摘要:在对密码芯片进行差分能量攻击时,不同的D函数(分割函数)构造法会影响攻击所需的样本量及其效果。针对数据加密标准(DES)密码芯片,构造不同的D函数,采用三种差分功耗攻击方式对其进行攻击实验,并对比分析实验结果。给出了针对串行工作模式的微控制器、不同内部设计结构的现场可编程门阵列(FPGA)、实际商用智能Ic卡进行差分能量攻击时,最佳的D函数构造方式。分析结果有助于解决在针对实际DES密码芯片的差分能量攻击时,由于假峰影响而误判正确密钥,导致攻击成功率较低的问题,同时对其他密码算法芯片的D函数构造提供了指导。..
Abstract: The number of traces and the effectiveness of attacks are affected by creation ways ot the division iunction (function D) in dil- ferential power analysis attacks. According to cipher Chip where Data Encryption Standard (DES) circuit is implemented, experiments that u- sing three kinds of Differential Power Analysis (DPA) are done. At the same time, the experimental results are compared and analyzed. The optimal ways for attack on mierocontroller with serial structures, Field Programmable Gate Arrays (FPGA) with different designs and com- mercial smart card are given. As a result, it is concluded that these analysis provide the basis for creation ways of the function D in other cryptographic chips where different algorithms are executed.