Security Analysis against RVA-based DPA Countermeasure Applied to $Eta_T$ Pairing Algorithm

RVA 기반의 페어링 부채널 대응법에 대한 안전성 분석

  • Received : 2010.05.20
  • Accepted : 2010.09.13
  • Published : 2011.04.30


Recently, pairings over elliptic curve have been applied for various ID-based encryption/signature/authentication/key agreement schemes. For efficiency, the $Eta_T$ pairings over GF($P^n$) (P = 2, 3) were invented, however, they are vulnerable to side channel attacks such as DPA because of their symmetric computation structure compared to other pairings such as Tate, Ate pairings. Several countermeasures have been proposed to prevent side channel attacks. Especially, Masaaki Shirase's method is very efficient with regard to computational efficiency, however, it has security flaws. This paper examines closely the security flaws of RVA-based countermeasure on $Eta_T$ Pairing algorithm from the implementation point of view.


Supported by : 한국연구재단


