Paper 2024/1025

Polynomial sharings on two secrets: Buy one, get one free

Paula Arnold, University of Lübeck
Sebastian Berndt, Technische Hochschule Lübeck
Thomas Eisenbarth, University of Lübeck
Maximilian Orlt, TU Darmstadt
Abstract

While passive side-channel attacks and active fault attacks have been studied intensively in the last few decades, strong attackers combining these attacks have only been studied relatively recently. Due to its simplicity, most countermeasures against passive attacks are based on additive sharing. Unfortunately, extending these countermeasures against faults often leads to quite a significant performance penalty, either due to the use of expensive cryptographic operations or a large number of shares due to massive duplication. Just recently, Berndt, Eisenbarth, Gourjon, Faust, Orlt, and Seker thus proposed to use polynomial sharing against combined attackers (CRYPTO 2023). While they construct gadgets secure against combined attackers using only a linear number of shares, the overhead introduced might still be too large for practical scenarios. In this work, we show how the overhead of nearly all known constructions using polynomial sharing can be reduced by nearly half by embedding two secrets in the coefficients of one polynomial at the expense of increasing the degree of the polynomial by one. We present a very general framework that allows adapting these constructions to this new sharing scheme and prove the security of this approach against purely passive side-channel attacks, purely active fault attacks, and combined attacks. Furthermore, we present new gadgets allowing us to operate upon the different secrets in a number of useful ways.

Metadata
Available format(s)
PDF
Category
Implementation
Publication info
Published by the IACR in TCHES 2024
Keywords
side-channelfaultscombined attackspolynomial sharing
Contact author(s)
p arnold @ uni-luebeck de
sebastian berndt @ th-luebeck de
thomas eisenbarth @ uni-luebeck de
maximilian orlt @ tu-darmstadt de
History
2024-06-28: approved
2024-06-25: received
See all versions
Short URL
https://ia.cr/2024/1025
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2024/1025,
      author = {Paula Arnold and Sebastian Berndt and Thomas Eisenbarth and Maximilian Orlt},
      title = {Polynomial sharings on two secrets: Buy one, get one free},
      howpublished = {Cryptology ePrint Archive, Paper 2024/1025},
      year = {2024},
      note = {\url{https://eprint.iacr.org/2024/1025}},
      url = {https://eprint.iacr.org/2024/1025}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.