{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,15]],"date-time":"2026-06-15T10:26:14Z","timestamp":1781519174602,"version":"3.54.1"},"publisher-location":"Berlin, Heidelberg","reference-count":37,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540008477","type":"print"},{"value":"9783540365631","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2003]]},"DOI":"10.1007\/3-540-36563-x_23","type":"book-chapter","created":{"date-parts":[[2007,11,2]],"date-time":"2007-11-02T14:24:59Z","timestamp":1194013499000},"page":"328-343","source":"Crossref","is-referenced-by-count":51,"title":["The Width-w NAF Method Provides Small Memory and Fast Elliptic Scalar Multiplications Secure against Side Channel Attacks"],"prefix":"10.1007","author":[{"given":"Katsuyuki","family":"Okeya","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tsuyoshi","family":"Takagi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2003,2,28]]},"reference":[{"key":"23_CR1","unstructured":"ANSI X9.62, Public Key Cryptography for the Financial Services Industry, The Elliptic Curve Digital Signature Algorithm (ECDSA), (1999). 333"},{"key":"23_CR2","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"335","DOI":"10.1007\/3-540-45664-3_24","volume-title":"Public Key Cryptography (PKC2002)","author":"Brier","year":"2002","unstructured":"Brier, \u00c9., Joye, M., Weierstrass Elliptic Curves and Side-Channel Attacks, Public Key Cryptography (PKC2002), LNCS2274, (2002), 335\u2013345. 329, 332, 333"},{"key":"23_CR3","doi-asserted-by":"crossref","unstructured":"I. Blake, G. Seroussi, and N. Smart, Elliptic Curves in Cryptography, Cambridge University Press, 1999. 331","DOI":"10.1017\/CBO9781107360211"},{"key":"23_CR4","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"51","DOI":"10.1007\/3-540-49649-1_6","volume-title":"Advances in Cryptology-ASIACRYPT\u2019 98","author":"H. Cohen","year":"1998","unstructured":"Cohen, H., Miyaji, A., Ono, T., Efficient Elliptic Curve Exponentiation Using Mixed Coordinates, Advances in Cryptology-ASIACRYPT\u2019 98, LNCS1514, (1998), 51\u201365. 330"},{"key":"23_CR5","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"292","DOI":"10.1007\/3-540-48059-5_25","volume-title":"Cryptographic Hardware and Embedded Systems (CHES\u201999)","author":"J. S. Coron","year":"1999","unstructured":"Coron, J. S., Resistance against Differential Power Analysis for Elliptic Curve Cryptosystems, Cryptographic Hardware and Embedded Systems (CHES\u201999), LNCS1717, (1999), 292\u2013302. 329, 332, 333, 337, 339, 340"},{"key":"23_CR6","unstructured":"National Bureau of Standards, Data Encryption Standard, Federal Information Processing Standards Publication 46 (FIPS PUB 46), (1977). 332"},{"key":"23_CR7","unstructured":"Fischer, W., Giraud, C., Knudsen, E. W., Seifert, J. P., Parallel scalar multiplication on general elliptic curves over F p hedged against Non-Differential Side-Channel Attacks, International Association for Cryptologic Research (IACR), Cryptology ePrint Archive 2002\/007, (2002). Available at http:\/\/eprint.iacr.org\/ 329, 332"},{"key":"23_CR8","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1007\/3-540-45450-0_18","volume-title":"Information Security and Privacy","author":"Y. Hitchcock","year":"2002","unstructured":"Hitchcock, Y., Montague, P., A New Elliptic Curve Scalar Multiplication Algorithm to Resist Simple Power Analysis, Information Security and Privacy, 7th Australasian Conference, (ACISP 2002), LNCS2384, (2002), 214\u2013225. 