【24h】

Cold Boot Attacks on Bliss

机译:冷启动攻击幸福

获取原文

摘要

In this paper, we examine the feasibility of cold boot attacks against the BLISS signature scheme. We believe this to be the first time that this has been attempted. Our work is the continuation of the trend to develop cold boot attacks for different schemes as revealed by the literature. But it is also the continuation of the evaluation of post-quantum cryptographic schemes against this class of attack. Particularly, we review the BLISS implementation provided by the strongSwan project. This implementation particularly stores its private key in memory in an interesting way therefore requiring novel approaches to key recovery. We present various approaches to key recovery. We first analyse the key recovery problem in this particular case via key enumeration algorithms, and so propose different techniques for key recovery. We then turn our attention to exploit further the algebraic relation among the components of the private key, and we thus establish a connection between the key recovery problem in this particular case and an instance of Learning with Errors Problem (LWE). We then explore various key recovery techniques to tackle this instance of LWE. In particular, we show a key recovery strategy combining lattice techniques and key enumeration. Finally, we report results from experimenting with one of the key recovery algorithms for a range of parameters, showing it is able to tolerate a noise level of α = 0.001 and β = 0.09 for a parameter set when performing a 2~(40) enumeration.
机译:在本文中,我们研究了对Bliss签名方案的冷启动攻击的可行性。我们认为这是第一次尝试的。我们的作品是对文献透露的不同方案开发冷启动攻击的趋势。但它也延续了对这类攻击的量子后加密计划的评价。特别是,我们审查了强国项目提供的Bliss实施。此实现特别将其私钥以有趣的方式存储在内存中,因此需要新颖的键恢复方法。我们提出了各种方法来恢复。我们首先通过密钥枚举算法分析该特定情况的关键恢复问题,因此提出了用于密钥恢复的不同技术。然后,我们注意私钥的组件之间的代数关系,从而在私钥的组件之间进一步剥削,我们在这个特殊情况下建立了关键恢复问题的联系,以及使用错误问题的学习实例(LWE)。然后,我们探索各种关键恢复技术来解决这个LWE的这个例子。特别是,我们展示了结合晶格技术和密钥枚举的关键恢复策略。最后,我们从与用于一系列参数的密钥恢复算法之一实验报告结果,示出执行2〜(40)的枚举时,它是能够容忍的α= 0.001,β= 0.09的噪声电平为一个参数集。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号