{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,7,4]],"date-time":"2024-07-04T10:30:35Z","timestamp":1720089035759},"reference-count":40,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2016,10,28]],"date-time":"2016-10-28T00:00:00Z","timestamp":1477612800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Cryptogr Eng"],"published-print":{"date-parts":[[2017,4]]},"DOI":"10.1007\/s13389-016-0138-1","type":"journal-article","created":{"date-parts":[[2016,10,28]],"date-time":"2016-10-28T10:46:33Z","timestamp":1477651593000},"page":"75-85","update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":14,"title":["Using linear codes as a fault countermeasure for nonlinear operations: application to AES and formal verification"],"prefix":"10.1007","volume":"7","author":[{"given":"Sabine","family":"Azzi","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bruno","family":"Barras","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Maria","family":"Christofi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"David","family":"Vigilant","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2016,10,28]]},"reference":[{"key":"138_CR1","unstructured":"ACSL. http:\/\/frama-c.com\/acsl.html"},{"key":"138_CR2","doi-asserted-by":"crossref","unstructured":"Anderson, R., Kuhn, M.: Low cost attacks on tamper-resistant devices. In: Security Protocols 5th International Workshop, pp. 125\u2013136 (1997)","DOI":"10.1007\/BFb0028165"},{"key":"138_CR3","doi-asserted-by":"crossref","unstructured":"Barthe, G., Bela\u00efd, S., Dupressoir, F., Fouque, P., Gr\u00e9goire, B., Strub, P.: Verified proofs of higher-order masking. In: Advances in Cryptology\u2014EUROCRYPT 2015, 457\u2013485 (2015)","DOI":"10.1007\/978-3-662-46800-5_18"},{"key":"138_CR4","doi-asserted-by":"publisher","unstructured":"Berthom\u00e9, P., Heydemann, K., Kauffmann-Tourkestansky, X., Lalande, J.F.: High level model of control flow attacks for smart card functional security. In: 7th International Conference on Availability, Reliability and Security, pp. 224\u2013229. IEEE Computer Society (2012). doi: 10.1109\/ARES.2012.79 . http:\/\/hal.archives-ouvertes.fr\/hal-00721111","DOI":"10.1109\/ARES.2012.79"},{"key":"138_CR5","doi-asserted-by":"publisher","unstructured":"Betsumiya, K., Harada, M.: Binary optimal odd formally self-dual codes. Des. Codes Cryptogr. 23(1), 11\u201322 (2001). doi: 10.1023\/A:1011203416769","DOI":"10.1023\/A:1011203416769"},{"key":"138_CR6","doi-asserted-by":"crossref","unstructured":"Biham, E., Shamir, A.: Differential fault analysis of secret key cryptosystems. In: CRYPTO \u201997, pp. 513\u2013525 (1997)","DOI":"10.1007\/BFb0052259"},{"key":"138_CR7","unstructured":"Bl\u00f6emer, J., Seifert, J.P.: Fault based cryptanalysis of the aes. Cryptology ePrint Archive, Report 2002\/075 (2002). http:\/\/eprint.iacr.org\/"},{"issue":"2","key":"138_CR8","doi-asserted-by":"crossref","first-page":"101","DOI":"10.1007\/s001450010016","volume":"14","author":"D Boneh","year":"2001","unstructured":"Boneh, D., DeMillo, R.A., Lipton, R.J.: On the importance of eliminating errors in cryptographic computations. J. Cryptol. 14(2), 101\u2013119 (2001)","journal-title":"J. Cryptol."},{"key":"138_CR9","doi-asserted-by":"crossref","unstructured":"Brier, E., Clavier, C., Olivier, F.: Correlation power analysis with a leakage model. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2004, CHES \u201904, pp. 16\u201329 (2004)","DOI":"10.1007\/978-3-540-28632-5_2"},{"key":"138_CR10","doi-asserted-by":"crossref","unstructured":"Bringer, J., Carlet, C., Chabanne, H., Guilley, S., Maghrebi, H.: Orthogonal direct sum masking\u2014a smartcard friendly computation paradigm in a code, with builtin protection against side-channel and fa. In: Information Security Theory and Practice. Securing the Internet of Things, pp. 40\u201356 (2014)","DOI":"10.1007\/978-3-662-43826-8_4"},{"issue":"9","key":"138_CR11","doi-asserted-by":"crossref","first-page":"6000","DOI":"10.1109\/TIT.2012.2200651","volume":"58","author":"C Carlet","year":"2012","unstructured":"Carlet, C., Gaborit, P., Kim, J., Sol\u00e9, P.: A new class of codes for boolean masking of cryptographic computations. IEEE Trans. Inf. Theory 58(9), 6000\u20136011 (2012)","journal-title":"IEEE Trans. Inf. Theory"},{"key":"138_CR12","unstructured":"Christofi, M.: Security proofs of cryptographic implementations. Thesis report (2013)"},{"issue":"3","key":"138_CR13","doi-asserted-by":"publisher","first-page":"157","DOI":"10.1007\/s13389-013-0049-3","volume":"3","author":"M Christofi","year":"2013","unstructured":"Christofi, M., Chetali, B., Goubin, L., Vigilant, D.: Formal verification of a CRT-RSA implementation against fault attacks. J. Cryptogr. Eng. 3(3), 157\u2013167 (2013). doi: 10.1007\/s13389-013-0049-3","journal-title":"J. Cryptogr. Eng."