G. Ding, Zhi-Xiang Li, Xiao-long Chang, Qiang Zhao
{"title":"AES密码系统的差分电磁分析","authors":"G. Ding, Zhi-Xiang Li, Xiao-long Chang, Qiang Zhao","doi":"10.1109/WMWA.2009.46","DOIUrl":null,"url":null,"abstract":"To study vulnerability of Advanced Encryption Standard(AES) against Side Channel Attacks(SCAs), First, the article analyzes the CMOS logical gate's electric current characteristic under the active status, explains data and electromagnetic emissions correlation of ICs¿establishes the electromagnetic information leakage Hamming Weight model. Next, aimed at the AES(128 bits) cryptographic system realized by the P89C668 microcomputer, Differential Electromagnetic Analysis (DEMA) algorithm was described, the choosing of attack point and the computational method were analyzed, an attack experiment was processed by DEMA, thereby obtaining secret key of AES(128 bits). After analyzing the experiment result at the instruction level, we find that the most serious leakage of secret information happens in the MOVX instruction which writes the output of S-box into external RAM. The result shows that EM information leakage exists in CMOS integrated circuit during work. DEMA is an effective attack on AES. It can provide a basis for implementing protective measures in the cryptographic systems.","PeriodicalId":375180,"journal":{"name":"2009 Second Pacific-Asia Conference on Web Mining and Web-based Application","volume":"9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-06-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"9","resultStr":"{\"title\":\"Differential Electromagnetic Analysis on AES Cryptographic System\",\"authors\":\"G. Ding, Zhi-Xiang Li, Xiao-long Chang, Qiang Zhao\",\"doi\":\"10.1109/WMWA.2009.46\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"To study vulnerability of Advanced Encryption Standard(AES) against Side Channel Attacks(SCAs), First, the article analyzes the CMOS logical gate's electric current characteristic under the active status, explains data and electromagnetic emissions correlation of ICs¿establishes the electromagnetic information leakage Hamming Weight model. Next, aimed at the AES(128 bits) cryptographic system realized by the P89C668 microcomputer, Differential Electromagnetic Analysis (DEMA) algorithm was described, the choosing of attack point and the computational method were analyzed, an attack experiment was processed by DEMA, thereby obtaining secret key of AES(128 bits). After analyzing the experiment result at the instruction level, we find that the most serious leakage of secret information happens in the MOVX instruction which writes the output of S-box into external RAM. The result shows that EM information leakage exists in CMOS integrated circuit during work. DEMA is an effective attack on AES. It can provide a basis for implementing protective measures in the cryptographic systems.\",\"PeriodicalId\":375180,\"journal\":{\"name\":\"2009 Second Pacific-Asia Conference on Web Mining and Web-based Application\",\"volume\":\"9 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-06-06\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"9\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 Second Pacific-Asia Conference on Web Mining and Web-based Application\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/WMWA.2009.46\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Second Pacific-Asia Conference on Web Mining and Web-based Application","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/WMWA.2009.46","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Differential Electromagnetic Analysis on AES Cryptographic System
To study vulnerability of Advanced Encryption Standard(AES) against Side Channel Attacks(SCAs), First, the article analyzes the CMOS logical gate's electric current characteristic under the active status, explains data and electromagnetic emissions correlation of ICs¿establishes the electromagnetic information leakage Hamming Weight model. Next, aimed at the AES(128 bits) cryptographic system realized by the P89C668 microcomputer, Differential Electromagnetic Analysis (DEMA) algorithm was described, the choosing of attack point and the computational method were analyzed, an attack experiment was processed by DEMA, thereby obtaining secret key of AES(128 bits). After analyzing the experiment result at the instruction level, we find that the most serious leakage of secret information happens in the MOVX instruction which writes the output of S-box into external RAM. The result shows that EM information leakage exists in CMOS integrated circuit during work. DEMA is an effective attack on AES. It can provide a basis for implementing protective measures in the cryptographic systems.