Abstract | ||
---|---|---|
Recently, side channel attacks (SCA) have been recognized as menaces to public key cryptosystems. In SCA, an attacker observes side channel information during cryptographic operations, and reveals the secret scalar using the side channel information. On the other hand, elliptic curve cryptosystems (ECC) are suitable for implementing on smartcards. Since a scalar multiplication is a dominant step in ECC, we need to design an algorithm to compute scalar multiplication with the immunity to SCA. For this purpose, several scalar multiplication methods that utilize randomized binary-signed-digit (BSD) representations were proposed. This type of countermeasures includes Ha-Moon's countermeasure, Ebeid-Hasan's one, and Agagliate's one. In this paper we propose a novel general attack against "all" the countermeasures of this type. The proposed attack lists the candidates for the secret scalar, however straight-forward approach requires huge memory, thus it is infeasible. The proposed attack divides the table into small tables, which reduces the memory requirement. For example, the computational cost and the memory requirement of the proposed attack for revealing the 163-bit secret key are O(2(8)) and O(2(23)), respectively, using 20 observations on the scalar multiplication with Ha-Moon's countermeasure. The computational cost and the mernory requirement are O(2(21)) and O(2(12)) for Ebeid-Hasan's one, and O(2(40)) and O(2(6)) for Agagliate's one. If 40 observations are used, computational cost for Agagliate's one is reduced to O(2(33)). Whenever we utilizea countermeasure of BSD type, we should beware of the proposed attack. In other words, the security of BSD type is controversial. |
Year | DOI | Venue |
---|---|---|
2004 | 10.1007/978-3-540-24852-1_29 | Lecture Notes in Computer Science |
Keywords | Field | DocType |
elliptic curve cryptosystem,side channel attacks,SPA,DPA,BSD representation,Ha-Moon's countermeasure,Ebeid-Hasan's countermeasure,Agagliate's countermeasure | Scalar multiplication,Computer security,Cryptography,Computer science,Arithmetic,Cryptanalysis,Multiplication,Electronic countermeasure,Side channel attack,Public-key cryptography,Binary number | Conference |
Volume | ISSN | Citations |
3089 | 0302-9743 | 2 |
PageRank | References | Authors |
0.38 | 11 | 6 |
Name | Order | Citations | PageRank |
---|---|---|---|
Dong-guk Han | 1 | 124 | 24.94 |
Katsuyuki Okeya | 2 | 447 | 38.47 |
Taehyun Kim | 3 | 234 | 30.74 |
Yoon Sung Hwang | 4 | 2 | 1.06 |
Young-Ho Park | 5 | 62 | 11.37 |
Souhwan Jung | 6 | 172 | 23.50 |