Passer à la navigation principale Passer à la recherche Passer au contenu principal

Soft Analytical Side-Channel Attacks on SHA-2 and HMAC

  • Maxime Lecomte
  • , Julien Maillard
  • , Antoine Moran
  • , Guénaël Renault
  • , Benjamin Smith
  • LTHE (UMR 5564 CNRS/IRD/Université de Grenoble)
  • Laboratoire d'Informatique (LIX)
  • ANSSI

Résultats de recherche: Contribution à un journalArticleRevue par des pairs

Résumé

We investigate the use of bit-level Soft Analytical Side-Channel Attacks (SASCA) to recover secret inputs of the SHA-256 hash function, and secret keys of HMAC-SHA-256, using Sentential Decision Diagrams to overcome the computational challenge posed to classical Belief Propagation by multiple-word modular addition. Our attack on HMAC requires no control nor knowledge of the input, and exploits its double manipulation of the key to improve key-recovery performance. We make comprehensive simulations to evaluate the attacker’s recovery capacity for both SHA-256 and HMAC-SHA-256. Finally, we study the profiling capabilities of load instructions in a multiposition EM probe setup on a STM32F303RET6 microcontroller, and use these results to evaluate the capability of our attack against software implementations of HMAC-SHA-256 in a realistic scenario.

langue originaleAnglais
Pages (de - à)1205-1227
Nombre de pages23
journalIACR Transactions on Cryptographic Hardware and Embedded Systems
Volume2026
Numéro de publication3
Les DOIs
étatPublié - 17 juil. 2026

Empreinte digitale

Examiner les sujets de recherche de « Soft Analytical Side-Channel Attacks on SHA-2 and HMAC ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation