{"id":"https://openalex.org/W2808296455","doi":"https://doi.org/10.1109/hst.2018.8383894","title":"Horizontal side-channel vulnerabilities of post-quantum key exchange protocols","display_name":"Horizontal side-channel vulnerabilities of post-quantum key exchange protocols","publication_year":2018,"publication_date":"2018-04-01","ids":{"openalex":"https://openalex.org/W2808296455","doi":"https://doi.org/10.1109/hst.2018.8383894","mag":"2808296455"},"language":"en","primary_location":{"id":"doi:10.1109/hst.2018.8383894","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hst.2018.8383894","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5062027964","display_name":"Ayd\u0131n Aysu","orcid":"https://orcid.org/0000-0002-5530-8710"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Aydin Aysu","raw_affiliation_strings":["Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002014964","display_name":"Youssef Tobah","orcid":null},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Youssef Tobah","raw_affiliation_strings":["Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071185644","display_name":"Mohit Tiwari","orcid":"https://orcid.org/0000-0003-1836-3451"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mohit Tiwari","raw_affiliation_strings":["Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046024226","display_name":"Andreas Gerstlauer","orcid":"https://orcid.org/0000-0002-6748-2054"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Andreas Gerstlauer","raw_affiliation_strings":["Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5090899796","display_name":"Michael Orshansky","orcid":"https://orcid.org/0000-0002-6223-4748"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Michael Orshansky","raw_affiliation_strings":["Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":5.7445,"has_fulltext":false,"cited_by_count":53,"citation_normalized_percentile":{"value":0.96765473,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"81","last_page":"88"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.9980999827384949,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.6520034074783325},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.6330366134643555},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6075917482376099},{"id":"https://openalex.org/keywords/key-exchange","display_name":"Key exchange","score":0.5898326635360718},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5146999955177307},{"id":"https://openalex.org/keywords/channel","display_name":"Channel (broadcasting)","score":0.4656679630279541},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.44549232721328735},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.25245243310928345},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.17870059609413147},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.10146743059158325}],"concepts":[{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.6520034074783325},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.6330366134643555},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6075917482376099},{"id":"https://openalex.org/C99674996","wikidata":"https://www.wikidata.org/wiki/Q1414155","display_name":"Key exchange","level":4,"score":0.5898326635360718},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5146999955177307},{"id":"https://openalex.org/C127162648","wikidata":"https://www.wikidata.org/wiki/Q16858953","display_name":"Channel (broadcasting)","level":2,"score":0.4656679630279541},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.44549232721328735},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.25245243310928345},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.17870059609413147},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.10146743059158325}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/hst.2018.8383894","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hst.2018.8383894","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.7200000286102295,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320332180","display_name":"Defense Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":45,"referenced_works":["https://openalex.org/W147447691","https://openalex.org/W801821809","https://openalex.org/W1513904472","https://openalex.org/W1532398039","https://openalex.org/W1548961092","https://openalex.org/W1562542037","https://openalex.org/W1580045882","https://openalex.org/W1660562555","https://openalex.org/W1968681519","https://openalex.org/W1987951028","https://openalex.org/W1992291252","https://openalex.org/W2007466965","https://openalex.org/W2040236464","https://openalex.org/W2098290658","https://openalex.org/W