A novel Differential fault analysis on AES-128

Pengjun Wang, Lipeng Hao · 2011

In this paper, a novel Differential fault analysis on AES-128 is proposed to find the initial key. First, by inducing four bytes random faults into the ninth round key stored in static RAM, the relationship between faults in the last two round keys can be revealed. Then, according to the difference between the correct and corrupted ciphertext, faults induced can be determined fast. Finally, under the algorithm description, the initial key can be recovered with a brute force search of complexity 232. The experimental results show that the novel scheme can expose all initial key with six faulty ciphertexts. Compared with traditional schemes, the requirement of fault injection technology is more loose.

Read the paper · More papers on PaperTik