首页 | 官方网站   微博 | 高级检索  
     

RSA密码算法的功耗轨迹分析及其防御措施
引用本文:韩军,曾晓洋,汤庭鳌.RSA密码算法的功耗轨迹分析及其防御措施[J].计算机学报,2006,29(4):590-596.
作者姓名:韩军  曾晓洋  汤庭鳌
作者单位:复旦大学专用集成电路与系统国家重点实验室,上海,201203
摘    要:针对RSA密码算法的电路,提出了一种新的功耗分析攻击方法--功耗轨迹分析.该方法的基本特点是通过处理电路的功率信号,从信号的轨迹图形中获取RSA算法的敏感信息(如密钥),因此,功耗轨迹分析能够有效地攻击现有的多种形式的RSA实现方案.同时还探讨了RSA密码电路防御攻击的措施:直接在算法中添加冗余的伪操作能够抵御功耗轨迹分析攻击,但是这会导致电路功耗增大和速度降低.进而还提出了一种将RSA算法中的伪操作随机化的新方法.该方法能够在保证电路安全性的同时又节省电路功耗和运算时间.

关 键 词:功耗分析攻击  RSA密码算法  安全芯片  抗攻击  模幂
收稿时间:2005-01-19
修稿时间:2005-01-192006-01-16

Power Trace Analysis Attack and Countermeasures for RSA Cryptographic Circuits
HAN Jun,ZENG Xiao-Yang,TANG Ting-Ao.Power Trace Analysis Attack and Countermeasures for RSA Cryptographic Circuits[J].Chinese Journal of Computers,2006,29(4):590-596.
Authors:HAN Jun  ZENG Xiao-Yang  TANG Ting-Ao
Abstract:The first purpose of this paper is to present a new power analysis attack,total power trace analysis,which is a considerable menace to the unprotected RSA chip.And this attack can efficiently extract secret information from the patterns of the processed power signals.Several different version exponentiation algorithms of RSA cipher examined in the authors' research are all vulnerable to this type attack.The second purpose of this paper is to investigate the countermeasures against the power analysis attack mentioned above.The investigation done in this paper indicates that adding dummy operations into the cipher circuits can resist the attack,but result in higher power consumption and slower speed.And a new solution named as randomized dummy operations is proposed,which can also keep the security of the chip but with a lower power consumption level and faster speed.
Keywords:power analysis attack  RSA cryptographic algorithm  security chip  anti-attack  exponentiation
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号