Extended Fault Based Attack Against Discrete Logarithm Based Public Key Cryptosystems

Executive Summary

Since, Bellcore's researchers proposed fault based attacks, these attacks have become serious threats to the implementation of cryptosystems. Boneh et al. first proposed a fault based attack against the exponentiation algorithm for RSA, and some variants of attack were proposed later. However, the previous variants of similar attack are applicable only to the right-to-left exponentiation algorithm and none of these attacks can be successfully applied to the left-to-right alternative algorithm since 1997. In this paper, the authors focus on cryptosystems operated under prime-order groups and emphasize that an extended fault based attack against implementations using the left-to-right exponentiation algorithm is possible.

