发明授权
US08984040B2 Modular exponentiation method and device resistant against side-channel attacks 有权
模块化取幂方法和抵抗侧向通道攻击的装置

  • 专利标题: Modular exponentiation method and device resistant against side-channel attacks
  • 专利标题(中): 模块化取幂方法和抵抗侧向通道攻击的装置
  • 申请号: US13469139
    申请日: 2012-05-11
  • 公开(公告)号: US08984040B2
    公开(公告)日: 2015-03-17
  • 发明人: Marc Joye
  • 申请人: Marc Joye
  • 申请人地址: FR Issy-les Moulineaux
  • 专利权人: Thomson Licensing
  • 当前专利权人: Thomson Licensing
  • 当前专利权人地址: FR Issy-les Moulineaux
  • 代理商 Robert D. Shedd; Paul P. Kiel
  • 优先权: EP11305568 20110511; EP11176404 20110803
  • 主分类号: G06F7/38
  • IPC分类号: G06F7/38 G06F7/72
Modular exponentiation method and device resistant against side-channel attacks
摘要:
A method and apparatus for performing modular exponentiation using iterative modular multiplications steps and taking as input a first modulus N, a secret exponent d and a base x. During at least one modular multiplication step aiming at computing a result c from two values a, b and the first modulus N so that c=a·b mod N, a processor takes as input the two values a, b and the first modulus N from which are obtained two operands a′, b′ and a second modulus N′ using operations with at most linear complexity—at least one of the two operands a′, b′ is different from the two values a, b, and the two operands a′, b′ are different when a is equal to b—so that the modular multiplication c=a·b mod N from a side-channel viewpoint behaves like a modular squaring except for when a′ equals b′ . An intermediate result c′=a′·b′ mod N′ is computed, and the result c is derived from the intermediate result c′ using an operation with at most linear complexity; and the result c is used in the modular exponentiation.
信息查询
0/0