Stammdaten

Titel: Share-slicing: Friend or Foe?
Untertitel:
Kurzfassung:

Masking is a well loved and widely deployed countermeasure against side channel attacks, in particular in software. Under certain assumptions (w.r.t. independence and noise level), masking provably prevents attacks up to a certain security order and leads to a predictable increase in the number of required leakages for successful attacks beyond this order. The noise level in typical processors where software masking is used may not be very high, thus low masking orders are not sufficient for real world security. Higher order masking however comes at a great cost, and therefore a number techniques have been published over the years that make such implementations more efficient via parallelisation in the form of bit or share slicing. We take two highly regarded schemes (ISW and Barthe et al.), and some corresponding open source implementations that make use of share slicing, and discuss their true security on an ARM Cortex-M0 and an ARM Cortex-M3 processor (both from the LPC series). We show that micro-architectural features of the M0 and M3 undermine the independence assumptions made in masking proofs and thus their theoretical guarantees do not translate into practice (even worse it seems unpredictable at which order leaks can be expected). Our results demonstrate how difficult it is to link theoretical security proofs to practical real-world security guarantees.

Schlagworte: Masking; Side-Channel Analysis
Publikationstyp: Beitrag in Zeitschrift (Autorenschaft)
Erscheinungsdatum: 19.11.2019 (Online)
Erschienen in: IACR Transactions on Cryptographic Hardware and Embedded Systems
IACR Transactions on Cryptographic Hardware and Embedded Systems
zur Publikation
 ( IACR; E. Oswald, S. Gao )
Titel der Serie: -
Bandnummer: -
Heftnummer: -
Erstveröffentlichung: Ja
Version: -
Seite: S. 152 - 174
Bild der Titelseite: Cover

Versionen

Keine Version vorhanden
Erscheinungsdatum: 19.11.2019
ISBN (e-book): -
eISSN: 2569-2925
DOI: http://dx.doi.org/10.13154/tches.v2020.i1.152-174
Homepage: https://tches.iacr.org/index.php/TCHES/article/view/8396/7780
Open Access
  • Online verfügbar (Open Access)

Zuordnung

Organisation Adresse
Universität Klagenfurt
 
Digital Age Research Center (D!ARC)
Universitätsstraße 65-67
9020 Klagenfurt
Österreich
https://www.aau.at/digital-age-research-center/
zur Organisation
Universitätsstraße 65-67
AT - 9020  Klagenfurt
Fakultät für Technische Wissenschaften
 
Institut für Artificial Intelligence und Cybersecurity
Universitätsstr. 65-67
A-9020 Klagenfurt
Österreich
  -993705
   aics-office@aau.at
https://www.aau.at/en/aics/
zur Organisation
Universitätsstr. 65-67
AT - A-9020  Klagenfurt

Kategorisierung

Sachgebiete
  • 102016 - IT-Sicherheit
  • 102017 - Kryptologie
Forschungscluster
  • Humans in the Digital Age
Zitationsindex Kein Zitationsindex ausgewählt
Informationen zum Zitationsindex: Master Journal List
Peer Reviewed
  • Ja
Publikationsfokus
  • Science to Science (Qualitätsindikator: I)
Klassifikationsraster der zugeordneten Organisationseinheiten:
Arbeitsgruppen
  • Cybersecurity

Kooperationen

Organisation Adresse
Bristol University
Tyndall Ave
BS Bristol
Großbrit. u. Nordirland
Tyndall Ave
GB - BS  Bristol

Beiträge der Publikation

Keine verknüpften Publikationen vorhanden