eprint.iacr.org will be offline for approximately an hour for routine maintenance at 11pm UTC on Tuesday, April 16. We lost some data between April 12 and April 14, and some authors have been notified that they need to resubmit their papers.

Paper 2021/941

Spectral Approach to Process the (Multivariate) High-Order Template Attack against Any Masking Scheme

Maamar Ouladj
Sylvain Guilley
Philippe Guillot
Farid Mokrane
Abstract

Cryptographic software is particularly vulnerable to side-channel attacks when programmed in embedded devices. Indeed, the leakage is particularly intense compared to the noise level, making it mandatory for the developer to implement side-channel attack protections. Random masking is a customary option, but in this case, the countermeasure must be high-order, meaning that each sensitive variable is splitted into multiple (at least two) shares. Attacks therefore become computationally challenging. In this paper, we show that high-order template attacks can be expressed under the form of a convolution. This formulation allows for a considerable speed-up in their computation thanks to fast Fourier transforms. To further speed-up the attack, we also provide an interesting multi-threading implementation of this approach. This strategy naturally applies to template attacks where the leakage of each share is multivariate. We show that this strategy can be adapted to several masking schemes, inherently to the way the splitting is realized. This technique allows us to validate multiple very high-order attacks (order of some tens). In particular, it revealed a non-trivial flaw (hard to detect otherwise) in a multivariate extension of the DSM masking (and subsequently to fix it, and validate its rationale).

Note: Fixing some indices (in Proposition 1).

Metadata
Available format(s)
PDF
Category
Implementation
Publication info
Published elsewhere. Minor revision. Journal of Cryptographic Engineering
DOI
10.1007/s13389-020-00253-4
Keywords
Template attacksMasking schemesHigh-order attacksConvolutionFourier transformWalsh-Hadamard transform
Contact author(s)
sylvain guilley @ secure-ic com
History
2023-10-31: last of 2 revisions
2021-07-13: received
See all versions
Short URL
https://ia.cr/2021/941
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2021/941,
      author = {Maamar Ouladj and Sylvain Guilley and Philippe Guillot and Farid Mokrane},
      title = {Spectral Approach to Process the (Multivariate) High-Order Template Attack against Any Masking Scheme},
      howpublished = {Cryptology ePrint Archive, Paper 2021/941},
      year = {2021},
      doi = {10.1007/s13389-020-00253-4},
      note = {\url{https://eprint.iacr.org/2021/941}},
      url = {https://eprint.iacr.org/2021/941}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.