Presentation 2020-10-26
Feasibility of lattice attacks on ECDSA
Kotaro Abe, Makoto Ikeda,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) ECDSA secret key is recovered via lattice attacks when only a few bits of nonce$(k)$ are leaked. In this paper, we evaluate the feasibility of lattice attacks under various conditions for key length, the number of leaked bits and the number of signatures. The result suggests that increasing key length is not an effective countermeasure against lattice attacks though the amount of information about $k$ required for lattice attacks to recover the secret key increases as key length increases and that it is necessary to prevent side-channel attacks which leak a few bits of $k$.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) ECDSA / lattice attacks / hidden number problem / side-channel attacks / lattice reduction / BKZ algorithm
Paper # HWS2020-30,ICD2020-19
Date of Issue 2020-10-19 (HWS, ICD)

Conference Information
Committee ICD / HWS
Conference Date 2020/10/26(1days)
Place (in Japanese) (See Japanese page)
Place (in English) Online
Topics (in Japanese) (See Japanese page)
Topics (in English) Hardware Security, etc.
Chair Makoto Nagata(Kobe Univ.) / Makoto Ikeda(Univ. of Tokyo)
Vice Chair Masafumi Takahashi(masafumi2.takahashi@kioxia.com) / Yasuhisa Shimazaki(Renesas Electronics) / Makoto Nagata(Kobe Univ.)
Secretary Masafumi Takahashi(Socionext) / Yasuhisa Shimazaki(Osaka Univ.) / Makoto Nagata(Kyushu Univ.)
Assistant Koji Nii(TSMC) / Kosuke Miyaji(Shinshu Univ.) / Takeshi Kuboki(Kyushu Univ.)

Paper Information
Registration To Technical Committee on Integrated Circuits and Devices / Technical Committee on Hardware Security
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Feasibility of lattice attacks on ECDSA
Sub Title (in English)
Keyword(1) ECDSA
Keyword(2) lattice attacks
Keyword(3) hidden number problem
Keyword(4) side-channel attacks
Keyword(5) lattice reduction
Keyword(6) BKZ algorithm
1st Author's Name Kotaro Abe
1st Author's Affiliation The University of Tokyo(Tokyo Univ.)
2nd Author's Name Makoto Ikeda
2nd Author's Affiliation The University of Tokyo(Tokyo Univ.)
Date 2020-10-26
Paper # HWS2020-30,ICD2020-19
Volume (vol) vol.120
Number (no) HWS-211,ICD-212
Page pp.pp.30-35(HWS), pp.30-35(ICD),
#Pages 6
Date of Issue 2020-10-19 (HWS, ICD)