Paper 2012/175
Optimal First-Order Masking with Linear and Non-Linear Bijections
Houssem MAGHREBI, Claude CARLET, Sylvain GUILLEY, and Jean-Luc DANGER
Abstract
Hardware devices can be protected against side-channel attacks by introducing one random mask per sensitive variable.
The computation throughout is unaltered if the shares (masked variable and mask) are processed concomitantly, in two distinct registers.
Nonetheless, this setup can be attacked by a zero-offset second-order CPA attack.
The countermeasure can be improved by manipulating the mask through a bijection
Metadata
- Available format(s)
-
PDF
- Category
- Implementation
- Publication info
- Published elsewhere. Unknown where it was published
- Keywords
- First-order masking countermeasure (CM)zero-offset HO-CPAlinear and non-linear codes.
- Contact author(s)
-
maghrebi @ enst fr
sylvain guilley @ telecom-paristech fr
danger @ enst fr
claude carlet @ gmail com - History
- 2012-04-11: received
- Short URL
- https://ia.cr/2012/175
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2012/175, author = {Houssem MAGHREBI and Claude CARLET and Sylvain GUILLEY and Jean-Luc DANGER}, title = {Optimal First-Order Masking with Linear and Non-Linear Bijections}, howpublished = {Cryptology {ePrint} Archive, Paper 2012/175}, year = {2012}, url = {https://eprint.iacr.org/2012/175} }