Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
|
 |
Higher Order Masking of the AES
| |
|
Side-Channel Attacks
Higher Order Masking of the AES
Kai Schramm1 and Christof Paar1 
| (1) |
Horst Görtz Institute for IT Security (HGI), Universitätsstr. 150, Ruhr University Bochum, Germany, 44780 Bochum, Germany |
Abstract
The development of masking schemes to secure AES implementations against side channel attacks is a topic of ongoing research.
Many different approaches focus on the AES S-box and have been discussed in the previous years. Unfortunately, to our knowledge
most of these countermeasures only address first-order DPA. In this article, we discuss the theoretical background of higher
order DPA. We give the expected measurement costs an adversary has to deal with for different hardware models. Moreover, we
present a masking scheme which protects an AES implementation against higher order DPA. We have implemented this masking scheme
for various orders and present the corresponding performance details implementors will have to expect.
Keywords: AES, Higher Order DPA, Masking Countermeasure.
Fulltext Preview (Small, Large)
|
|
|
|
|
|