CRYPTO '99 Proceedings of the 19th Annual International Cryptology Conference on Advances in Cryptology
FC '00 Proceedings of the 4th International Conference on Financial Cryptography
Smartly Analyzing the Simplicity and the Power of Simple Power Analysis on Smartcards
CHES '00 Proceedings of the Second International Workshop on Cryptographic Hardware and Embedded Systems
Scan Based Side Channel Attacks on Stream Ciphers and Their Counter-Measures
INDOCRYPT '08 Proceedings of the 9th International Conference on Cryptology in India: Progress in Cryptology
A Unified Framework for the Analysis of Side-Channel Key Recovery Attacks
EUROCRYPT '09 Proceedings of the 28th Annual International Conference on Advances in Cryptology: the Theory and Applications of Cryptographic Techniques
LFSR based stream ciphers are vulnerable to power attacks
INDOCRYPT'07 Proceedings of the cryptology 8th international conference on Progress in cryptology
Differential power analysis of stream ciphers
CT-RSA'07 Proceedings of the 7th Cryptographers' track at the RSA conference on Topics in Cryptology
Hi-index | 0.00 |
Correlation power analysis (CPA) has been a powerful and thoroughly studied threat for implementations of block ciphers and public key algorithms but not yet for stream ciphers. This paper proposes a novel CPA attack on the hardware-oriented stream cipher Trivium, one of the finally chosen ciphers by the eSTREAM project. Based on the Hamming distance model, the proposed attack exploits the resynchronization phase of Trivium. By choosing proper initial value vectors, the algorithmic noise of the device is completely eliminated. Furthermore, a novel concept of modified correlation coefficients is introduced, which can be used to describe the relation between the hypothetical power consumption values and the measured power consumption values. Through the calculation of modified correlation coefficients, the effect of the electronic noise is significantly decreased and values of the hypotheses can be discriminated uniquely by the highest modified correlation coefficient. According to the recovered hypotheses, many equations on the secret key bits can be obtained, which will be sequentially solved to extract the secret key of Trivium. Compared with Fischer's differential power analysis attack on Trivium, the proposed algorithm is more efficient and robust. Finally, a simulation attack is mounted to confirm the efficiency of the algorithm. Copyright © 2011 John Wiley & Sons, Ltd.