Information leakage through passive timing attacks on RSA decryption system
Information leakage through passive timing attacks on RSA decryption system
复制标题
DOI:
10.1587/transfun.2022tap0006
复制
发表时间:
2020-10
期刊:
影响因子:
--
通讯作者:
Tomonori Hirata;Y. Kaji
中科院分区:
文献类型:
--
作者:
Tomonori Hirata;Y. Kaji
The threat of timing attacks is especially serious when an attacker actively controls the input to a target program. Countermeasures are studied to deter such active attacks, but the attacker still has the chance to learn something about the concealed information by passively watching the running time of the target program. The risk of passive timing attacks can be measured by the mutual information between the concealed information and the running time. However, the computation of the mutual information is hardly possible except for toy examples. This study focuses on three algorithms for RSA decryption, derives formulas of the mutual information under several assumptions and approximations, and calculates the mutual information numerically for practical security parameters.