A DPA Attack on the Implementation of RSA-CRT with Montgomery Reduction
スポンサーリンク
概要
- 論文の詳細を見る
The implementation security of the RSA cryptosystem, under the threat of side-channel analysis, has attracted the attentions of many researchers. Boer et al. had proposed the MRED-DPA attack on RSA-CRT by choosing ciphertexts of equi-distant data. Their attack can be applied to RSA-OAEP decryption but not RSA-PSS signing because of the PSS random padding. We propose a new DPA attack on an implementation of RSA-CRT, with the Montgomery reduction. The proposed attack assumes only known ciphertexts, and can be applied to both RSA-OAEP decryption and RSA-PSS signing even if a random padding technique is used in practice. This study also presents experimental results to verify the proposed attack. Finally, this study proposes a CRT-based message blinding technique as a low-cost DPA countermeasure.
著者
-
Yen Sung-ming
Dept Of Computer Science And Information Engineering National Central University
-
LIEN Wei-Chih
Dept of Computer Science and Information Engineering, National Central University
-
Lien Wei-chih
Dept Of Computer Science And Information Engineering National Central University
関連論文
- On the Computational Sequence of Scalar Multiplication with Left-to-Right Recoded NAF and Sliding Window Technique
- Modified Doubling Attack by Exploiting Chosen Ciphertext of Small Order
- A DPA Attack on the Implementation of RSA-CRT with Montgomery Reduction