Fault attack for the iterative operation of AES S-Box

Jea-Hoon Park, SangJae Moon, Dooho Choi, Yousung Kang, Jaecheol Ha · 2010

This paper presents a practical Differential Fault Analysis (DFA) method for the iterative operation on the SubBytes transformation AES. To inject a fault to the iterative operation, we conduct an experiment using a laser injection tool. And, then to deduce the last round key, we analyze the relationship between the input of S-Box and the output of S-Box. Based on a computer analysis, our proposal fault attack retrieves the AES 128-bit secret key with about 211complexity in average using one pair of correct and faulty ciphertext.

Read the paper · More papers on PaperTik