{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,12]],"date-time":"2026-04-12T06:43:51Z","timestamp":1775976231285,"version":"3.50.1"},"publisher-location":"Berlin, Heidelberg","reference-count":43,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540406631","type":"print"},{"value":"9783540451266","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2003]]},"DOI":"10.1007\/978-3-540-45126-6_12","type":"book-chapter","created":{"date-parts":[[2010,6,22]],"date-time":"2010-06-22T20:55:23Z","timestamp":1277240123000},"page":"162-181","source":"Crossref","is-referenced-by-count":196,"title":["Fault Based Cryptanalysis of the Advanced Encryption Standard (AES)"],"prefix":"10.1007","author":[{"given":"Johannes","family":"Bl\u00f6mer","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jean-Pierre","family":"Seifert","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"12_CR1","volume-title":"Security Engineering","author":"R. Anderson","year":"2001","unstructured":"Anderson, R.: Security Engineering. John Wiley & Sons, New York (2001)"},{"key":"12_CR2","doi-asserted-by":"crossref","unstructured":"Aum\u00fcller, C., Bier, B., Fischer, W., Hofreiter, P., Seifert, J.-P.: Fault attacks on RSA: Concrete results and practical countermeasures. In: Kaliski Jr., B.S., Ko\u00e7, \u00c7.K., Paar, C. (eds.) CHES 2002. LNCS, vol.\u00a02523, pp. 261\u2013276. Springer, Heidelberg (2003)","DOI":"10.1007\/3-540-36400-5_20"},{"key":"12_CR3","series-title":"Lecture Notes in Computer Science","first-page":"315","volume-title":"Cryptographic Hardware and Embedded Systems - CHES 2001","author":"M.L. Akkar","year":"2001","unstructured":"Akkar, M.L., Giraud, C.: An implementation of DES and AES, secure against some attacks. In: Ko\u00e7, \u00c7.K., Naccache, D., Paar, C. (eds.) CHES 2001. LNCS, vol.\u00a02162, pp. 315\u2013324. Springer, Heidelberg (2001)"},{"key":"12_CR4","unstructured":"Anderson, R., Kuhn, M.: Tamper Resistance \u2013 a cautionary note. In: Proc. of 2nd USENIX Workshop on Electronic Commerce, pp. 1\u201311 (1996)"},{"key":"12_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"125","DOI":"10.1007\/BFb0028165","volume-title":"Security Protocols","author":"R. Anderson","year":"1998","unstructured":"Anderson, R., Kuhn, M.: Low cost attacks attacks on tamper resistant devices. In: Christianson, B., Lomas, M. (eds.) Security Protocols 1997. LNCS, vol.\u00a01361, pp. 125\u2013136. Springer, Heidelberg (1998)"},{"issue":"2","key":"12_CR6","doi-asserted-by":"publisher","first-page":"101","DOI":"10.1007\/s001450010016","volume":"14","author":"D. Boneh","year":"2001","unstructured":"Boneh, D., DeMillo, R.A., Lipton, R.: On the Importance of Eliminating Errors in Cryptographic Computations. Journal of Cryptology\u00a014(2), 101\u2013120 (2001)","journal-title":"Journal of Cryptology"},{"key":"12_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"115","DOI":"10.1007\/BFb0028164","volume-title":"Security Protocols","author":"F. Bao","year":"1998","unstructured":"Bao, F., Deng, R.H., Han, Y., Jeng, A., Narasimbalu, A.D., Ngair, T.: Breaking public key cryptosystems on tamper resistant dives in the presence of transient faults. In: Christianson, B., Lomas, M. (eds.) Security Protocols 1997. LNCS, vol.\u00a01361, pp. 115\u2013124. Springer, Heidelberg (1998)"},{"key":"12_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"513","DOI":"10.1007\/BFb0052259","volume-title":"Advances in Cryptology - CRYPTO \u201997","author":"E. Biham","year":"1997","unstructured":"Biham, E., Shamir, A.: Differential fault analysis of secret key cryptosystems. In: Kaliski Jr., B.S. (ed.) CRYPTO 1997. LNCS, vol.