Cryptanalysis of white-box DES implementations with arbitrary external encodings

  • Authors:
  • Brecht Wyseur;Wil Michiels;Paul Gorissen;Bart Preneel

  • Affiliations:
  • Katholieke Universiteit Leuven, Dept. Elect. Eng.-ESAT/SCD-COSIC, Heverlee, Belgium;Philips Research Laboratories, Eindhoven, The Netherlands;Philips Research Laboratories, Eindhoven, The Netherlands;Katholieke Universiteit Leuven, Dept. Elect. Eng.-ESAT/SCD-COSIC, Heverlee, Belgium

  • Venue:
  • SAC'07 Proceedings of the 14th international conference on Selected areas in cryptography
  • Year:
  • 2007

Quantified Score

Hi-index 0.01

Visualization

Abstract

At DRM 2002, Chow et al. [4] presented a method for implementing the DES block cipher such that it becomes hard to extract the embedded secret key in a white-box attack context. In such a context, an attacker has full access to the implementation and its execution environment. In order to provide an extra level of security, an implementation shielded with external encodings was introduced by Chow et al. and improved by Link and Neumann [10]. In this paper, we present an algorithm to extract the secret key from such white-box DES implementations. The cryptanalysis is a differential attack on obfuscated rounds, and works regardless of the shielding external encodings that are applied. The cryptanalysis has a average time complexity of 214 and a negligible space complexity.