On the Security of Linear Secret Sharing with General Noisy Side-Channel Leakage
Utkarsh Gupta, Hessam Mahdavifar
Abstract
Secret sharing is a foundational cryptographic primitive for sharing keys in distributed systems. In a classical -threshold setting, it involves a dealer who has a secret, a set of users to whom shares of the secret are sent, and a threshold which is the minimum number of shares required to recover the secret. These schemes offer an all-or-nothing security approach where less than shares reveal no information about the secret. But these guarantees are threatened by side-channel attacks which can leak partial information from each share. Initiated by Benhamouda et al. (Crypto'18), the security of linear secret sharing schemes has been studied for bounded leakage attack models, which assume that the adversary can leak bounded functions of each share. However, this model does not translate into real-world attacks, as physical side-channels are inherently noisy. The -noisy channel model, proposed by Prouff and Rivain (Eurocrypt’13), is a general leakage framework which captures the noisy behavior of side-channels. In this work, we study the security of linear secret sharing schemes with -noisy leakage, and show bounds on the mutual information (MI) and statistical bias () security metrics. Our results are based on the Fourier analytical framework, first used by Benhamouda et al. (Crypto'18), adapted to the -noisy leakage model. To give security bounds, we introduce a security parameter , determined by the Fourier linear biases of the posterior distributions of the leaked secret shares. Then, the Poisson summation formula enables us to bound the ratio between the observed leakage for some given secret, and leakage under independence as . This is then used to show a) -threshold schemes over have at most leakage, given ; and consequently b) for -threshold schemes the guessing advantage is at most . This work can be viewed as a next step towards closing the gap between theory and practice in leakage resilient cryptography.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 8e650940-797a-4bd2-af85-46411df46ae6Cited by top-tier papers1
Ask how each one uses itRelated papers
- Constructing Locally Leakage-Resilient Linear Secret-Sharing SchemesHemanta K. Maji, Anat Paskin-Cherniavsky, Tom Suad, Mingyuan WangCRYPTO 2021 · 18 citations
- Lower Bounds for Leakage-Resilient Secret SharingJesper Buus Nielsen, Mark SimkinEUROCRYPT 2020 · 27 citations
- Improved Reductions from Noisy to Bounded and Probing Leakages via Hockey-Stick DivergencesMaciej Obremski, João Ribeiro, Lawrence Roy, François-Xavier Standaert et al.CRYPTO 2024 · 2 citations
- From Random Probing to Noisy Leakages Without Field-Size DependenceGianluca Brian, Stefan Dziembowski, Sebastian FaustEUROCRYPT 2024 · 6 citations
- Formal Security Proofs via Doeblin Coefficients: - Optimal Side-Channel Factorization from Noisy Leakage to Random ProbingJulien Béguinot, Wei Cheng, Sylvain Guilley, Olivier RioulCRYPTO 2024 · 7 citations
