Differential Cluster Analysis

  • Authors:
  • Lejla Batina;Benedikt Gierlichs;Kerstin Lemke-Rust

  • Affiliations:
  • ESAT/SCD-COSIC and IBBT, K.U. Leuven, Leuven-Heverlee, Belgium B-3001;ESAT/SCD-COSIC and IBBT, K.U. Leuven, Leuven-Heverlee, Belgium B-3001;University of Applied Sciences Bonn-Rhein-Sieg, Sankt Augustin, Germany 53757

  • Venue:
  • CHES '09 Proceedings of the 11th International Workshop on Cryptographic Hardware and Embedded Systems
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

We propose a new technique called Differential Cluster Analysis for side-channel key recovery attacks. This technique uses cluster analysis to detect internal collisions and it combines features from previously known collision attacks and Differential Power Analysis. It captures more general leakage features and can be applied to algorithmic collisions as well as implementation specific collisions. In addition, the concept is inherently multivariate. Various applications of the approach are possible: with and without power consumption model and single as well as multi-bit leakage can be exploited. Our findings are confirmed by practical results on two platforms: an AVR microcontroller with implemented DES algorithm and an AES hardware module. To our best knowledge, this is the first work demonstrating the feasibility of internal collision attacks on highly parallel hardware platforms. Furthermore, we present a new attack strategy for the targeted AES hardware module.