计算机科学 ›› 2011, Vol. 38 ›› Issue (10): 68-71.

• 计算机网络与信息安全 • 上一篇    下一篇

基于CRT组合运算故障的RSA故障分析研究

陈财森,王韬,寇应展,张金中   

  1. (军械工程学院计算机工程系 石家庄050003)
  • 出版日期:2018-11-16 发布日期:2018-11-16

Research on Fault Analysis against RSA Based on Fault in CRT Combination Operation

CHEN Cai-sen,WANG Tao,KOU Ying-zhan,ZHANG Jin-zhong   

  • Online:2018-11-16 Published:2018-11-16

摘要: 原有的基于模幂运算故障的RSA-CR T故障攻击算法,因添加了错误检验操作而失效。为寻找新的故障攻击方法,以Shamir防御算法为攻击分析对象,对CR"I'组合运算步骤产生故障的情况进行分析,建立了基于CRT组合运算故障的攻击模型,提出了能够完整推算出RSA密钥的故障攻击算法。进行了推导论证和实验仿真,结果表明原有防御措施并不能有效地抵御故障攻击,新的攻击算法具有良好的可行性,在算法复杂度上,对固定故障值仅需2个注入故障,对随机故障给出优化的密钥空间搜索方案。最后分析了原有防御算法的问题,同时给出相应的防御建议.

关键词: 旁路攻击,故障分析,中国剩余定理,RSA密码算法

Abstract: hhe former fault analysis can not attack on RSA-CRh with corresponding countermeasure. In order to find the new vulnerability to fault analysis,this paper took Shamir countermeasure as the analyzed object. An attack model based on fault in CRT combination operation was advanced, and gave a differential fault analysis algorithm that can completely recover the RSA key. The fact that the previous countermeasures can not effectively resist the differential fault analysis was demonstrated,and the complexity of our attack was estimated both by a theoretical analysis and software simulations. Experiment results show that the new fault analysis algorithm has well feasibility; it only requires two fault injections for permanent fault, and an improved scheme of key searching for random fault is advanced. Finally, a corresponding advice on countermeasure to differential fault analysis was given by analyzing the problem of previous countermeasures.

Key words: Side channel attack, Fault model, Differential fault analysis, Error checking, Chinese remainder theorem RSA

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!