检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:王庆[1] 屠晨阳[2] 沈嘉荟 WANG Qing;TU Chenyang;SHEN Jiahui(China Information Technology Security Evaluation Center, Beijing 100085, China;Institute of Information Engineering, Chinese Academy of Sciences, Beijing 100093, China)
机构地区:[1]中国信息安全测评中心,北京100085 [2]中国科学院信息工程研究所,北京100093
出 处:《信息网络安全》2017年第5期57-62,共6页Netinfo Security
基 金:国家自然科学基金[U163620068];中科院战略合作专项[AQ-1708AQ-1703]
摘 要:目前,密码算法、模块、设备在设计生产时都增加了评估侧信道风险这一过程。侧信道攻击的对象主要分为无保护的密码算法/模块和有保护的密码算法/模块两大类,如果针对每种攻击对象单独设计攻击方案是费时费力的,所以,基于实际侧信道攻击基础理论,结合经典侧信道分析思路,文章提出一种通用型分析框架涵盖所有攻击流程。文章将实际侧信道攻击分为3个递进的步骤,分别是侧信道逻辑漏洞评估、侧信道信息采集以及侧信道分析优化,详细阐述各步骤的实现方法,并利用该框架对改进的低熵掩码与指令乱序的双重方案对被保护的软件进行攻击测试。实验结果表明该框架具备合理性和有效性,能应对绝大多数侧信道攻击。At present,many cryptographic algorithms and cryptographic devices add the processof evaluating the risk of side channel when being designed.Side channel attack object is divided intotwo categories:unprotected cipher algorithm/module and protected cipher algorithm/module.If theattacks are designed separately for each attack object,it is time-consuming and laborious.Therefore,this paper proposes a new generalized analysis framework which can be applied to the vast majority ofside channel attacks.Actual side channel attacks would be divided into three steps,the progressive sidechannel logic vulnerability assessment,side channel information collection,and side channel analysisoptimization,in this paper,we detail the realization method of each step.Then,this framework coversall attacking processes and can be applied on the software which is protected by improved low entropymask and out-of-order instructions.The experiment results verify the rationality and validity of theframework which adapts to most side channel attacks.
关 键 词:密码算法 密码设备 侧信道风险评估 侧信道攻击 通用型分析框架
分 类 号:TN918[电子电信—通信与信息系统]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:18.217.79.15