{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,9]],"date-time":"2026-06-09T15:15:04Z","timestamp":1781018104297,"version":"3.54.1"},"reference-count":37,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018,4]]},"DOI":"10.1109\/hst.2018.8383894","type":"proceedings-article","created":{"date-parts":[[2018,6,14]],"date-time":"2018-06-14T19:36:11Z","timestamp":1529004971000},"page":"81-88","source":"Crossref","is-referenced-by-count":47,"title":["Horizontal side-channel vulnerabilities of post-quantum key exchange protocols"],"prefix":"10.1109","author":[{"given":"Aydin","family":"Aysu","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Youssef","family":"Tobah","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohit","family":"Tiwari","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Andreas","family":"Gerstlauer","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Michael","family":"Orshansky","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-28632-5_2"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ISCAS.2014.6865754"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1201\/CHDISMTHAPP"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45238-6_22"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/2899007.2899011"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-33481-8_8"},{"key":"ref35","first-page":"530","author":"g\u00fcneysu","year":"2012","journal-title":"Practical Lattice-Based Cryptography A Signature Scheme for Embedded Systems"},{"key":"ref34","first-page":"61","author":"mangard","year":"2007","journal-title":"Statistical Characteristics of Power Traces"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/AsianHOST.2016.7835555"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1007\/s13389-016-0126-5"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-29360-8_15"},{"key":"ref13","article-title":"Practical CCA2-secure and masked Ring-LWE implementation","author":"oder","year":"2016","journal-title":"Cryptology ePrint Archive Report 2016\/1109"},{"key":"ref14","first-page":"128","author":"atici","year":"2008","journal-title":"Power analysis on NTRU implementations for RFIDs First results"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1587\/transfun.E93.A.153"},{"key":"ref16","doi-asserted-by":"crossref","first-page":"1094","DOI":"10.3837\/tiis.2013.05.009","article-title":"Power analysis attacks and countermeasures on NTRU-based wireless body area networks","volume":"7","author":"wang","year":"2013","journal-title":"KSII Transactions on Internet and Information Systems (TIIS)"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.micpro.2013.04.008"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66787-4_25"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-49890-4_9"},{"key":"ref28","first-page":"368","author":"inci","year":"2016","journal-title":"Cache Attacks Enable Bulk Key Recovery on the Cloud"},{"key":"ref4","article-title":"Post-quantum cryptography","year":"0","journal-title":"National Institute of Standards and Technology"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382230"},{"key":"ref3","article-title":"NSA suite B cryptography","year":"0","journal-title":"National Security Agency"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/1568318.1568324"},{"key":"ref5","author":"braithwaite","year":"0","journal-title":"Experimenting with post-quantum cryptography"},{"key":"ref29","first-page":"13","article-title":"Template attacks","author":"chari","year":"2002","journal-title":"International Workshop on Cryptographic Hardware and Embedded Systems"},{"key":"ref8","first-page":"162","article-title":"Lattice-based encryption over standard lattices in hardware","author":"howe","year":"2016","journal-title":"Proc 53rd Annu Design Autom Conf"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-13190-5_1"},{"key":"ref2","first-page":"317","article-title":"Shor's discrete logarithm quantum algorithm for elliptic curves","volume":"3","author":"proos","year":"2003","journal-title":"Quantum Info Comput"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ISICIR.2016.7829689"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1994.365700"},{"key":"ref20","article-title":"Side-channel attacks on BLISS lattice-based signatures-exploiting branch tracing against strongswan and electromagnetic emanations in microcontrollers","author":"espitau","year":"2017","journal-title":"Cryptology ePrint Archive Report 2017\/505"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-17650-0_5"},{"key":"ref21","first-page":"789","article-title":"Differential power analysis","author":"kocher","year":"1999","journal-title":"Adv Cryptology"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978425"},{"key":"ref23","first-page":"553","author":"bauer","year":"2014","journal-title":"Horizontal Collision Correlation Attack on Elliptic Curves"},{"key":"ref26","first-page":"599","author":"balasch","year":"2015","journal-title":"DPA Bitslicing and Masking at 1 GHz"},{"key":"ref25","first-page":"327","article-title":"Post-quantum key exchange-a new hone","author":"alkim","year":"2016","journal-title":"USENIX Security Symposium"}],"event":{"name":"2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","location":"Washington, DC","start":{"date-parts":[[2018,4,30]]},"end":{"date-parts":[[2018,5,4]]}},"container-title":["2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8369415\/8383882\/08383894.pdf?arnumber=8383894","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2018,7,9]],"date-time":"2018-07-09T19:14:41Z","timestamp":1531163681000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8383894\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,4]]},"references-count":37,"URL":"https:\/\/doi.org\/10.1109\/hst.2018.8383894","relation":{},"subject":[],"published":{"date-parts":[[2018,4]]}}}