329, 339, 340"},{"key":"23_CR9","doi-asserted-by":"crossref","unstructured":"Itoh, K., Izu, T., and Takenaka, M., Address-bit Differential Power Analysis on Cryptographic Schemes OK-ECDH and OK-ECDSA, to appear in Workshop on Cryptographic Hardware and Embedded Systems 2002 (CHES 2002), 2002.","DOI":"10.1007\/3-540-36400-5_11"},{"key":"23_CR10","doi-asserted-by":"crossref","unstructured":"Itoh, K., Yajima, J., Takenaka, M., and Torii, N., DPA Countermeasures by improving the Window Method, to appear in Workshop on Cryptographic Hardware and Embedded Systems 2002 (CHES 2002), 2002. 329","DOI":"10.1007\/3-540-36400-5_23"},{"key":"23_CR11","unstructured":"IEEE P1363, Standard Specifications for Public-Key Cryptography. http:\/\/groupe.ieee.org\/groups\/1363\/ 330"},{"key":"23_CR12","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"280","DOI":"10.1007\/3-540-45664-3_20","volume-title":"Public Key Cryptography (PKC2002)","author":"T. Izu","year":"2002","unstructured":"Izu, T., Takagi, T., A Fast Parallel Elliptic Curve Multiplication Resistant against Side Channel Attacks, Public Key Cryptography (PKC2002), LNCS2274, (2002), 280\u2013296. 329, 332, 333"},{"key":"23_CR13","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"402","DOI":"10.1007\/3-540-44709-1_33","volume-title":"Cryptographic Hardware and Embedded Systems (CHES\u201901)","author":"M. Joye","year":"2001","unstructured":"Joye, M., Quisquater, J. J., Hessian elliptic curves and side-channel attacks, Cryptographic Hardware and Embedded Systems (CHES\u201901), LNCS2162, (2001), 402\u2013410. 333"},{"key":"23_CR14","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"353","DOI":"10.1007\/3-540-44586-2_26","volume-title":"Public Key Cryptography 2001 (PKC2001)","author":"M. Joye","year":"2001","unstructured":"Joye, M., Tymen, C., Compact Encoding of Non-adjacent Forms with Applications to Elliptic Curve Cryptography, Public Key Cryptography 2001 (PKC2001), pp.353\u2013364, LNCS1992, 2001. 338"},{"key":"23_CR15","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"377","DOI":"10.1007\/3-540-44709-1_31","volume-title":"Cryptographic Hardware and Embedded Systems (CHES\u201901)","author":"M. Joye","year":"2001","unstructured":"Joye, M., Tymen, C., Protections against differential analysis for elliptic curve cryptography: An algebraic approach, Cryptographic Hardware and Embedded Systems (CHES\u201901), LNCS2162, (2001), 377\u2013390. 333, 337"},{"key":"23_CR16","doi-asserted-by":"publisher","first-page":"203","DOI":"10.2307\/2007884","volume":"48","author":"N. Koblitz","year":"1987","unstructured":"Koblitz, N., Elliptic curve cryptosystems, Math. Comp. 48, (1987), 203\u2013209.","journal-title":"Math. Comp."},{"key":"23_CR17","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"104","DOI":"10.1007\/3-540-68697-5_9","volume-title":"Advances in Cryptology-CRYPTO\u2019 96","author":"C. Kocher","year":"1996","unstructured":"Kocher, C., Timing Attacks on Implementations of Diffie-Hellman, RSA,DSS, and Other Systems, Advances in Cryptology-CRYPTO\u2019 96, LNCS1109, (1996), 104\u2013113. 328, 332"},{"key":"23_CR18","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"388","DOI":"10.1007\/3-540-48405-1_25","volume-title":"Advances in Cryptology-CRYPTO\u2019 99","author":"C. Kocher","year":"1999","unstructured":"Kocher, C., Jaffe, J., Jun, B., Differential Power Analysis, Advances in Cryptology-CRYPTO\u2019 99, LNCS1666, (1999), 388\u2013397. 328, 332"},{"key":"23_CR19","series-title":"Lect Notes Comput Sci","first-page":"345","volume-title":"Advances in Cryptology-CRYPTO\u2019 92","author":"K. Koyama","year":"1992","unstructured":"K. Koyama and Y. Tsuruoka, Speeding Up Elliptic Curve Cryptosystems using a Signed Binary Windows Method, Advances in Cryptology-CRYPTO\u2019 92, LNCS740, (1992), pp.345\u2013357. 