Template attacks with partial profiles and Dirichlet priors: Application to timing attacks
Abstract
In order to retrieve the secret key in a side-channel attack, the attacker computes distinguisher values using all the available data. A profiling stage is very useful to provide some a priori information about the leakage model. However, profiling is essentially empirical and may not be exhaustive. Therefore, during the attack, the attacker may come up on previously unseen data, which can be troublesome. A lazy workaround is to ignore all such novel observations altogether. In this paper, we show that this is not optimal and can be avoided. Our proposed techniques eventually improve the performance of classical information-theoretic distinguishers in terms of success rate.
Domains
Computer Science [cs] Cryptography and Security [cs.CR] Mathematics [math] Information Theory [math.IT] Mathematics [math] General Mathematics [math.GM] Computer Science [cs] Information Theory [cs.IT] Computer Science [cs] Discrete Mathematics [cs.DM] Computer Science [cs] Human-Computer Interaction [cs.HC] Computer Science [cs] Signal and Image Processing Engineering Sciences [physics] Signal and Image processing Mathematics [math] Statistics [math.ST] Mathematics [math] Probability [math.PR] Mathematics [math] Functional Analysis [math.FA] Mathematics [math] Classical Analysis and ODEs [math.CA]
Origin : Files produced by the author(s)