本文提出一种针对特定结构的SPN结构分组密码算法的差分故障攻击方法。该攻击方法基于单字节故障模型,对于具有特定置换层设计的SPN结构分组密码算法,仅需要少量的错误密文即可还原其所使用的密钥。文中给出了错误发生位置、置换层设计与秘密信息泄漏之间的关系分析。同时,我们还针对一些特定结构SPN结构分组密码算法实现了攻击过程。
This paper presents an efficient fault injection attack technique that could be used to break devices with certain types of SPN structures. The attack is on the basis of the byte-oriented fault model and requires very few faulty cipher texts to break SPN structures with certain type of permutation layer. Analysis is given to reveal how fault occurred position and permutation layer design leak the secret information. We also give attack implementation on ARIA and some other block ciphers with particular permutation layer design.