Power Analysis - Preventing Simple and Differential Power Analysis Attacks

Preventing Simple and Differential Power Analysis Attacks

Power analysis attacks cannot generally be detected by a device, since the adversary's monitoring is normally passive. In addition, the attack is non-invasive. As a result, physical enclosures, auditing capabilities, and attack detectors are ineffective. Instead, cryptosystem engineers must ensure that devices' power variations do not reveal information usable by adversaries.

Simple power analysis can easily distinguish the outcome of conditional branches in the execution of cryptographic software, since a device does different things (consuming different power) depending on whether the conditional branch is taken. For this reason, care should be taken to ensure there are no secret values which affect the conditional branches within cryptographic software implementations. Other sources of variation, such as microcode differences, branches introduced by compilers, and power consumption variations in multipliers, also commonly lead to SPA vulnerabilities.

Differential power analysis is more difficult to prevent, since even small biases in the power consumption can lead to exploitable weaknesses. Some countermeasure strategies involve algorithmic modifications such that the cryptographic operations occur on data that is related to the actual value by some mathematical relationship that survives the cryptographic operation. One approach involves blinding parameters to randomize their value. Other countermeasure strategies to reduce the effectiveness of DPA attacks involve hardware modifications: varying the chip internal clock frequency has been considered to desynchronize electric signals, which lead in return to algorithmic enhancements of traditional DPA.,


Read more about this topic:  Power Analysis

Famous quotes containing the words preventing, simple, differential, power, analysis and/or attacks:

    If anything characterizes the cultural life of the seventies in America, it is an insistence on preventing failures of communication.
    Richard Dean Rosen (b. 1949)

    His pain was too great. He begged me for the simple mercy of death. And I could do nothing else but help him leave a world that had become a sleepless, tortured nightmare to him.
    Robert D. Andrews, and Nick Grindé. Dr. John Garth (Boris Karloff)

    But how is one to make a scientist understand that there is something unalterably deranged about differential calculus, quantum theory, or the obscene and so inanely liturgical ordeals of the precession of the equinoxes.
    Antonin Artaud (1896–1948)

    It is a power stronger than will.... Could a stone escape from the laws of gravity? Impossible. Impossible, for evil to form an alliance with good.
    Isidore Ducasse, Comte de Lautréamont (1846–1870)

    Cubism had been an analysis of the object and an attempt to put it before us in its totality; both as analysis and as synthesis, it was a criticism of appearance. Surrealism transmuted the object, and suddenly a canvas became an apparition: a new figuration, a real transfiguration.
    Octavio Paz (b. 1914)

    Under peaceful conditions, the warlike man attacks himself.
    Friedrich Nietzsche (1844–1900)