{"id":"https://openalex.org/W3205521370","doi":"https://doi.org/10.1145/3476799","title":"Horizontal Side-Channel Vulnerabilities of Post-Quantum Key Exchange and Encapsulation Protocols","display_name":"Horizontal Side-Channel Vulnerabilities of Post-Quantum Key Exchange and Encapsulation Protocols","publication_year":2021,"publication_date":"2021-10-18","ids":{"openalex":"https://openalex.org/W3205521370","doi":"https://doi.org/10.1145/3476799","mag":"3205521370"},"language":"en","primary_location":{"id":"doi:10.1145/3476799","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3476799","pdf_url":null,"source":{"id":"https://openalex.org/S136160450","display_name":"ACM Transactions on Embedded Computing Systems","issn_l":"1539-9087","issn":["1539-9087","1558-3465"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Embedded Computing Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5053339444","display_name":"Furkan Ayd\u0131n","orcid":"https://orcid.org/0000-0001-7162-4935"},"institutions":[{"id":"https://openalex.org/I137902535","display_name":"North Carolina State University","ror":"https://ror.org/04tj63d06","country_code":"US","type":"education","lineage":["https://openalex.org/I137902535"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Furkan Aydin","raw_affiliation_strings":["North Carolina State University, Raleigh, NC, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"North Carolina State University, Raleigh, NC, USA","institution_ids":["https://openalex.org/I137902535"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5062027964","display_name":"Ayd\u0131n Aysu","orcid":"https://orcid.org/0000-0002-5530-8710"},"institutions":[{"id":"https://openalex.org/I137902535","display_name":"North Carolina State University","ror":"https://ror.org/04tj63d06","country_code":"US","type":"education","lineage":["https://openalex.org/I137902535"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Aydin Aysu","raw_affiliation_strings":["North Carolina State University, Raleigh, NC, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"North Carolina State University, Raleigh, NC, USA","institution_ids":["https://openalex.org/I137902535"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071185644","display_name":"Mohit Tiwari","orcid":"https://orcid.org/0000-0003-1836-3451"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mohit Tiwari","raw_affiliation_strings":["The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046024226","display_name":"Andreas Gerstlauer","orcid":"https://orcid.org/0000-0002-6748-2054"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Andreas Gerstlauer","raw_affiliation_strings":["The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5090899796","display_name":"Michael Orshansky","orcid":"https://orcid.org/0000-0002-6223-4748"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Michael Orshansky","raw_affiliation_strings":["The University of Texas at Austin, Austin, TX, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The University of Texas at Austin, Austin, TX, USA","institution_ids":["https://openalex.org/I86519309"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.8191,"has_fulltext":false,"cited_by_count":22,"citation_normalized_percentile":{"value":0.88032636,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":97,"max":99},"biblio":{"volume":"20","issue":"6","first_page":"1","last_page":"22"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8389756679534912},{"id":"https://openalex.org/keywords/cryptosystem","display_name":"Cryptosystem","score":0.6595473289489746},{"id":"https://openalex.org/keywords/key-exchange","display_name":"Key exchange","score":0.652772068977356},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.5290274620056152},{"id":"https://openalex.org/keywords/power-analysis","display_name":"Power analysis","score":0.5000829696655273},{"id":"https://openalex.org/keywords/key-encapsulation","display_name":"Key encapsulation","score":0.4982903003692627},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.4868547320365906},{"id":"https://openalex.org/keywords/cryptanalysis","display_name":"Cryptanalysis","score":0.46445417404174805},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.4479140043258667},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4171260893344879},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.35700273513793945},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.3010196387767792}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8389756679534912},{"id":"https://openalex.org/C6295992","wikidata":"https://www.wikidata.org/wiki/Q976521","display_name":"Cryptosystem","level":3,"score":0.6595473289489746},{"id":"https://openalex.org/C99674996","wikidata":"https://www.wikidata.org/wiki/Q1414155","display_name":"Key exchange","level":4,"score":0.652772068977356},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.5290274620056152},{"id":"https://openalex.org/C71743495","wikidata":"https://www.wikidata.org/wiki/Q2845210","display_name":"Power analysis","level":3,"score":0.5000829696655273},{"id":"https://openalex.org/C35181327","wikidata":"https://www.wikidata.org/wiki/Q6398156","display_name":"Key