0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
Differential Fault Attack on Atom: Bypassing the Double Key Filter using Filtered Faults
- 1.경량 스트림 암호 Atom(Banik 외, TOSC-2021)에 대한 최초의 성공적 차분 오류 공격(DFA) 발표
- 2.LFSR 상태를 추측하지 않고도 키·상태 변수 대수식을 세울 수 있는 새 방법으로 기존 대수방어 돌파
- 3.MLP+XGBoost 앙상블 모델로 오류 주입 위치를 추정해 SAT 솔버 호출 횟수와 공격 시간을 대폭 절감
- 4.평균 52회 오류 주입으로 18개 유효 오류를 확보해 키스트림 70비트만으로 공격 성공
왜 중요한가?
LFSR 의존 키 필터로 대수적 공격이 어렵다던 Atom의 설계 가정을 머신러닝 기반 오류 위치 추정으로 무력화해, 경량 스트림 암호의 물리적 공격 내성 평가 기준을 다시 세워야 함을 보여준다.
언급 프로젝트
본문 미리보기
In this paper, we present a Differential Fault Attack (DFA) on the lightweight stream cipher Atom, proposed by Banik et al. in IACR Transactions on Symmetric Cryptography (TOSC)-2021. It employs two key filters simultaneously during the pseudo-random generation algorithm phase, one of which depends on LFSR state bits. Due to this LFSR-dependent key filter, the authors claim that forming algebraic equations relating key and state bits as variables to the keystream bits is difficult unless the en
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



