- 专利标题: Side-channel attack on HMAC-SHA-2 and associated testing
-
申请号: US17444832申请日: 2021-08-11
-
公开(公告)号: US11995191B2公开(公告)日: 2024-05-28
- 发明人: Yaacov Belenky , Ury Kreimer , Alexander Kesler
- 申请人: FortifyIQ, Inc.
- 申请人地址: US MA Newton
- 专利权人: FortifyIQ, Inc.
- 当前专利权人: FortifyIQ, Inc.
- 当前专利权人地址: US MA Newton
- 代理机构: Brake Hughes Bellermann LLP
- 主分类号: G06F21/57
- IPC分类号: G06F21/57 ; H04L9/06
摘要:
A method for testing an HMAC implementation for vulnerability to a side-channel attack can include mounting a template attack. The attack can include generating, based on first side-channel leakage information associated with execution of a hash function of the HMAC implementation, a plurality of template tables. Each template table can correspond, respectively, with a subset of bit positions of an internal state of the hash function. The attack can further include generating, based on second side-channel leakage information, a plurality of hypotheses for an internal state of an invocation of the hash function based on a secret key. The method can further include generating, using the hash function, respective hash values generated from each of the plurality of hypotheses and a message. The method can also include comparing each of the respective hash values with a hash value generated using the secret key to determine vulnerability of the HMAC implementation.
公开/授权文献
- US20220414227A1 SIDE-CHANNEL ATTACK ON HMAC-SHA-2 AND ASSOCIATED TESTING 公开/授权日:2022-12-29
信息查询