331"},{"key":"23_CR20","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"391","DOI":"10.1007\/3-540-44709-1_32","volume-title":"Cryptographic Hardware and Embedded System (CHES\u201901)","author":"P. Y. Liardet","year":"2001","unstructured":"Liardet, P. Y., Smart, N. P., Preventing SPA\/DPA in ECC systems using the Jacobi form, Cryptographic Hardware and Embedded System (CHES\u201901), LNCS2162, (2001), 391\u2013401. 329, 333"},{"key":"23_CR21","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"417","DOI":"10.1007\/3-540-39799-X_31","volume-title":"Advances in Cryptology-CRYPTO\u2019 85","author":"V. S. Miller","year":"1986","unstructured":"Miller, V. S., Use of elliptic curves in cryptography, Advances in Cryptology-CRYPTO\u2019 85, LNCS218,(1986), pp.417\u2013426."},{"key":"23_CR22","unstructured":"Atsuko Miyaji, Takatoshi Ono, Henri Cohen, Efficient elliptic curve exponentiation, Information and Communication Security (ICICS 1997), (1997), pp.282\u2013291. 331"},{"key":"23_CR23","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"324","DOI":"10.1007\/3-540-45439-X_22","volume-title":"Information Security (ISC2001)","author":"B. M\u00f6ller","year":"2001","unstructured":"M\u00f6ller, B., Securing Elliptic Curve Point Multiplication against Side-Channel Attacks, Information Security (ISC2001), LNCS2200, (2001), 324\u2013334. 329, 337"},{"key":"23_CR24","doi-asserted-by":"crossref","unstructured":"M\u00f6ller, B., Securing elliptic curve point multiplication against side-channel attacks, addendum: Efficiency improvement. http:\/\/www.informatik.tudarmstadt.de\/TI\/Mitarbeiter\/moeller\/ecc-scaisc01.pdf , (2001). 329, 337","DOI":"10.1007\/3-540-45439-X_22"},{"key":"23_CR25","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"402","DOI":"10.1007\/3-540-45811-5_31","volume-title":"Information Security Conference (ISC 2002)","author":"B. M\u00f6ller","year":"2002","unstructured":"M\u00f6ller, B., Parallelizable Elliptic Curve Point Multiplication Method with Resistance against Side-Channel Attacks, Information Security Conference (ISC 2002), LNCS2433, (2002), 402\u2013413."},{"key":"23_CR26","unstructured":"National Institute of Standards and Technology, FIPS 186-2, http:\/\/csrc.nist.gov\/publication\/fips\/fips186-2\/fips186-2.pdf"},{"key":"23_CR27","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1007\/3-540-44709-1_5","volume-title":"Cryptographic Hardware and Embedded Systems (CHES\u201901)","author":"E. Oswald","year":"2001","unstructured":"Oswald, E., Aigner, M., Randomized Addition-Subtraction Chains as a Countermeasure against Power Attacks, Cryptographic Hardware and Embedded Systems (CHES\u201901), LNCS2162, (2001), 39\u201350. 329, 333"},{"key":"23_CR28","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"428","DOI":"10.1007\/3-540-45861-1_32","volume-title":"A Fast Scalar Multiplication Method with Randomized Projective Coordinates on a Montgomery-form Elliptic Curve Secure against Side Channel Attacks","author":"K. Okeya","year":"2002","unstructured":"Okeya, K., Miyazaki, K., Sakurai, K., A Fast Scalar Multiplication Method with Randomized Projective Coordinates on a Montgomery-form Elliptic Curve Secure against Side Channel Attacks, The 4th International Conference on Information Security and Cryptology (ICISC 2001), LNCS2288, (2002), 428\u2013439. 333"},{"key":"23_CR29","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"178","DOI":"10.1007\/3-540-44495-5_16","volume-title":"Progress in Cryptology-INDOCRYPT 2000","author":"K. Okeya","year":"2000","unstructured":"Okeya, K., Sakurai, K., Power Analysis Breaks Elliptic Curve Cryptosystems even Secure against the Timing Attack, Progress in Cryptology-INDOCRYPT 2000, LNCS1977, (2000), 178\u2013190. 