检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]成都信息工程大学信息安全工程学院,四川成都610225
出 处:《通信学报》2015年第10期85-91,共7页Journal on Communications
基 金:国家重大科技专项基金资助项目(2014ZX01032401-001);国家高技术研究发展计划("863"计划)基金资助项目(2012AA01A403);"十二五"国家密码发展基金资助项目(MMJJ201101022);四川省科技支撑计划基金资助项目(2014GZ0148);四川省教育厅重点科研基金资助项目(13ZA0091);成都信息工程学院科研基金资助项目(CRF201301)~~
摘 要:Wang等通过攻击时引入固定数据,在2013年的CIS上提出了针对SM4密码算法选择明文功耗分析攻击,但该方法存在选择明文次数、采集功耗信号曲线次数和条数多的问题,攻击过程复杂。分析发现该固定数据和轮子密钥之间的相关性可用于恢复轮子密钥,为此提出针对SM4密码算法轮输出的改进型选择明文功耗分析攻击。攻击时选择特殊的明文采集功耗信号曲线,将固定数据作为攻击目标,利用攻击出的固定数据来破解轮子密钥,实验验证了该方法的有效性。使用此方法进行攻击,不仅可以降低选择明文次数、采集功耗信号曲线次数和条数,提高攻击效率,而且还可应用于针对SM4密码算法线性变换的选择明文攻击。The power analysis attack on SM4 using the chosen-plaintext method was proposed by Wang et al in 2013 CIS. The fixed data was introduced in the method when attacking the round key. However, the attack process was complex. There were many problems in the process, such as more power traces, more numbers of the chosen-plaintext and acquisition power traces. The correlation between the fixed data and the round key were presented, which could be used to decode the round key. Based on the correlation, the improved chosen-plaintext power analysis attack against SM4 at the round-output was proposed. The proposed method attacked the fixed data by analyzing the power traces of the special plaintext. And the round key was derived based on the correlation. The results show that the proposed attack algorithm is effective. The proposed method not only improves the efficiency of the attack by reducing number of power traces, number of the chosen-plaintext and number of acquisition power traces, but also can be applied to a chosen-plaintext power analysis attack against SM4 at the shift operation.
关 键 词:SM4算法 能量分析攻击 选择明文 轮输出 固定数据
分 类 号:TP309.1[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.50