Paper 2023/893

Short paper: Diversity Methods for Laser Fault Injection to Improve Location Coverage

Marina Krček, Delft University of Technology
Thomas Ordas, STMicroelectronics (France)
Stjepan Picek, Radboud University Nijmegen
Abstract

In the first step of fault injection attacks, it is necessary to perform fault injections for target characterization to improve the chances of finding vulnerabilities that can be exploited in the second step. The second step is the attack, where the vulnerabilities are used to break the security. This work considers the parameter search on the laser fault injection parameters. While this work can also be adjusted to find exploitable faults, the objective here is to find as many faults as possible on the target device. The goal comes from a security evaluation perspective to perform a successful target characterization. Previous works propose several methods, such as the memetic algorithm or hyperparameter tuning techniques. However, we notice a problem concerning the convergence of such methods to one specific target region, which is beneficial for an attack where one parameter combination could be enough. Indeed, these search algorithms lead to many observed vulnerabilities, but most seem to come from the same area on the target, which could mean some crucial vulnerabilities are missed. In this work, we propose considering the location coverage of the algorithms and offer two methods promoting diversity in tested parameter combinations to increase it while still finding many faults.We compare the grid memetic algorithm and evolution strategies to the performance of the memetic algorithm and random search. Our results show a benefit from introducing diversity to increase location coverage, but the overall number of vulnerabilities is decreased compared to the memetic algorithm. However, the number of unique locations with vulnerabilities is similar between the three evolutionary algorithms, with evolution strategies providing the most distant locations.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Preprint.
Keywords
Laser Fault InjectionParameter SearchEvolutionary AlgorithmsDiversityLocation Coverage
Contact author(s)
m krcek @ tudelft nl
stjepan picek @ ru nl
History
2023-06-12: approved
2023-06-09: received
See all versions
Short URL
https://ia.cr/2023/893
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2023/893,
      author = {Marina Krček and Thomas Ordas and Stjepan Picek},
      title = {Short paper: Diversity Methods for Laser Fault Injection to Improve Location Coverage},
      howpublished = {Cryptology ePrint Archive, Paper 2023/893},
      year = {2023},
      note = {\url{https://eprint.iacr.org/2023/893}},
      url = {https://eprint.iacr.org/2023/893}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.