首页> 外文会议>International Conference on the Theory and Application of Cryptology and Information Security >Characterisation and Estimation of the Key Rank Distribution in the Context of Side Channel Evaluations
【24h】

Characterisation and Estimation of the Key Rank Distribution in the Context of Side Channel Evaluations

机译:侧频道评估背景下关键等级分布的特征与估算

获取原文

摘要

Quantifying the side channel security of implementations has been a significant research question for several years in academia but also among real world side channel practitioners. As part of security evaluations, efficient key rank estimation algorithms were devised, which in contrast to analyses based on subkey recovery, give a holistic picture of the security level after a side channel attack. However, it has been observed that outcomes of rank estimations show a huge spread in precisely the range of key ranks where enumeration could lead to key recovery. These observations raise the question whether this is because of insufficient rank estimation procedures, or, if this is an inherent property of the key rank. Furthermore, if this was inherent, how could key rank outcomes be translated into practically meaningful figures, suitable to analysing the risk that real world side channel attacks pose? This paper is a direct response to these questions. We experimentally identify the key rank distribution and show that it is independent of different distinguishers and signal-to-noise ratios. Then we offer a theoretical explanation for the observed key rank distribution and determine how many samples thereof are required for a robust estimation of some key parameters. We discuss how this can be naturally integrated into real world side channel evaluation practices. We conclude our research by connecting non-parametric order statistics, in particular percentiles, in a practically meaningful way with business goals.
机译:量化实现的侧渠道安全在学术界几年内是一项重要的研究问题,也是现实世界侧渠道从业者之间的重要研究问题。作为安全评估的一部分,设计了有效的关键等级估计算法,其与基于子恢复的分析相反,在侧频攻击后提供安全级别的整体图像。然而,已经观察到,等级估计的结果表明巨大的传播恰恰在枚举可能导致钥匙恢复的关键等级范围内。这些观察结果提出了这个问题,因为这是因为等级估计程序不足,或者如果这是关键等级的固有属性。此外,如果这是固有的,那么将主要排名结果转化为实际上有意义的数字,适合分析现实世界侧渠道攻击姿势的风险?本文是对这些问题的直接响应。我们通过实验识别关键等级分布并表明它与不同的区别和信噪比无关。然后,我们为观察到的关键等级分布提供理论上的解释,并确定鲁棒估计某些关键参数所需的样本。我们讨论如何自然地集成到现实世界侧渠道评估实践中。我们通过将非参数级统计数据(特别是百分位)以实际上有意义的方式与业务目标的方式结束我们的研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号