Paper 2026/2041

A Unified Framework for Statistical Side-Channel Distinguishers: From Leakage Assessment to Key Recovery

Quentin L. Meunier, Sorbonne University
Abstract

Side-channel analysis (SCA) has historically developed along two parallel research avenues: key recovery attacks (e.g., CPA, MIA, Templates) and leakage assessment methodologies (e.g., TVLA, $t$-tests, $F$-tests, Kolmogorov-Smirnov tests). While both paradigms fundamentally process trace distributions partitioned by intermediate values or key hypotheses, they are typically viewed as disparate techniques with distinct mathematical formulations. In this paper, we propose a unifying statistical framework that decomposes side-channel distinguishers into orthogonal building blocks: (i) a subkey-induced leakage partition, (ii) a distribution comparison statistic (categorized into binary (two-distribution) or multi-class (multi-distribution) comparison operators), (iii) an aggregation operator over pairwise distribution comparisons, and (iv) a global decision rule. This formalization proves that classical key distinguishers and leakage tests are instances of a single generic model. Furthermore, our framework transforms statistical leakage tests into fully functional key recovery attacks, naturally introducing novel distinguishers based on non-parametric statistics (Kolmogorov-Smirnov, Anderson-Darling, MMD, Energy Distance) paired with suitable aggregation operators. We evaluate 18 statistical metrics across experimental configurations combining 8-bit AVR XMEGA and 32-bit ARM Cortex-M4 targets, unmasked and masked AES, under both targeted and automated POI scenarios. Our results demonstrate that the vast majority of these newly introduced attacks successfully achieve complete key recovery. Crucially, no single metric consistently dominates across all targets and leakage conditions, highlighting the complementary nature of statistical distinguishers and paving the way for metric combination and ensemble strategies.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Preprint.
Keywords
Side-channel analysisKey distinguishersLeakage assessmentStatistical hypothesis testingNon-parametric statistics
Contact author(s)
quentin meunier @ sorbonne-universite fr
History
2026-09-17: approved
2026-09-15: received
See all versions
Short URL
https://ia.cr/2026/2041
License
Creative Commons Attribution-NonCommercial-ShareAlike
CC BY-NC-SA

BibTeX

@misc{cryptoeprint:2026/2041,
      author = {Quentin L. Meunier},
      title = {A Unified Framework for Statistical Side-Channel Distinguishers: From Leakage Assessment to Key Recovery},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/2041},
      year = {2026},
      url = {https://eprint.iacr.org/2026/2041}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.