【24h】

Fault Injection Resilience

机译:故障注入弹性

获取原文

摘要

Fault injections constitute a major threat to the security of embedded systems. Errors occurring in the cryptographic algorithms have been shown to be extremely dangerous, since powerful attacks can exploit few of them to recover the full secrets. Most of the resistance techniques to perturbation attacks have relied so far on the detection of faults. We present in this paper another strategy, based on the resilience against fault attacks. The core idea is to allow an erroneous result to be outputted, but with the assurance that this faulty information conveys no information about the secrets concealed in the chip. We first underline the benefits of FIR: false positive are never raised, secrets are not erased uselessly in case of uncompromising faults injections, which increases the card lifespan if the fault is natural and not malevolent, and FIR enables a high potential of resistance even in the context of multiple faults. Then we illustrate two families of fault injection resilience (FIR) schemes suitable for symmetric encryption. The first family is a protocol-level scheme that can be formally proved resilient. The second family mobilizes a special logic-level architecture of the cryptographic module. We notably detail how a countermeasure of this later family, namely dual-rail with precharge logic style, can both protect both against active and passive attacks, thereby bringing a combined global protection of the device. The cost of this logic is evaluated as lower than detection schemes. Finally, we also give some ideas about the modalities of adjunction of FIR to some certification schemes.
机译:故障注入对嵌入式系统的安全性构成了重大威胁。加密算法中出现的错误已被证明是极其危险的,因为强大的攻击可以利用其中的很少一部分来恢复全部机密。迄今为止,大多数抗微扰攻击的技术都依赖于故障的检测。我们在本文中提出了另一种基于对故障攻击的恢复能力的策略。核心思想是允许输出错误的结果,但要保证此错误信息不会传递有关隐藏在芯片中的机密信息。我们首先要强调FIR的好处:不会出现误报,不会在错误注入故障的情况下无用地擦除秘密,如果故障是自然现象而不是恶意,这会延长卡的使用寿命,并且FIR甚至在出现故障时也具有很高的抵抗潜力多个故障的背景。然后,我们说明适用于对称加密的两个系列的故障注入弹性(FIR)方案。第一个家族是可以正式证明具有弹性的协议级方案。第二个家族动用了密码模块的特殊逻辑级别体系结构。我们特别详细地介绍了这个较新系列的对策,即具有预充电逻辑样式的双轨如何既可以防御主动和被动攻击,又可以对设备进行全面保护。这种逻辑的成本被评估为低于检测方案。最后,我们还对一些认证计划中的FIR附加方式提出了一些想法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号