International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

Time Sharing - A Novel Approach to Low-Latency Masking

Authors:
Dilip Kumar S. V.
Siemen Dhooghe
Josep Balasch
Benedikt Gierlichs
Ingrid Verbauwhede
Download:
DOI: 10.46586/tches.v2024.i3.249-272
URL: https://tches.iacr.org/index.php/TCHES/article/view/11677
Search ePrint
Search Google
Abstract: We present a novel approach to small area and low-latency first-order masking in hardware. The core idea is to separate the processing of shares in time in order to achieve non-completeness. Resulting circuits are proven first-order glitchextended PINI secure. This means the method can be straightforwardly applied to mask arbitrary functions without constraints which the designer must take care of. Furthermore we show that an implementation can benefit from optimization through EDA tools without sacrificing security. We provide concrete results of several case studies. Our low-latency implementation of a complete PRINCE core shows a 32% area improvement (44% with optimization) over the state-of-the-art. Our PRINCE S-Box passes formal verification with a tool and the complete core on FPGA shows no first-order leakage in TVLA with 100 million traces. Our low-latency implementation of the AES S-Box costs roughly one third (one quarter with optimization) of the area of state-of-the-art implementations. It shows no first-order leakage in TVLA with 250 million traces.
BibTeX
@article{tches-2024-34442,
  title={Time Sharing - A Novel Approach to Low-Latency Masking},
  journal={IACR Transactions on Cryptographic Hardware and Embedded Systems},
  publisher={Ruhr-Universität Bochum},
  volume={2024},
  pages={249-272},
  url={https://tches.iacr.org/index.php/TCHES/article/view/11677},
  doi={10.46586/tches.v2024.i3.249-272},
  author={Dilip Kumar S. V. and Siemen Dhooghe and Josep Balasch and Benedikt Gierlichs and Ingrid Verbauwhede},
  year=2024
}