A Combination of Timing Attack and Statistical Method to Reduce Computational Complexities of SSL/TLS Side-Channel Attacks
Jing Wang, Ying Chun Yang, Lijuan Chen, Guang Yang, Zhenya Chen, Liqiang Wen · 2015
SSL (Secure Sockets Layer) and TLS (Transport Layer Security), which aim to provide confidentiality and integrity of data in transit across untrusted networks, have combined symmetric cryptography technology and public encryption technology. Over the last couple of years, however, several significant vulnerabilities have been discovered in SSL/TLS protocols. The combination way of timing attack and statistical methods is proposed to reduce the computational complexity. The approach focuses on the cryptographic operation of SSL/TLS record protocols in CBC-mode. The experiment result shows it is better than Lucy 13 attack.