摘要
针对AES密码算法的单个信息泄露点能量分析攻击,传统攻击方法没有尽可能多地利用算法和能量曲线中对攻击有用的信息,导致这种攻击存在所需曲线条数多、攻击信息利用率低等诸多问题。提出一种针对AES密码算法的多点联合能量分析攻击方法,并以相关性能量分析攻击为例,给出详细的攻击过程。攻击的同时选择轮密钥加和字节变换作为能量分析攻击的中间变量,构建关于该变量的联合能量泄露函数,实施多点联合的相关性能量分析攻击。针对智能卡上软实现的AES密码算法,分别进行联合能量分析攻击,针对轮密钥加和字节变换单个信息泄露点的相关性能量分析攻击实验,实验结果不仅验证了本攻击方法的有效性,而且证实联合能量分析攻击相比针对单个信息泄露点的能量分析攻击具有成功率高、所需攻击曲线条数少等优点。
For the power analysis attack of the AES cryptographic algorithm with the single information leakage point, the traditional attack method does not use as much information as possible in the algorithm and power trace. So there are some problems such as required more power traces, the low utilization rate of information and so on. A novel method of muti-point joint power analysis attack against AES was proposed to solve the problems. And taking the correlation power analysis attack as an example, the detailed attack process was presented. The operations of the round key addition and the Sub Bytes were chosen as the attack intermediate variable at the same time. Then the joint power leakage function was constructed for the attack intermediate variable. And the multi-point joint correlation energy analysis attack was given. Aiming at the AES cryptographic algorithm implemented on the smart card, the multi-point joint power analysis attack, the correlation power analysis attack with the single information leakage point in the key addition and the Sub Bytes were conducted. The measured results validate the proposed method is effective. It also shows that the proposed method has the advantages of high success rate and less power traces comparing with the single information leakage point.
出处
《通信学报》
EI
CSCD
北大核心
2016年第S1期78-84,共7页
Journal on Communications
基金
"核高基"国家科技重大专项基金资助项目(No.2014ZX01032401-001)
国家高技术研究发展计划("863"计划)基金资助项目(No.2012AA01A403)
四川省科技支撑计划项目基金资助项目(No.2014GZ0148)
四川省教育厅重点科研基金资助项目(No.13ZA0091)
成都信息工程大学科研人才基金资助(No.XAKYXM008)~~
关键词
多点联合能量分析攻击
相关性能量分析攻击
AES密码算法
轮密钥加
字节变换
multi-point joint power analysis attack
correlation power analysis attack
AES cryptographic algorithm
round key addition
Sub Bytes