发明名称 Cryptographic computation using masking to prevent differential power analysis and other attacks
摘要 Methods and apparatuses are disclosed for improving DES and other cryptographic protocols against external monitoring attacks by reducing the amount (and signal-to-noise ratio) of useful information leaked during processing. An improved DES implementation of the invention instead uses two 56-bit keys (K1 and K2) and two 64-bit plaintext messages (M1 and M2), each associated with a permutation (i.e., K1P, K2P and M1P, M2P) such that K1P{K1} XOR K2P {K2} equals the“standard”DES key K, and M1P{M1} XOR M2P{M2} equals the“standard”message. During operation of the device, the tables are preferably periodically updated, by introducing fresh entropy into the tables faster than information leaks out, so that attackers will not be able to obtain the table contents by analysis of measurements. The technique is implementable in cryptographic smartcards, tamper resistant chips, and secure processing systems of all kinds.
申请公布号 US7668310(B2) 申请公布日期 2010.02.23
申请号 US20010930836 申请日期 2001.08.15
申请人 CRYPTOGRAPHY RESEARCH, INC. 发明人 KOCHER PAUL C.;JAFFE JOSHUA M.;JUN BENJAMIN C.
分类号 G09C1/00;H04L9/22;H04L9/06 主分类号 G09C1/00
代理机构 代理人
主权项
地址