A Template Attack on Binomial Sampling in NewHope

碩士 === 國立臺灣大學 === 電子工程學研究所 === 107 === The NewHope cryptosystem is a promising candidate for the future post-quantum cryptography standard. Besides its security against the attacks from quantum and classical computers, the side-channel security is also an important issue to the implementation of a c...

Full description

Bibliographic Details
Main Authors: CHUN-YU PENG, 彭俊又
Other Authors: 鄭振牟
Format: Others
Language:en_US
Published: 2019
Online Access:http://ndltd.ncl.edu.tw/handle/u353br
Description
Summary:碩士 === 國立臺灣大學 === 電子工程學研究所 === 107 === The NewHope cryptosystem is a promising candidate for the future post-quantum cryptography standard. Besides its security against the attacks from quantum and classical computers, the side-channel security is also an important issue to the implementation of a cryptosystem. In this thesis, we first evaluate the potential side-channel vulnerabilities in the NewHope cryptosystem. Then, a template attack is presented, which can reveal the secret information generated by the Binomial Sampling Function and compromise the security of the cryptosystem. The result shows a 100% success rate of recovering the secrets by only using a single side-channel power consumption trace.