Fault Attacks on RSA with CRT: Concrete Results and Practical Countermeasures

作者: C. Aumüller , P. Bier , W. Fischer , P. Hofreiter , J.-P. Seifert

DOI: 10.1007/3-540-36400-5_20

关键词: SoftwareEmbedded systemCountermeasureSmart cardHardware security moduleComputer scienceSoftware qualityCryptanalysisFault (power engineering)Public-key cryptography

摘要: This article describes concrete results and practically validated countermeasures concerning differential fault attacks on RSA using the CRT. We investigate smartcards with an coprocessor where any hardware to defeat have been switched off. scenario was chosen in order analyze reliability of software countermeasures.We start by describing our laboratory setting for attacks. Hereafter, we describe experiments a straightforward implementation well-known countermeasure. turned out be not sufficient. With data obtained these developed practical error model. enabled us specify enhanced which were able produce successful investigated chips.Nevertheless, are convinced that only sophisticated (sensors, filters, etc.) combination will provide security.

参考文章(30)
Marc Joye, Quisquater Jean-Jacques, Yen Sung-Ming, Moti Yung, Observability Analysis - Detecting When Improved Cryptosystems Fail the cryptographers track at the rsa conference. pp. 17- 29 ,(2002) , 10.1007/3-540-45760-7_2
Yen Sung-Ming, Seungjoo Kim, Seongan Lim, Sangjae Moon, A Countermeasure against One Physical Cryptanalysis May Benefit Another Attack international conference on information security and cryptology. pp. 414- 427 ,(2001) , 10.1007/3-540-45861-1_31
Karine Gandolfi, Christophe Mourtel, Francis Olivier, Electromagnetic Analysis: Concrete Results cryptographic hardware and embedded systems. ,vol. 2162, pp. 251- 261 ,(2001) , 10.1007/3-540-44709-1_21
Ivars Peterson, Chinks in digital armor: Exploiting faults to break smart‐card cryptosystems Science News. ,vol. 151, pp. 78- 79 ,(1997) , 10.2307/3980615
Yen Sung-Ming, Seungjoo Kim, Seongan Lim, Sangjae Moon, RSA Speedup with Residue Number System Immune against Hardware Fault Cryptanalysis international conference on information security and cryptology. pp. 397- 413 ,(2001) , 10.1007/3-540-45861-1_30
Wieland Fischer, Jean-Pierre Seifert, Note on Fast Computation of Secret RSA Exponents australasian conference on information security and privacy. pp. 136- 143 ,(2002) , 10.1007/3-540-45450-0_10
Peter Gutmann, Data remanence in semiconductor devices usenix security symposium. pp. 4- 4 ,(2001)
Ross Anderson, Markus Kuhn, Low Cost Attacks on Tamper Resistant Devices international workshop on security. pp. 125- 136 ,(1997) , 10.1007/BFB0028165