},{"key":"138_CR14","doi-asserted-by":"crossref","unstructured":"Coron, J.S., Roy, A., Vivek, S.: Fast evaluation of polynomials over binary finite fields and application to side-channel countermeasures. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2014, pp. 170\u2013187 (2014)","DOI":"10.1007\/978-3-662-44709-3_10"},{"key":"138_CR15","doi-asserted-by":"crossref","unstructured":"Courbon, F., Loubet-Moundi, P., Fournier, J., Tria, A.: Adjusting laser injections for fully controlled faults. In: COSADE 2014, Lecture Notes in Computer Science, vol. 8622, pp. 229\u2013242. Springer International Publishing (2014)","DOI":"10.1007\/978-3-319-10175-0_16"},{"key":"138_CR16","unstructured":"Floissac, N., L\u2019Hyver, Y.: From aes-128 to aes-192 and aes-256, how to adapt DFA attacks. Cryptology ePrint Archive, Report 2010\/396 (2010). http:\/\/eprint.iacr.org\/"},{"key":"138_CR17","unstructured":"frama-c. http:\/\/frama-c.com\/"},{"key":"138_CR18","doi-asserted-by":"crossref","unstructured":"Gierlichs, B., Schmidt, J.M., Tunstall, M.: Infective computation and dummy rounds: fault protection for block ciphers without check-before-output. Cryptology ePrint Archive, Report 2012\/678 (2012)","DOI":"10.1007\/978-3-642-33481-8_17"},{"key":"138_CR19","unstructured":"Giraud, C., Thillard, A.: Piret and quisquater\u2019s DFA on AES revisited. Cryptology ePrint Archive, Report 2010\/440 (2010). http:\/\/eprint.iacr.org\/"},{"key":"138_CR20","unstructured":"Guo, X., Mukhopadhyay, D., Karri, K.: Provably secure concurrent error detection against differential fault analysis. Cryptology ePrint Archive, Report 2012\/552 (2012). http:\/\/eprint.iacr.org\/"},{"key":"138_CR21","doi-asserted-by":"publisher","unstructured":"H.-K., C.: Improved DFA on AES key schedule. IEEE Trans. Inf. Forensics Secur. 7(1), 41\u201350 (2012). doi: 10.1109\/TIFS.2011.2161289","DOI":"10.1109\/TIFS.2011.2161289"},{"key":"138_CR22","unstructured":"Heydemann, K., Moro, N., Encrenaz, E., Robisson, B.: Formal verification of a software countermeasure against instruction skip attacks. IACR Cryptology ePrint Archive 2013, 679 (2013). http:\/\/eprint.iacr.org\/2013\/679"},{"key":"138_CR23","unstructured":"Jessie. http:\/\/krakatoa.lri.fr\/#jessie"},{"key":"138_CR24","doi-asserted-by":"publisher","unstructured":"Karpovsky, M., Kulikowski, K., Taubin, A.: Robust protection against fault-injection attacks on smart cards implementing the aes. In: 2004 International Conference on Dependable Systems and Networks, pp. 93\u2013101 (2004). doi: 10.1109\/DSN.2004.1311880","DOI":"10.1109\/DSN.2004.1311880"},{"issue":"12","key":"138_CR25","doi-asserted-by":"publisher","first-page":"1509","DOI":"10.1109\/TCAD.2002.804378","volume":"21","author":"R Karri","year":"2002","unstructured":"Karri, R., Wu, K., Mishra, P., Kim, Y.: Concurrent error detection schemes for fault-based side-channel cryptanalysis of symmetric block ciphers. IEEE Trans. CAD Integr. Circuits Syst. 21(12), 1509\u20131517 (2002). doi: 10.1109\/TCAD.2002.804378","journal-title":"IEEE Trans. CAD Integr. Circuits Syst."},{"key":"138_CR26","doi-asserted-by":"crossref","unstructured":"Kocher, P., Jaffe, J., Jun, B.: Differential power analysis. In: Conference on Advances in Cryptology, CRYPTO \u201999, pp. 388\u2013397. Springer-Verlag, London, UK (1999). http:\/\/portal.acm.org\/citation.cfm?id=646764.703989","DOI":"10.1007\/3-540-48405-1_25"},{"key":"138_CR27","doi-asserted-by":"crossref","unstructured":"Leveugle, R., Ammari, A., Maingot, V., Teyssou, E., Moitrel, P., Mourtel, C., Feyt, N., Rigaud, J.B., Tria, A.: Experimental evaluation of protections against laser-induced faults and consequences on fault modeling. In: Design, Automation Test in Europe Conference Exhibition, 2007. DATE \u201907, pp. 1\u20136 (2007)","DOI":"10.1109\/DATE.2007.364528"},{"key":"138_CR28","doi-asserted-by":"crossref","unstructured":"Malkin, T., Standaert, F.X., Yung, M.: A comparative cost\/security analysis of fa countermeasures. In: Workshop FDTC 2006. Lecture Notes in Computer Science, vol. 4236, pp. 159\u2013172. Springer, Berlin Heidelberg (2006)","DOI":"10.1007\/11889700_15"},{"key":"138_CR29","doi-asserted-by":"crossref","unstructured":"Mayer-Sommer, R.: Smartly analyzing the simplicity and the power of simple power analysis on smartcards. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2000, CHES \u201900, pp. 78\u201392. Springer-Verlag, London, UK (2000). http:\/\/portal.acm.org\/citation.cfm?id=648253.752540","DOI":"10.1007\/3-540-44499-8_6"},{"key":"138_CR30","doi-asserted-by":"crossref","unstructured":"Meola, M.L., Walker, D.: Faulty logic: Reasoning about fault tolerant programs. In: Programming Languages and Systems, ESOP 2010, Lecture Notes in Computer Science, vol. 6012, pp. 468\u2013487. Springer (2010)","DOI":"10.1007\/978-3-642-11957-6_25"},{"key":"138_CR31","doi-asserted-by":"crossref","unstructured":"Moradi, A., Shalmani, M., Salmasizadeh, M.: A generalized method of DFA against AES cryptosystem. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2006, pp. 91\u2013100 (2006)","DOI":"10.1007\/11894063_8"},{"key":"138_CR32","doi-asserted-by":"crossref","unstructured":"Mukhopadhyay, D.: An improved fault based attack of the advanced encryption standard. In: AFRICACRYPT 2009. Lecture Notes in Computer Science, vol. 5580, pp. 421\u2013434. Springer, Berlin Heidelberg (2009)","DOI":"10.1007\/978-3-642-02384-2_26"},{"key":"138_CR33","unstructured":"NIST: FIPS 197. National Institute of Standards and Technology, November pp. 1\u201351 (2001). http:\/\/csrc.nist.gov\/publications\/fips\/fips197\/fips-197.pdf"},{"key":"138_CR34","unstructured":"P.\u00a0Dusart, G.L., Vivolo, O.: Differential fault analysis on a.e.s. Cryptology ePrint Archive, Report 2003\/010 (2003). http:\/\/eprint.iacr.org\/"},{"key":"138_CR35","doi-asserted-by":"crossref","unstructured":"Piret, G., Quisquater, J.J.: A differential fault attack technique against spn structures, with application to the aes and khazad. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2003. Lecture Notes in Computer Science, vol. 2779, pp. 77\u201388. Springer, Berlin Heidelberg (2003)","DOI":"10.1007\/978-3-540-45238-6_7"},{"issue":"3","key":"138_CR36","doi-asserted-by":"publisher","first-page":"173","DOI":"10.1007\/s13389-013-0065-3","volume":"4","author":"P Rauzy","year":"2014","unstructured":"Rauzy, P., Guilley, S.: A formal proof of countermeasures against fault injection attacks on CRT-RSA. J. Cryptogr. Eng. 4(3), 173\u2013185 (2014). doi: 10.1007\/s13389-013-0065-3","journal-title":"J. Cryptogr. Eng."},{"key":"138_CR37","unstructured":"Rivain, M., Prouff, E.: Provably secure higher-order masking of aes. Cryptology ePrint Archive, Report 2010\/441 (2010). http:\/\/eprint.iacr.org\/"},{"key":"138_CR38","unstructured":"Tunstall, M., Whitnall, C., Oswald, E.: Masking tables - an underestimated security risk. In: Fast Software Encryption\u2014FSE 2013, 425\u2013444 (2013)"},{"key":"138_CR39","unstructured":"Tupsamudre, H., Bisht, S., Mukhopadhyay, D.: Destroying fault invariant with randomization - A countermeasure for AES againstDFA. In: Cryptographic Hardware and Embedded Systems\u2014CHES 2014, 93\u2013111 (2014)"},{"key":"138_CR40","unstructured":"Why3. http:\/\/why3.lri.fr\/"}],"container-title":["Journal of Cryptographic Engineering"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s13389-016-0138-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s13389-016-0138-1\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s13389-016-0138-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,9,15]],"date-time":"2019-09-15T00:07:28Z","timestamp":1568506048000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s13389-016-0138-1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016,10,28]]},"references-count":40,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2017,4]]}},"alternative-id":["138"],"URL":"https:\/\/doi.org\/10.1007\/s13389-016-0138-1","relation":{},"ISSN":["2190-8508","2190-8516"],"issn-type":[{"value":"2190-8508","type":"print"},{"value":"2190-8516","type":"electronic"}],"subject":[],"published":{"date-parts":[[2016,10,28]]}}}