Minerva: The curse of ECDSA nonces Systematic analysis of lattice attacks on noisy leakage of bit-length of ECDSA nonces
We present our discovery of a group of side-channel vulnerabilities in implementations of the ECDSA signature algorithm in a widely used Atmel AT90SC FIPS 140-2 certified smartcard chip and five cryptographic libraries (libgcrypt, wolfSSL, MatrixSSL, SunEC/OpenJDK/Oracle JDK, Crypto++). Vulnerable i...
Main Authors: | Jan Jancar, Vladimir Sedlacek, Petr Svenda, Marek Sys |
---|---|
Format: | Article |
Language: | English |
Published: |
Ruhr-Universität Bochum
2020-08-01
|
Series: | Transactions on Cryptographic Hardware and Embedded Systems |
Subjects: | |
Online Access: | https://tches.iacr.org/index.php/TCHES/article/view/8684 |
Similar Items
-
Improved Attacks on (EC)DSA with Nonce Leakage by Lattice Sieving with Predicate
by: Luyao Xu, et al.
Published: (2023-03-01) -
Kleptographic Attacks on ECDSA
by: Nadezhda Anatolievna Chepick, et al.
Published: (2014-12-01) -
Undetectable secret key recovery for the ECDSA digital signature algorithm
by: A. V. Kovalev, et al.
Published: (2010-09-01) -
Novel Key Recovery Attack on Secure ECDSA Implementation by Exploiting Collisions between Unknown Entries
by: Sunghyun Jin, et al.
Published: (2021-08-01) -
Solving HNP with One Bit Leakage: An Asymmetric Lattice Sieving Algorithm
by: Wenhao Shi, et al.
Published: (2022-12-01)