首页 | 本学科首页   官方微博 | 高级检索  
     

Grain-128同步流密码的选择初始向量相关性能量攻击
引用本文:杨昌盛,于敬超,严迎建.Grain-128同步流密码的选择初始向量相关性能量攻击[J].计算机应用,2014,34(5):1318-1321.
作者姓名:杨昌盛  于敬超  严迎建
作者单位:信息工程大学,郑州 450004
摘    要:不同于分组密码,序列密码构造相对简单且大量使用线性运算,因此攻击点功耗与其他功耗成分之间往往存在较强的相关性,使得能量分析攻击难以实施。针对上述现状,提出了一种面向Grain-128同步流密码的选择初始向量(IV)相关性能量攻击方案。首先对Grain-128的输出函数h(x)进行了分析,并基于此确定了攻击点表达式;其次通过选取特定的初始向量,消除了攻击点功耗和其他功耗成分之间的相关性,从而解决了能量攻击所面临的关键问题;最后基于功耗分析工具PrimeTimePX对攻击方案进行了验证。结果表明,该方案仅需736个IV样本即可实施23轮攻击,恢复46比特密钥。

关 键 词:同步流密码  Grain-  选择IV  相关性能量分析攻击  PrimeTimePX
收稿时间:2013-11-20
修稿时间:2014-01-02

Chosen initial vector correlation power attack on synchronous stream cipher Grain-128
YANG Changsheng YU Jingchao YAN Yingjian.Chosen initial vector correlation power attack on synchronous stream cipher Grain-128[J].journal of Computer Applications,2014,34(5):1318-1321.
Authors:YANG Changsheng YU Jingchao YAN Yingjian
Affiliation:1. Information Engineering University, Zhengzhou Henan 450004, China
2. Institute of Electronic Technology, Information Engineering University, Zhengzhou Henan 450004, China
Abstract:Unlike block cipher, stream ciphers are relatively simple and widely use linear operation, so there is often a strong correlation between the power of attack point and other power components, making it difficult to implement power analysis attacks. For the aforementioned situation, a chosen-Initial Vector (IV) correlation power analysis attack on synchronous stream cipher Grain-128 was proposed. First, the attack point and its power consumption model were gotten by analyzing the property of Grain-128's output function h(x). Then the correlation between the power of attack point and other power components was eliminated by choosing specific initial vectors, and the key problem facing the energy attacks was solved. Finally, a verification experiment was conducted based on power analysis tool PrimeTimePX. The results show that the scheme can implement 23 rounds attack and recover 46 bits key with only 736 initial vectors.
Keywords:
本文献已被 CNKI 等数据库收录!
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号