| 摘要: |
| 侧信道分析(side-channel analysis, SCA)是一种通过获取软硬件运行时产生的泄露信息来破解密钥的分析技术. 其中, 建模类侧信道分析已被证明是攻击密码系统的一种强有力的手段. 近年来, 随着人工智能技术的发展, 其在建模类侧信道分析中的应用极大丰富了攻击手段, 并显著提升了攻击效率. 在该类方法的建模阶段, 攻击者通过访问克隆设备以收集与目标设备相关的泄露信息, 但在实际场景中, 克隆设备与目标设备之间往往存在差异. 然而, 大部分的研究工作仅考虑使用一种设备进行支持和验证, 这导致所建立的方法依赖于特定环境, 其应用范围有限, 可移植性差. 为了解决该问题, 重点聚焦于复杂应用场景下面临的攻击可移植性问题, 深入探讨在不同参数设置、算法实现、设备差异等多方面所引发的挑战, 并对近年来国际上学者提出的解决方案和分析结果进行系统梳理. 在此基础上, 进一步总结当前侧信道分析可移植性研究中存在的不足, 并展望未来的发展方向. |
| 关键词: 侧信道分析 (SCA) 可移植性 迁移学习 深度学习 物理安全 |
| DOI:10.13328/j.cnki.jos.007454 |
| 分类号:TP309 |
| 基金项目:国家自然科学基金 (U2336209); 广东省科技计划 (2022A1515140090) |
|
| Review of Portability Research on Side-channel Analysis in Complex Application Scenarios |
|
LI Di, ZHANG Yu-Peng, TANG Yu-Feng, GONG Zheng
|
|
School of Computer Science, South China Normal University, Guangzhou 510631, China
|
| Abstract: |
| Side-channel analysis (SCA) is a technique that extracts leaked information generated during hardware or software execution to compromise cryptographic keys. Among various approaches, profiling side-channel analysis has been proven to be a powerful method for attacking cryptographic systems. In recent years, the integration of artificial intelligence technology into profiling side-channel analysis has significantly enriched attack strategies and improved efficiency. During the profiling phase, leakage information related to the target device is typically collected by accessing a cloned device. However, practical scenarios often involve discrepancies between the cloned and target devices. Most existing studies rely on a single device for training and validation, resulting in methods that are highly environment-dependent, with limited applicability and poor portability. This study focuses on the portability challenges encountered in complex application scenarios. Challenges arising from variations in parameter settings, algorithm implementations, and hardware differences are analyzed in detail. Solutions and analysis results proposed in recent years are systematically reviewed. Based on this survey, current limitations in portability research on side-channel analysis are summarized, and potential future directions are discussed. |
| Key words: side-channel analysis (SCA) portability transfer learning deep learning physical security |