Faulty isogenies: a new kind of leakage

02/10/2022
by   Gora Adj, et al.
0

In SIDH and SIKE protocols, public keys are defined over quadratic extensions of prime fields. We present in this work a projective invariant property characterizing affine Montgomery curves defined over prime fields. We then force a secret 3-isogeny chain to repeatedly pass through a curve defined over a prime field in order to exploit the new property and inject zeros in the A-coefficient of an intermediate curve to successfully recover the isogeny chain one step at a time. Our results introduce a new kind of fault attacks applicable to SIDH and SIKE.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/13/2020

Cover attacks for elliptic curves with prime order

We give a new approach to the elliptic curve discrete logarithm problem ...
research
03/23/2023

On complete m-arcs

Let m be a positive integer and q be a prime power. For large finite bas...
research
05/07/2021

Leakage-Resilient Secret Sharing with Constant Share Size

We consider the leakage resilience of AG code-based ramp secret sharing ...
research
06/18/2018

On the Bias of Reed-Muller Codes over Odd Prime Fields

We study the bias of random bounded-degree polynomials over odd prime fi...
research
06/15/2018

Counting points on genus-3 hyperelliptic curves with explicit real multiplication

We propose a Las Vegas probabilistic algorithm to compute the zeta funct...
research
03/23/2020

Faster computation of isogenies of large prime degree

Let E/F_q be an elliptic curve, and P a point in E(F_q) of prime order ℓ...
research
01/06/2022

Flexible FPGA ECDSA Design with a Field Multiplier Inherently Resistant against HCCA

In this paper we describe our flexible ECDSA design for elliptic curve o...

Please sign up or login with your details

Forgot password? Click here to reset