Compositional Verification of Efficient Masking Countermeasures against Side-Channel Attacks
Pengfei Gao, Yedi Zhang, Fu Song, Taolue Chen, François-Xavier Standaert
摘要
Masking is one of the most effective countermeasures for securely implementing cryptographic algorithms against power side-channel attacks, the design of which however turns out to be intricate and error-prone. While techniques have been proposed to rigorously verify implementations of cryptographic algorithms, currently they are limited in scalability. To address this issue, compositional approaches have been investigated, but insofar they fail to prove the security of recent efficient implementations. To fill this gap, we propose a novel compositional verification approach. In particular, we introduce two new language-level security notions based on which we propose composition strategies and verification algorithms. Our approach is able to prove efficient implementations, which cannot be done by prior compositional approaches. We implement our approach as a tool CONVINCE and conduct extensive experiments to confirm its efficacy. We also use CONVINCE to further explore the design space of the AES Sbox with least refreshing by replacing its implementation for finite-field multiplication with more efficient counterparts. We automatically prove leakage-freeness of these new versions. As a result, we can effectively reduce 1,600 randomness and 3,200 XOR-operations of the state-of-the-art AES implementation.
CCS Concepts: • Security and privacy → Side-channel analysis and countermeasures; • Software and its engineering → Software verification; Automated static analysis.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper1
问问它们各自怎么用它它引用的顶会 Paper5
- Strong Non-Interference and Type-Directed Higher-Order MaskingGilles Barthe, Sonia Belaïd, François Dupressoir, Pierre-Alain Fouque 等CCS 2016 · 被引用 302 次
- Coco: Co-Design and Co-Verification of Masked Software Implementations on CPUsBarbara Gigerl, Vedad Hadzic, Robert Primas, Stefan Mangard 等USENIX Security 2021 · 被引用 82 次
- Tornado: Automatic Generation of Probing-Secure Masked Bitsliced ImplementationsSonia Belaïd, Pierre-Évariste Dagand, Darius Mercadier, Matthieu Rivain 等EUROCRYPT 2020 · 被引用 48 次
- IronMask: Versatile Verification of Masking SecuritySonia Belaïd, Darius Mercadier, Matthieu Rivain, Abdul Rahman TalebS&P 2022 · 被引用 30 次
- Fast Verification of Masking Schemes in Characteristic TwoNicolas Bordes, Pierre KarpmanEUROCRYPT 2021 · 被引用 10 次
相关 Paper
- PERSEUS - Probabilistic Evaluation of Random Probing SEcurity Using Efficient SamplingSonia Belaïd, Gaëtan CassiersEUROCRYPT 2026
- Power Contracts: Provably Complete Power Leakage Models for ProcessorsRoderick Bloem, Barbara Gigerl, Marc Gourjon, Vedad Hadzic 等CCS 2022 · 被引用 6 次
- Automated Verification of Correctness for Masked Arithmetic ProgramsMingyang Liu, Fu Song, Taolue ChenCAV 2023 · 被引用 1 次
- Combined Fault and Leakage Resilience: Composability, Constructions and CompilerSebastian Berndt, Thomas Eisenbarth, Sebastian Faust, Marc Gourjon 等CRYPTO 2023 · 被引用 8 次
- Towards Tight Random Probing SecurityGaëtan Cassiers, Sebastian Faust, Maximilian Orlt, François-Xavier StandaertCRYPTO 2021 · 被引用 22 次
