High-order Polynomial Comparison and Masking Lattice-based Encryption

The main protection against side-channel attacks consists in computing every function with multiple shares via the masking countermeasure. For IND-CCA secure lattice-based encryption schemes, the masking of the decryption algorithm requires the high-order computation of a polynomial comparison. In...

Full description

Bibliographic Details
Main Authors: Jean-Sébastien Coron, François Gérard, Simon Montoya, Rina Zeitoun
Format: Article
Language:English
Published: Ruhr-Universität Bochum 2022-11-01
Series:Transactions on Cryptographic Hardware and Embedded Systems
Subjects:
Online Access:https://tches.iacr.org/index.php/TCHES/article/view/9950