2111978877","https://openalex.org/W2127059139","https://openalex.org/W2135205181","https://openalex.org/W2154909745","https://openalex.org/W2168676717","https://openalex.org/W2293214346","https://openalex.org/W2294868896","https://openalex.org/W2298330307","https://openalex.org/W2394993236","https://openalex.org/W2400908863","https://openalex.org/W2475466576","https://openalex.org/W2484027757","https://openalex.org/W2494078997","https://openalex.org/W2514893051","https://openalex.org/W2525440592","https://openalex.org/W2552357046","https://openalex.org/W2575714403","https://openalex.org/W2580625099","https://openalex.org/W2582849828","https://openalex.org/W2740580365","https://openalex.org/W2765784230","https://openalex.org/W2914572864","https://openalex.org/W2951078157","https://openalex.org/W4214921774","https://openalex.org/W4235846187","https://openalex.org/W6679743986","https://openalex.org/W6682554491","https://openalex.org/W6720990110","https://openalex.org/W6732806899","https://openalex.org/W6759495720","https://openalex.org/W6763538415"],"related_works":["https://openalex.org/W4323824501","https://openalex.org/W2355552010","https://openalex.org/W3016859066","https://openalex.org/W2136687465","https://openalex.org/W4200321003","https://openalex.org/W5280335","https://openalex.org/W3215861253","https://openalex.org/W2284062947","https://openalex.org/W4302812179","https://openalex.org/W2110524940"],"abstract_inverted_index":{"Key":[0],"exchange":[1,17,68,108,171,213],"protocols":[2,18,69,172,244],"establish":[3],"a":[4,20,91,133,144,184,193,246,253,270],"secret":[5,77,152,162,267],"key":[6,16,67,78,107,170,199,212,268],"to":[7,27,90,131,149,154,196,228],"confidentially":[8],"communicate":[9],"digital":[10,61],"information":[11],"over":[12,275],"public":[13],"channels.":[14],"Lattice-based":[15],"are":[19],"promising":[21],"alternative":[22],"for":[23,158],"next-generation":[24],"applications":[25],"due":[26],"their":[28,45,156,223],"quantum-cryptanalysis":[29],"resistance":[30],"and":[31,118,153,217,220],"implementation":[32,115],"efficiency.":[33],"While":[34],"these":[35,123,243],"constructions":[36],"rely":[37],"on":[38,66,105,139,245],"the":[39,55,76,84,87,99,113,150,161,167,175,198,202,233,236,260,265],"theory":[40],"of":[41,57,83,116,127,169,177,204,235,242],"quantum-resistant":[42],"lattice":[43,178],"problems,":[44],"practical":[46],"implementations":[47,224],"have":[48],"shown":[49],"vulnerability":[50],"against":[51],"side-channel":[52,88,103],"attacks":[53,65],"in":[54,122],"context":[56],"public-key":[58],"encryption":[59],"or":[60],"signatures.":[62],"Applying":[63],"such":[64],"is,":[70],"however,":[71],"much":[72],"more":[73],"challenging":[74],"because":[75],"changes":[79],"after":[80],"each":[81],"execution":[82,146],"protocol,":[85],"limiting":[86],"adversary":[89],"single":[92,145,271],"measurement.":[93],"In":[94],"this":[95],"paper,":[96],"we":[97,191,257],"demonstrate":[98,192],"first":[100],"successful":[101],"power":[102,272],"attack":[104,111,135,186,238,262],"lattice-based":[106],"protocols.":[109,124],"The":[110,125],"targets":[112],"hardware":[114],"matrix":[117],"polynomial":[119],"multiplication":[120],"used":[121],"crux":[126],"our":[128,181,229],"idea":[129],"is":[130],"apply":[132],"horizontal":[134],"that":[136,166,222,259],"makes":[137],"hypothesis":[138],"several":[140],"intermediate":[141,205],"values":[142],"within":[143],"all":[147],"relating":[148],"same":[151],"combine":[155],"correlations":[157],"accurately":[159],"estimating":[160],"key.":[163],"We":[164,209,231],"illustrate":[165],"design":[168],"combined":[173],"with":[174,249,274],"nature":[176],"arithmetic":[179],"enables":[180],"attack.":[182,230],"Since":[183],"straightforward":[185],"suffers":[187],"from":[188,269],"false":[189],"positives,":[190],"novel":[194],"procedure":[195],"recover":[197],"by":[200],"following":[201],"sequence":[203],"updates":[206],"during":[207],"multiplication.":[208],"analyzed":[210],"two":[211],"protocols,":[214],"NewHope":[215],"(USENIX'16)":[216],"Frodo":[218],"(CCS'16),":[219],"show":[221,258],"can":[225,263],"be":[226],"vulnerable":[227],"test":[232],"effectiveness":[234],"proposed":[237,261],"using":[239],"concrete":[240],"parameters":[241],"physical":[247],"platform":[248],"real":[250],"measurements.":[251],"On":[252],"SAKURA-G":[254],"FPGA":[255],"Board,":[256],"estimate":[264],"entire":[266],"measurement":[273],"99%":[276],"success":[277],"rate.":[278]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":8},{"year":2021,"cited_by_count":17},{"year":2020,"cited_by_count":12},{"year":2019,"cited_by_count":5}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