329, 332"},{"key":"23_CR30","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"420","DOI":"10.1007\/3-540-45450-0_32","volume-title":"On Insecurity of the Side Channel Attack Countermeasure using Addition-Subtraction Chains under Distinguishability between Addition and Doubling","author":"K. Okeya","year":"2002","unstructured":"Okeya, K., Sakurai, K., On Insecurity of the Side Channel Attack Countermeasure using Addition-Subtraction Chains under Distinguishability between Addition and Doubling, The 7th Australasian Conference in Information Security and Privacy, (ACISP 2002), LNCS2384, (2002), 420\u2013435. 329, 333"},{"key":"23_CR31","unstructured":"Okeya, K., Sakurai, K., Fast Multi-Scalar Multiplication Methods on Elliptic Curves with Precomputation Strategy using Montgomery Trick, Cryptographic Hardware and Embedded System (CHES 2002), Pre-Proceedings, (2002), 566\u2013581. 338"},{"key":"23_CR32","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"389","DOI":"10.1007\/3-540-45811-5_30","volume-title":"A Second-Order DPA Attack Breaks a Windowmethod based Countermeasure against Side Channel Attacks","author":"K. Okeya","year":"2002","unstructured":"Okeya, K., Sakurai, K., A Second-Order DPA Attack Breaks a Windowmethod based Countermeasure against Side Channel Attacks, Information Security Conference (ISC 2002), LNCS2433, (2002), 389\u2013401. 337"},{"key":"23_CR33","doi-asserted-by":"crossref","unstructured":"Oswald, E., Enhancing Simple Power-Analysis Attacks on Elliptic Curve Cryptosystems, to appear in Workshop on Cryptographic Hardware and Embedded Systems 2002 (CHES 2002), 2002.","DOI":"10.1007\/3-540-36400-5_8"},{"issue":"2","key":"23_CR34","doi-asserted-by":"publisher","first-page":"120","DOI":"10.1145\/359340.359342","volume":"21","author":"R. L. Rivest","year":"1978","unstructured":"Rivest, R. L., Shamir, A., Adleman, L., A Method for Obtaining Digital Signatures and Public-Key Cryptosystems, Communications of the ACM, Vol.21, No.2, (1978), 120\u2013126. 332","journal-title":"Communications of the ACM"},{"key":"23_CR35","doi-asserted-by":"publisher","first-page":"195","DOI":"10.1023\/A:1008306223194","volume":"19","author":"J. A. Solinas","year":"2000","unstructured":"Solinas, J. A., Efficient Arithmetic on Koblitz Curves, Design, Codes and Cryptography, 19, (2000), 195\u2013249. 329, 331","journal-title":"Design, Codes and Cryptography"},{"key":"23_CR36","doi-asserted-by":"crossref","unstructured":"Walter, C. D., Some Security Aspects of the Mist Randomized Exponentiation Algorithm, to appear in Workshop on Cryptographic Hardware and Embedded Systems 2002 (CHES 2002), 2002.","DOI":"10.1007\/3-540-36400-5_21"},{"key":"23_CR37","unstructured":"Walter, C. D., Breaking the Liardet-Smart Randomized Exponentiation Algorithm, to apper in CARDIS\u201902. 329, 333"}],"container-title":["Lecture Notes in Computer Science","Topics in Cryptology \u2014 CT-RSA 2003"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/3-540-36563-X_23","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,4]],"date-time":"2019-05-04T04:23:21Z","timestamp":1556943801000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/3-540-36563-X_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2003]]},"ISBN":["9783540008477","9783540365631"],"references-count":37,"URL":"https:\/\/doi.org\/10.1007\/3-540-36563-x_23","relation":{},"ISSN":["0302-9743"],"issn-type":[{"value":"0302-9743","type":"print"}],"subject":[],"published":{"date-parts":[[2003]]}}}