]
机构
[1] Telecom ParisTech, CNRS LTCI, Inst Mines Telecom, Paris, France
关键词
RSA (Rivest Shamir Adleman); CRT (Chinese Remainder Theorem); Fault injection; BellCoRe (Bell Communications Research) attack; Formal proof; OCaml;
D O I
10.1007/s13389-013-0065-3
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In this article, we describe a methodology that aims at either breaking or proving the security of CRT-RSA implementations against fault injection attacks. In the specific case-study of the BellCoRe attack, our work bridges a gap between formal proofs and implementation-level attacks. We apply our results to three implementations of CRT-RSA, namely the unprotected one, that of Shamir, and that of Aumuller et al. Our findings are that many attacks are possible on both the unprotected and the Shamir implementations, while the implementation ofAumuller et al. is resistant to all single-fault attacks. It is also resistant to double-fault attacks if we consider the less powerful threat model of its authors.
引用
收藏
页码:173 / 185
页数:13
相关论文
共 24 条
  • [1] Aumuller C, 2002, LECT NOTES COMPUT SC, V2523, P260
  • [2] Berzati A., 2012, FAULT ANAL CRYPTOGRA, P111
  • [3] Biham E, 1997, LECT NOTES COMPUT SC, V1294, P513
  • [4] Biham E, 2008, LECT NOTES COMPUT SC, V5157, P221, DOI 10.1007/978-3-540-85174-5_13
  • [5] Blanchet B., PROVERIF CRYPTOGRAPH
  • [6] Blomer J., 2003, ACM C COMP COMM SEC, P311
  • [7] Boneh D., 1997, Advances in Cryptology - EUROCRYPT '97. International Conference on the Theory and Application of Cryptographic Techniques Proceedings, P37
  • [8] Formal verification of a CRT-RSA implementation against fault attacks
    Christofi, Maria
    Chetali, Boutheina
    Goubin, Louis
    Vigilant, David
    [J]. JOURNAL OF CRYPTOGRAPHIC ENGINEERING, 2013, 3 (03) : 157 - 167
  • [9] Coron Jean-Sebastien, 2010, Proceedings of the 2010 Workshop on Fault Diagnosis and Tolerance in Cryptography (FDTC 2010), P89, DOI 10.1109/FDTC.2010.9
  • [10] Wavelet Transform Based Pre-processing for Side Channel Analysis
    Debande, Nicolas
    Souissi, Youssef
    El Aabid, M. Abdelaziz
    Guilley, Sylvain
    Danger, Jean-Luc
    [J]. 2012 IEEE/ACM 45TH INTERNATIONAL SYMPOSIUM ON MICROARCHITECTURE WORKSHOPS, 2012, : 32 - 38