0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
A Kleptographic Attack on CSIDH
- 1.CSIDH에 대한 새로운 클렙토그래픽(알고리즘 치환) 공격 시나리오를 최초로 제시
- 2.변조된 기기가 이후 세션의 공개 곡선을 통해 Alice-Bob 간 공유 곡선 정보를 은밀히 유출 가능함을 증명
- 3.고전 Diffie-Hellman의 Young-Yung 공격을 Goldreich-Levin 정리·거부 샘플링으로 CSIDH에 적용
- 4.공개 곡선이 정직한 경우와 계산적으로 구분 불가능함을 증명, CSIDH 자체 가정만으로 성립
왜 중요한가?
아이소제니 기반 암호(CSIDH)에서 부채널·결함 공격은 연구됐지만 알고리즘 치환 공격은 다뤄진 적이 없었는데, 이 공격이 성립함을 보여 아이소제니 암호 구현에도 신뢰할 수 있는 공급망·장치 검증이 필요함을 시사한다.
언급 프로젝트
본문 미리보기
This note reports an attack scenario for CSIDH that does not appear to have been considered in the literature. A subverted device of Alice can leak a shared curve between Alice and Bob through Alice's public curves in later CSIDH sessions. The attack adapts the Young--Yung kleptographic attack from classical Diffie--Hellman to CSIDH using the Goldreich--Levin theorem and rejection sampling. We prove that a CSIDH public curve $[\mathfrak a]\star E_0$ remains computationally indistinguishable from
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



