Главная
Study mode:
on
1
Intro
2
What's that all about?
3
Status: Implementation Security of Lattice KEM
4
Kyber, Saber: High-Level Similarities
5
Our Attack
6
The LPR Encryption Scheme: Noisy ElGamal
7
Correctness and Decoding
8
Fujisaki-Okamoto: CPA PKE
9
Attacking an FO-KEM
10
Effective vs. Inflective Faults
11
(In)Effective Faults in the Decoder
12
Kyber's Decoding Routine
13
Faulting the Decoder
14
Extracting Information
15
Gathering Inequalities
16
Solving for the key
17
Solving Approach
18
Countermeasures?
Description:
Explore fault attacks on CCA-secure lattice-based Key Encapsulation Mechanisms (KEMs) in this 45-minute talk by Peter Pessl at the Workshop on Attacks in Cryptography, held in conjunction with Crypto 2021. Delve into the implementation security of lattice KEMs, focusing on Kyber and Saber. Examine the LPR encryption scheme, Fujisaki-Okamoto transformation, and the process of attacking an FO-KEM. Investigate effective and ineffective faults in the decoder, with a specific look at Kyber's decoding routine. Learn about extracting information through faulting the decoder, gathering inequalities, and solving for the key. Conclude with a discussion on potential countermeasures against these attacks.

Fault Attacks on CCA-Secure Lattice KEMs

TheIACR
Add to list
0:00 / 0:00