Information-Combining Differential Fault Attacks on DEFAULT

Marcel Nageler, Christoph Erwin Dobraunig, Maria Eichlseder

Publikation: Beitrag in Buch/Bericht/KonferenzbandBeitrag in einem KonferenzbandBegutachtung

Abstract

Differential fault analysis (DFA) is a very powerful attack vector for implementations of symmetric cryptography. Most countermeasures are applied at the implementation level. At ASIACRYPT 2021, Baksi et al. proposed a design strategy that aims to provide inherent cipher level resistance against DFA by using S-boxes with linear structures. They argue that in their instantiation, the block cipher DEFAULT, a DFA adversary can learn at most 64 of the 128 key bits, so the remaining brute-force complexity of 2 64 is impractical. In this paper, we show that a DFA adversary can combine information across rounds to recover the full key, invalidating their security claim. In particular, we observe that such ciphers exhibit large classes of equivalent keys that can be represented efficiently in normalized form using linear equations. We exploit this in combination with the specifics of DEFAULT’s strong key schedule to recover the key using less than 100 faulty computation and negligible time complexity. Moreover, we show that even an idealized version of DEFAULT with independent round keys is vulnerable to our information-combining attacks based on normalized keys.

Originalspracheenglisch
TitelAdvances in Cryptology – EUROCRYPT 2022 - 41st Annual International Conference on the Theory and Applications of Cryptographic Techniques, 2022, Proceedings
Redakteure/-innenOrr Dunkelman, Stefan Dziembowski
Herausgeber (Verlag)Springer
Seiten168-191
Seitenumfang24
ISBN (elektronisch)978-3-031-07082-2
ISBN (Print)978-3-031-07081-5
DOIs
PublikationsstatusVeröffentlicht - Mai 2022
Veranstaltung41st Annual International Conference on the Theory and Applications of Cryptographic Techniques: EUROCRYPT 2022 - Trondheim, Norwegen
Dauer: 30 Mai 20223 Juni 2022
https://eurocrypt.iacr.org/2022/

Publikationsreihe

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Band13277 LNCS
ISSN (Print)0302-9743
ISSN (elektronisch)1611-3349

Konferenz

Konferenz41st Annual International Conference on the Theory and Applications of Cryptographic Techniques
KurztitelEUROCRYPT 2022
Land/GebietNorwegen
OrtTrondheim
Zeitraum30/05/223/06/22
Internetadresse

ASJC Scopus subject areas

  • Theoretische Informatik
  • Informatik (insg.)

Fields of Expertise

  • Information, Communication & Computing

Fingerprint

Untersuchen Sie die Forschungsthemen von „Information-Combining Differential Fault Attacks on DEFAULT“. Zusammen bilden sie einen einzigartigen Fingerprint.

Dieses zitieren