Improved Differential Fault Analysis on Authenticated Encryption of PAEQ-128
Improved Differential Fault Analysis on Authenticated Encryption of PAEQ-128
复制标题
PAEQ-128 认证加密的改进差分故障分析
DOI:
10.1007/978-3-030-14234-6_10
复制
发表时间:
2019
期刊:
影响因子:
--
通讯作者:
Wang Jian
中科院分区:
文献类型:
--
作者:
Wang Ruyan;Meng Xiaohan;Li Yang;Wang Jian
PAEQ is an AES-based authenticated encryption proposed by Biryukov and Khovratovich in 2014, which stays in the CAESAR competition until the second round. In CHES 2016, Dhiman Saha and Dipanwita Roy Chowdhury first discussed the differential fault analysis to PAEQ. Their work shows that the nonce used in PAEQ that is usually considered as a natural DFA countermeasure can be overcome by carefully constructing the encryption message and injecting two faults. This work presents a fully optimized DFA attack on PAEQ-128 with regard to the key recovery process. We apply the information theoretical analysis and the DFA techniques for AES into the DFA key recovery on PAEQ-128. As a result, without changing the attack assumption, the key recovery complexity is reduced fromtofor PAEQ-128. The successful key recovery together with its computational complexity have been verified with the key recovery simulations.