A Generic Framework for Side-Channel Attacks Against LWE-Based Cryptosystems
Julius Hermelink, Silvan Streit, Erik Mårtensson, Richard Petri
Abstract
Lattice-based cryptography is in the process of being standardized. Several proposals to deal with side-channel information using lattice reduction exist. However, it has been shown that algorithms based on Bayesian updating are often more favorable in practice.
In this work, we define distribution hints; a type of hint that allows modelling probabilistic information. These hints generalize most previously defined hints and the information obtained in several attacks.
We define two solvers for our hints; one is based on belief propagation and the other one uses a greedy approach. We prove that the latter is a computationally less expensive approximation of the former and that previous algorithms used for specific attacks may be seen as special cases of our solvers. Thereby, we provide a systematization of previously obtained information and used algorithms in real-world side-channel attacks.
In contrast to lattice-based approaches, our framework is not limited to value leakage. For example, it can deal with noisy Hamming weight leakage or partially incorrect information. Moreover, it improves upon the recovery of the secret key from approximate hints in the form they arise in real-world attacks.
Our framework has several practical applications: We exemplarily show that a recent attack can be improved; we reduce the number of traces and corresponding ciphertexts and increase the noise resistance. Further, we explain how distribution hints could be applied in the context of previous attacks and outline a potential new attack.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 033e4a4b-211e-4f13-9924-4eb38e6fff04Related papers
- LWE with Side Information: Attacks and Concrete Security EstimationDana Dachman-Soled, Léo Ducas, Huijing Gong, Mélissa RossiCRYPTO 2020 · 162 citations
- Revisiting Security Estimation for LWE with Hints from a Geometric PerspectiveDana Dachman-Soled, Huijing Gong, Tom Hanson, Hunter KippenCRYPTO 2023 · 15 citations
- From Perfect to Approximate Hints: Efficient LWE Secret Recovery Leveraging Low Hamming WeightMinki Hhan, Ga Hee Hong, Jiseung Kim, Changmin Lee et al.S&P 2026
- Improved Reductions from Noisy to Bounded and Probing Leakages via Hockey-Stick DivergencesMaciej Obremski, João Ribeiro, Lawrence Roy, François-Xavier Standaert et al.CRYPTO 2024 · 2 citations
- Finding and Protecting the Weakest Link - On Side-Channel Attacks on in Masked ML-DSAJulius Hermelink, Kai-Chun Ning, Richard PetriCRYPTO 2025 · 4 citations
