0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
Secret-Subspace Recovery in MAYO via Linearization of Errors from a Single Fault
- 1.MAYO 서명 스킴에 단일 결함 주입만으로 비밀 부분공간을 복구하는 공격 제시
- 2.오일 좌표 1개 또는 다수 교란하는 두 결함모델에서 관측 불일치가 공개 선형연산자의 상으로 표현됨을 증명
- 3.선형경로는 F_q 위 선형시스템, 축소이차경로는 m개 이차방정식(n-m변수)으로 환원해 기본체에서 풀이 가능
- 4.MAYO 파라미터에서 n-m=o가 작아 실제 풀이 가능하며, 무작위화(randomized) MAYO에도 공격이 적용됨
왜 중요한가?
MAYO는 NIST 추가 서명 후보 중 하나인데, 단 한 번의 결함 주입만으로 비밀키 복구의 출발점을 얻을 수 있음을 보여 하드웨어 구현 시 결함 방지 대책이 필수적임을 시사한다.
언급 프로젝트
본문 미리보기
We present fault injection attacks against MAYO in which a single faulty execution reveals structural information about the secret. We consider two closely related single-block fault models. In the first one, a controlled perturbation affects one oil coordinate of a signature block and induces an error $e \in \mathcal{O}$. In the second one, the perturbation may affect several oil coordinates of the same block. In both cases, we show that the observable verification mismatch can be written as th
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



