• DocumentCode
    177264
  • Title

    Algebraic Fault Analysis on GOST for Key Recovery and Reverse Engineering

  • Author

    Xinjie Zhao ; Shize Guo ; Fan Zhang ; Tao Wang ; Zhijie Shi ; Chujiao Ma ; Dawu Gu

  • Author_Institution
    Inst. of North Electron. Equip., Beijing, China
  • fYear
    2014
  • fDate
    23-23 Sept. 2014
  • Firstpage
    29
  • Lastpage
    39
  • Abstract
    GOST is a well-known block cipher as the official encryption standard for the Russian Federation. A special feature of GOST is that its eight S-boxes can be secret. However, most of the researches on GOST assume that the design of these S-boxes is known. In this paper, the security of GOST against side-channel attacks is examined with algebraic fault analysis (AFA), which combines the algebraic cryptanalysis with the fault attack. Three AFAs on GOST, which have different attack goals in different scenarios, are investigated. The results show that 8 fault injections are required to recover the secret key when the full design of GOST is known, which is less than 64 fault injections required in previous work. 64 fault injections are required to recover the eight unknown S-boxes assuming the key is known. 270 fault injections are required to recover the key and the eight S-boxes when both are unknown. The results prove that AFA is very effective and keeping some components in a cipher secret cannot guarantee its security against fault attacks.
  • Keywords
    fault diagnosis; private key cryptography; standards; AFA; GOST; Russian Federation; S-boxes; algebraic fault analysis; block cipher; cipher secret; encryption standard; fault attacks; fault injections; key recovery; reverse engineering; secret key; side-channel attacks; Ciphers; Encryption; Equations; Mathematical model; Reverse engineering; Standards; GOST; algebraic cryptanalysis; differential fault analysis; key recovery; reverse engineering;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Fault Diagnosis and Tolerance in Cryptography (FDTC), 2014 Workshop on
  • Conference_Location
    Busan
  • Type

    conf

  • DOI
    10.1109/FDTC.2014.13
  • Filename
    6976629