Generalized Feistel Ciphers for Efficient Prime Field Masking
Lorenzo Grassi, Loïc Masure, Pierrick Méaux, Thorben Moos, François-Xavier Standaert
Abstract
A recent work from Eurocrypt 2023 suggests that prime-field masking has excellent potential to improve the efficiency vs. security tradeoff of masked implementations against side-channel attacks, especially in contexts where physical leakages show low noise. We pick up on the main open challenge that this seed result leads to, namely the design of an optimized prime cipher able to take advantage of this potential. Given the interest of tweakable block ciphers with cheap inverses in many leakage-resistant designs, we start by describing the FPM (Feistel for Prime Masking) family of tweakable block ciphers based on a generalized Feistel structure. We then propose a first instantiation of FPM, which we denote as small-pSquare. It builds on the recent observation that the square operation (which is non-linear in Fp) can lead to masked gadgets that are more efficient than those for multiplication, and is tailored for efficient masked implementations in hardware. We analyze the mathematical security of the FPM family of ciphers and the small-pSquare instance, trying to isolate the parts of our study that can be re-used for other instances. We additionally evaluate the implementation features of small-pSquare by comparing the efficiency vs. security tradeoff of masked FPGA circuits against those of a state-of-the art binary cipher, namely SKINNY, confirming significant gains in relevant contexts.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 51baa2f9-bb9c-46ae-be7c-8c83c8b2756aBuilds on6
- On a Generalization of Substitution-Permutation Networks: The HADES Design StrategyLorenzo Grassi, Reinhard Lüftenegger, Christian Rechberger, Dragos Rotaru et al.EUROCRYPT 2020 · 77 citations
- Ciminion: Symmetric Encryption Based on Toffoli-Gates over Large Finite FieldsChristoph Dobraunig, Lorenzo Grassi, Anna Guinet, Daniël KuijstersEUROCRYPT 2021 · 64 citations
- Out of Oddity - New Cryptanalytic Techniques Against Symmetric Primitives Optimized for Integrity Proof SystemsTim Beyne, Anne Canteaut, Itai Dinur, Maria Eichlseder et al.CRYPTO 2020 · 60 citations
- Mode-Level vs. Implementation-Level Physical Security in Symmetric Cryptography - A Practical Guide Through the Leakage-Resistance JungleDavide Bellizia, Olivier Bronchain, Gaëtan Cassiers, Vincent Grosso et al.CRYPTO 2020 · 38 citations
- Effective and Efficient Masking with Low Noise Using Small-Mersenne-Prime CiphersLoïc Masure, Pierrick Méaux, Thorben Moos, François-Xavier StandaertEUROCRYPT 2023 · 20 citations
Related papers
- Secret Can Be Public: Low-Memory AEAD Mode for High-Order MaskingYusuke Naito, Yu Sasaki, Takeshi SugawaraCRYPTO 2022 · 13 citations
- Connecting Leakage-Resilient Secret Sharing to Practice: Scaling Trends and Physical Dependencies of Prime Field MaskingSebastian Faust, Loïc Masure, Elena Micheli, Maximilian Orlt et al.EUROCRYPT 2024 · 8 citations
- Prouff and Rivain's Formal Security Proof of Masking, Revisited - Tight Bounds in the Noisy Leakage ModelLoïc Masure, François-Xavier StandaertCRYPTO 2023 · 10 citations
- Shortest Path to Secured Hardware: Domain Oriented Masking with High-Level-SynthesisRajat Sadhukhan, Sayandeep Saha, Debdeep MukhopadhyayDAC 2021 · 8 citations
- Linear Cryptanalysis of FF3-1 and FEATim BeyneCRYPTO 2021 · 11 citations