\u00a01294, pp. 513\u2013525. Springer, Heidelberg (1997)"},{"key":"12_CR9","unstructured":"Biham, E., Shamir, A.: Power analysis of the key scheduling of the AES candidates. In: Proc. of the second AES conference, pp. 115\u2013121 (1999)"},{"key":"12_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"131","DOI":"10.1007\/3-540-44598-6_8","volume-title":"Advances in Cryptology - CRYPTO 2000","author":"I. Biehl","year":"2000","unstructured":"Biehl, I., Meyer, B., M\u00fcller, V.: Differential fault attacks on elliptic curve cryptosystems. In: Bellare, M. (ed.) CRYPTO 2000. LNCS, vol.\u00a01880, pp. 131\u2013146. Springer, Heidelberg (2000)"},{"key":"12_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"252","DOI":"10.1007\/3-540-44499-8_20","volume-title":"Cryptographic Hardware and Embedded Systems - CHES 2000","author":"C. Clavier","year":"2000","unstructured":"Clavier, C., Coron, J.-S., Dabbous, N.: Differential Power Analysis in the presence of Hardware Countermeasures. In: Paar, C., Ko\u00e7, \u00c7.K. (eds.) CHES 2000. LNCS, vol.\u00a01965, pp. 252\u2013263. Springer, Heidelberg (2000)"},{"key":"12_CR12","unstructured":"Chari, S., Jutla, C., Rao, J.R., Rohatgi, P.J.: A cautionary note regarding evaluation of AES candidates on smartcards. In: Proc. of the second AES conference, pp. 135\u2013150 (1999)"},{"key":"12_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"157","DOI":"10.1007\/3-540-45472-1_12","volume-title":"Proc. of Financial Cryptography (FC 2000)","author":"J.-S. Coron","year":"2001","unstructured":"Coron, J.-S., Kocher, P., Naccache, D.: Statistics and Secret Leakage. In: Frankel, Y. (ed.) FC 2000. LNCS, vol.\u00a01962, p. 157. Springer, Heidelberg (2001)"},{"key":"12_CR14","unstructured":"Daemen, J., Rijmen, V.: Resistance against implementation attacks: a comparative study. In: Proc. of the second AES conference, pp. 122\u2013132 (1999)"},{"key":"12_CR15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-04722-4","volume-title":"The Design of Rijndael","author":"J. Daemen","year":"2002","unstructured":"Daemen, J., Rijmen, V.: The Design of Rijndael. Springer, Berlin (2002)"},{"key":"12_CR16","volume-title":"Probability and random processes","author":"G.R. Grimmett","year":"1992","unstructured":"Grimmett, G.R., Stirzaker, D.R.: Probability and random processes. Oxford Science Publications, Oxford (1992)"},{"key":"12_CR17","unstructured":"Gutmann, P.: Secure deletion of data from magnetic and solid-state memory. In: Proc. of 6th USENIX Security Symposium, pp. 77\u201389 (1997)"},{"key":"12_CR18","unstructured":"Gutmann, P.: Data Remanence in Semiconductor Devices. In: Proc. of 7th USENIX Security Symposium (1998)"},{"key":"12_CR19","unstructured":"International Organization for Standardization, ISO\/IEC 7816-3: Electronic signals and transmission protocols (2002), \n                    \n                      http:\/\/www.iso.ch"},{"key":"12_CR20","unstructured":"Kaliski, B., Robshaw, M.J.B.: Comments on some new attacks on cryptographic devices. RSA Laboratories Bulletin\u00a05 (July 1997)"},{"key":"12_CR21","unstructured":"K\u00f6mmerling, O., Kuhn, M.: Design Principles for Tamper-Resistant Smartcard Processors. In: Proc. of the USENIX Workshop on Smartcard Technologies, pp. 9\u201320 (1999)"},{"key":"12_CR22","unstructured":"Koeune, F., Quisquater, J.