Side‐channel analysis of the modular inversion step in the RSA key generation algorithm. (12th December 2016)
- Record Type:
- Journal Article
- Title:
- Side‐channel analysis of the modular inversion step in the RSA key generation algorithm. (12th December 2016)
- Main Title:
- Side‐channel analysis of the modular inversion step in the RSA key generation algorithm
- Authors:
- Cabrera Aldaya, Alejandro
Cuiman Márquez, Raudel
Cabrera Sarmiento, Alejandro J.
Sánchez‐Solano, Santiago - Other Names:
- Acosta Antonio guestEditor.
Addabbo Tommaso guestEditor. - Abstract:
- Summary: This paper studies the security of the RSA key generation algorithm with regard to side‐channel analysis and presents a novel approach that targets the simple power analysis (SPA) vulnerabilities that may exist in an implementation of the binary extended Euclidean algorithm (BEEA). The SPA vulnerabilities described, together with the properties of the values processed by the BEEA in the context of RSA key generation, represent a serious threat for an implementation of this algorithm. It is shown that an adversary can disclose the private key employing only one power trace with a success rate of 100 % – an improvement on the 25% success rate achieved by the best side‐channel analysis carried out on this algorithm. Two very different BEEA implementations are analyzed, showing how the algorithm's SPA leakages could be exploited. Also, two countermeasures are discussed that could be used to reduce those SPA leakages and prevent the recovery of the RSA private key. Copyright © 2016 John Wiley & Sons, Ltd. Abstract : A novel side‐channel analysis of the RSA key generation algorithm is presented that focus in the modular inversion step instead of prime generation as previous works. The binary extended Euclidean algorithm (BEEA) is commonly used to compute modular inverses; in this research, it is shown that it has simple power analysis vulnerabilities that represent a serious threat for an RSA key generation implementation. Two very different implementations of the BEEASummary: This paper studies the security of the RSA key generation algorithm with regard to side‐channel analysis and presents a novel approach that targets the simple power analysis (SPA) vulnerabilities that may exist in an implementation of the binary extended Euclidean algorithm (BEEA). The SPA vulnerabilities described, together with the properties of the values processed by the BEEA in the context of RSA key generation, represent a serious threat for an implementation of this algorithm. It is shown that an adversary can disclose the private key employing only one power trace with a success rate of 100 % – an improvement on the 25% success rate achieved by the best side‐channel analysis carried out on this algorithm. Two very different BEEA implementations are analyzed, showing how the algorithm's SPA leakages could be exploited. Also, two countermeasures are discussed that could be used to reduce those SPA leakages and prevent the recovery of the RSA private key. Copyright © 2016 John Wiley & Sons, Ltd. Abstract : A novel side‐channel analysis of the RSA key generation algorithm is presented that focus in the modular inversion step instead of prime generation as previous works. The binary extended Euclidean algorithm (BEEA) is commonly used to compute modular inverses; in this research, it is shown that it has simple power analysis vulnerabilities that represent a serious threat for an RSA key generation implementation. Two very different implementations of the BEEA are analyzed showing how these vulnerabilities could be exploited by an adversary. … (more)
- Is Part Of:
- International journal of circuit theory and applications. Volume 45:Number 2(2017:Feb.)
- Journal:
- International journal of circuit theory and applications
- Issue:
- Volume 45:Number 2(2017:Feb.)
- Issue Display:
- Volume 45, Issue 2 (2017)
- Year:
- 2017
- Volume:
- 45
- Issue:
- 2
- Issue Sort Value:
- 2017-0045-0002-0000
- Page Start:
- 199
- Page End:
- 213
- Publication Date:
- 2016-12-12
- Subjects:
- side‐channel analysis -- SPA -- binary Euclidean algorithm -- RSA key generation
Electric circuit analysis -- Periodicals
621.319205 - Journal URLs:
- http://onlinelibrary.wiley.com/ ↗
- DOI:
- 10.1002/cta.2283 ↗
- Languages:
- English
- ISSNs:
- 0098-9886
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 4542.167000
British Library DSC - BLDSS-3PM
British Library STI - ELD Digital store - Ingest File:
- 145.xml