通过对ZDN(Zwei Drittel N,德语的2/3N)模幂算法与CRT算法实现的分析,提出一种选取特殊明文SPA(Side Channel Attack)的方法,将指数信息直观的映射到功耗曲线上.在Infineon SLE78芯片搭建的真实环境中进行实验,表明单条曲线恢复密钥率可达99%.最后,对防范方法进行了分析和总结.
This paper proposes a new method of chosenmessage SPA attacks based on the analysis of the CRT and the ZDN algorithm. It reveals the difference between the modular square and the modular multiplication to the power trace directly. In the experiment on the 8051 chip, the accuracy rate of recovery key achieves 99%. The amount of the plaintext in this method we can choose is large. If the defense is depend on the method forbidding given plaintexts only, it can’t defense the new attack. This method can be used to check up whether or not the chip has defenses on the base number. At last,it summarizes the countermeasure against this method.