[Resource Topic] 2022/1131: CINI MINIS: Domain Isolation for Fault and Combined Security

CINI MINIS: Domain Isolation for Fault and Combined Security

Authors: Jakob Feldtkeller, Jan Richter-Brockmann, Pascal Sasdrich, Tim Güneysu


Observation and manipulation of physical characteristics are well-known and powerful threats to cryptographic devices. While countermeasures against passive side-channel and active fault-injection attacks are well understood individually, combined attacks, i.e., the combination of fault injection and side-channel analysis, is a mostly unexplored area. Naturally, the complexity of analysis and secure construction increases with the sophistication of the adversary, making the combined scenario especially challenging. To tackle complexity, the side-channel community has converged on the construction of small building blocks, which maintain security properties even when composed. In this regard, Probe-Isolating Non-Interference (PINI) is a widely used notion for secure composition in the presence of side-channel attacks due to its efficiency and elegance. In this work, we transfer the core ideas behind PINI to the context of fault and combined security and, from that, construct the first trivially composable gadgets in the presence of a combined adversary.

ePrint: https://eprint.iacr.org/2022/1131