-J.: A timing attack against Rijndael, Universit\u00e9 catholique de Louvain, TR CG-1999\/1, 6 pages (1999)"},{"issue":"7","key":"12_CR23","first-page":"421","volume":"20","author":"O. Kocar","year":"1996","unstructured":"Kocar, O.: Hardwaresicherheit von Mikrochips in Chipkarten. Datenschutz und Datensicherheit\u00a020(7), 421\u2013424 (1996)","journal-title":"Datenschutz und Datensicherheit"},{"key":"12_CR24","doi-asserted-by":"crossref","unstructured":"Karri, R., Wu, K., Mishra, P., Kim, Y.: Concurrent error detection of faultbased side-channel cryptanalysis of 128-bit symmetric block ciphers. In: Proc. of IEEE Design Automation Conference, pp. 579\u2013585 (2001)","DOI":"10.1145\/378239.379027"},{"key":"12_CR25","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"109","DOI":"10.1007\/3-540-63594-7_71","volume-title":"Financial Cryptography","author":"D.P. Maher","year":"1997","unstructured":"Maher, D.P.: Fault induction attacks, tamper resistance, and hostile reverse engineering in perspective. In: Luby, M., Rolim, J.D.P., Serna, M. (eds.) FC 1997. LNCS, vol.\u00a01318, pp. 109\u2013121. Springer, Heidelberg (1997)"},{"key":"12_CR26","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"150","DOI":"10.1007\/3-540-44706-7_11","volume-title":"Fast Software Encryption","author":"T. Messerges","year":"2001","unstructured":"Messerges, T.: Securing the AES finalists against power analysis attacks. In: Schneier, B. (ed.) FSE 2000. LNCS, vol.\u00a01978, pp. 150\u2013164. Springer, Heidelberg (2001)"},{"key":"12_CR27","unstructured":"Moore, S.W., Anderson, R.J., Kuhn, M.G.: Improving Smartcard Security using Self-Timed Circuit Technology. In: Fourth AciD-WG Workshop, Grenoble (2000) ISBN 2-913329-44-6"},{"key":"12_CR28","volume-title":"Proc. of Asynch 2002","author":"S.W. Moore","year":"2002","unstructured":"Moore, S.W., Anderson, R.J., Cunningham, P., Mullins, R., Taylor, G.: Improving Smartcard Security using Self-Timed Circuit Technology. In: Proc. of Asynch 2002. IEEE Computer Society Press, Los Alamitos (2002)"},{"key":"12_CR29","doi-asserted-by":"crossref","unstructured":"Naccache, D., M\u2019Raihi, D.: Cryptographic smart cards. IEEE Micro, 14\u201324 (1996)","DOI":"10.1109\/40.502402"},{"key":"12_CR30","unstructured":"Pailler, P.: Evaluating differential fault analysis of unknown cryptosystems. Gemplus Corporate Product R&D Division, TR AP05-1998, 8 pages (1999)"},{"issue":"5","key":"12_CR31","doi-asserted-by":"publisher","first-page":"78","DOI":"10.2307\/3980615","volume":"151","author":"I. Petersen","year":"1997","unstructured":"Petersen, I.: Chinks in digital armor \u2014 Exploiting faults to break smartcard cryptosystems. Science News\u00a0151(5), 78\u201379 (1997)","journal-title":"Science News"},{"key":"12_CR32","unstructured":"Quisquater, J.-J., Samyde, D.: Eddy Current for Magnetic Analysis with Active Sensor. In: Proc. of Int. Conf. on Research in SmartCards (E-Smart 2002), Novamedia, pp. 185\u2013194 (2002)"},{"key":"12_CR33","doi-asserted-by":"crossref","unstructured":"Samyde, D., Quisquater, J.-J.: ElectroMagnetic Analysis (EMA): Measures and Countermeasures for Smart Cards. In: Attali, S., Jensen, T. (eds.) E-smart 2001. LNCS, vol.\u00a02140, pp. 200\u2013210. Springer, Heidelberg (2001)","DOI":"10.1007\/3-540-45418-7_17"},{"key":"12_CR34","series-title":"Lecture Notes in Computer Science","first-page":"241","volume-title":"Advances in Cryptology - ASIACRYPT 2001","author":"A. Satoh","year":"2001","unstructured":"Satoh, A., Morioka, S., Takano, K., Munetoh, S.: A compact Rijndael hardware architecture with S-Box optimization. In: Boyd, C. (ed.) ASIACRYPT 2001. LNCS, vol.\u00a02248, pp. 241\u2013256. Springer, Heidelberg (2001)"},{"key":"12_CR35","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1007\/3-540-36400-5_2","volume-title":"Cryptographic Hardware and Embedded Systems - CHES 2002","author":"S. Skorobogatov","year":"2003","unstructured":"Skorobogatov, S., Anderson, R.: Optical Fault Induction Attacks. In: Kaliski Jr., B.S., Ko\u00e7, \u00c7.K., Paar, C. (eds.) CHES 2002. LNCS, vol.\u00a02523, pp. 2\u201312. Springer, Heidelberg (2003)"},{"key":"12_CR36","volume-title":"Principles of CMOS VLSI Design","author":"N.H.E. Weste","year":"1994","unstructured":"Weste, N.H.E., Eshraghian, K.: Principles of CMOS VLSI Design, 2nd edn. Addison-Wesley, Reading (1994)","edition":"2"},{"key":"12_CR37","unstructured":"Wolkerstorfer, J.: An ASIC implementation of the AES MixColumnoperation. Graz University of Technology, Institute for Applied Information Processing and Communications, Manuscript, 4 pages (2001)"},{"key":"12_CR38","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"67","DOI":"10.1007\/3-540-45760-7_6","volume-title":"Topics in Cryptology - CT-RSA 2002","author":"J. Wolkerstorfer","year":"2002","unstructured":"Wolkerstorfer, J., Oswald, E., Lamberger, M.: An ASIC implementation of the AES S-Boxes. In: Preneel, B. (ed.) CT-RSA 2002. LNCS, vol.\u00a02271, p. 67. Springer, Heidelberg (2002)"},{"key":"12_CR39","doi-asserted-by":"publisher","first-page":"967","DOI":"10.1109\/12.869328","volume":"49","author":"S.-M. Yen","year":"2000","unstructured":"Yen, S.-M., Joye, M.: Checking before output not be enough against fault-based cryptanalysis. IEEE Trans. on Computer\u00a049, 967\u2013970 (2000)","journal-title":"IEEE Trans. on Computer"},{"key":"12_CR40","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"397","DOI":"10.1007\/3-540-45861-1_30","volume-title":"Information Security and Cryptology - ICISC 2001","author":"S.-M. Yen","year":"2002","unstructured":"Yen, S.-M., Kim, S.-J., Lim, S.-G., Moon, S.-J.: RSA Speedup with Residue Number System immune from Hardware fault cryptanalysis. In: Kim, K.-c. (ed.) ICISC 2001. LNCS, vol.\u00a02288, p. 397. Springer, Heidelberg (2002)"},{"key":"12_CR41","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"414","DOI":"10.1007\/3-540-45861-1_31","volume-title":"Information Security and Cryptology - ICISC 2001","author":"S.-M. Yen","year":"2002","unstructured":"Yen, S.-M., Kim, S.-J., Lim, S.-G., Moon, S.-J.: A countermeasure against one physical cryptanalysis may benefit another attack. In: Kim, K.-c. (ed.) ICISC 2001. LNCS, vol.\u00a02288, p. 414. Springer, Heidelberg (2002)"},{"key":"12_CR42","unstructured":"Yen, S.-M., Tseng, S.Y.: Differential power cryptanalysis of a Rijndael implementation. LCIS Technical Report TR-2K1-9, Dept. of Computer Science and Information Engineering, National Central University, Taiwan (2001)"},{"key":"12_CR43","series-title":"LNCS","volume-title":"Proc. of the 1997 Symposium on Cryptography and Information Security","author":"Y. Zheng","year":"1997","unstructured":"Zheng, Y., Matsumoto, T.: Breaking real-world implementations of cryptosystems by manipulating their random number generation. In: Proc. of the 1997 Symposium on Cryptography and Information Security. LNCS. Springer, Heidelberg (1997)"}],"container-title":["Lecture Notes in Computer Science","Financial Cryptography"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-45126-6_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,24]],"date-time":"2019-05-24T07:32:16Z","timestamp":1558683136000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-45126-6_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2003]]},"ISBN":["9783540406631","9783540451266"],"references-count":43,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-45126-6_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2003]]}}}