encapsulation","level":5,"score":0.4982903003692627},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.4868547320365906},{"id":"https://openalex.org/C181149355","wikidata":"https://www.wikidata.org/wiki/Q897511","display_name":"Cryptanalysis","level":3,"score":0.46445417404174805},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.4479140043258667},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4171260893344879},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.35700273513793945},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.3010196387767792}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3476799","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3476799","pdf_url":null,"source":{"id":"https://openalex.org/S136160450","display_name":"ACM Transactions on Embedded Computing Systems","issn_l":"1539-9087","issn":["1539-9087","1558-3465"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Embedded Computing Systems","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7099999785423279,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306087","display_name":"Semiconductor Research Corporation","ror":"https://ror.org/047z4n946"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":56,"referenced_works":["https://openalex.org/W1532398039","https://openalex.org/W1548961092","https://openalex.org/W1562542037","https://openalex.org/W1580045882","https://openalex.org/W1968681519","https://openalex.org/W1992291252","https://openalex.org/W2007466965","https://openalex.org/W2040236464","https://openalex.org/W2127059139","https://openalex.org/W2146675862","https://openalex.org/W2149045748","https://openalex.org/W2168676717","https://openalex.org/W2284081067","https://openalex.org/W2293214346","https://openalex.org/W2294868896","https://openalex.org/W2298330307","https://openalex.org/W2394993236","https://openalex.org/W2404255539","https://openalex.org/W2484027757","https://openalex.org/W2514893051","https://openalex.org/W2552357046","https://openalex.org/W2582849828","https://openalex.org/W2740580365","https://openalex.org/W2765784230","https://openalex.org/W2808296455","https://openalex.org/W2895332594","https://openalex.org/W2898218073","https://openalex.org/W2898504156","https://openalex.org/W2898787455","https://openalex.org/W2913922107","https://openalex.org/W2972972326","https://openalex.org/W2979160478","https://openalex.org/W2982169647","https://openalex.org/W2995609318","https://openalex.org/W2995910517","https://openalex.org/W3012228761","https://openalex.org/W3014064789","https://openalex.org/W3015791201","https://openalex.org/W3036016265","https://openalex.org/W3046851570","https://openalex.org/W3065439923","https://openalex.org/W3082776805","https://openalex.org/W3093786062","https://openalex.org/W3097673332","https://openalex.org/W3097833434","https://openalex.org/W3101479050","https://openalex.org/W3102745403","https://openalex.org/W3109316197","https://openalex.org/W3186101057","https://openalex.org/W3204480019","https://openalex.org/W3212418903","https://openalex.org/W4214921774","https://openalex.org/W4235846187","https://openalex.org/W4238796697","https://openalex.org/W4240339612","https://openalex.org/W4242970760"],"related_works":["https://openalex.org/W5280335","https://openalex.org/W4384807855","https://openalex.org/W2948977325","https://openalex.org/W2164725015","https://openalex.org/W4323926098","https://openalex.org/W2022533428","https://openalex.org/W182679101","https://openalex.org/W2013165531","https://openalex.org/W2425598453","https://openalex.org/W2782264121"],"abstract_inverted_index":{"Key":[0],"exchange":[1,77],"protocols":[2,23,141,220],"and":[3,31,78,86,124,184,187,201,206],"key":[4,76,169],"encapsulation":[5,79],"mechanisms":[6],"establish":[7],"secret":[8,133,235],"keys":[9,236],"to":[10,102,120,125,166,193],"communicate":[11],"digital":[12],"information":[13],"confidentially":[14],"over":[15,243],"public":[16],"channels.":[17],"Lattice-based":[18],"cryptography":[19],"variants":[20],"of":[21,89,98,140,146,174,210,218],"these":[22,219],"are":[24,191],"promising":[25],"alternatives":[26],"given":[27],"their":[28,41,127],"quantum-cryptanalysis":[29],"resistance":[30],"implementation":[32],"efficiency.":[33],"Although":[34],"lattice":[35,94,147],"cryptosystems":[36],"can":[37,233],"be":[38],"mathematically":[39],"secure,":[40],"implementations":[42,88],"have":[43],"shown":[44],"side-channel":[45,72],"vulnerabilities.":[46],"But":[47],"such":[48],"attacks":[49,64,73],"largely":[50],"presume":[51],"collecting":[52],"multiple":[53],"measurements":[54],"under":[55],"a":[56,104,115,153,162,238],"fixed":[57],"key,":[58],"leaving":[59],"the":[60,121,132,138,144,168,172,208,211,230],"more":[61],"dangerous":[62],"single-trace":[63,70],"unexplored.":[65],"This":[66],"article":[67],"demonstrates":[68],"successful":[69],"power":[71,240],"on":[74,110,221],"lattice-based":[75],"protocols.":[80],"Our":[81],"attack":[82,106,155,213,232],"targets":[83],"both":[84,198],"hardware":[85,200],"software":[87,204],"matrix":[90],"multiplications":[91],"used":[92],"in":[93],"cryptosystems.":[95],"The":[96],"crux":[97],"our":[99,150,194],"idea":[100],"is":[101],"apply":[103],"horizontal":[105],"that":[107,137,189,229],"makes":[108],"hypotheses":[109],"several":[111],"intermediate":[112,175],"values":[113],"within":[114],"single":[116,239],"execution":[117],"all":[118],"relating":[119],"same":[122],"secret,":[123],"combine":[126],"correlations":[128],"for":[129],"accurately":[130],"estimating":[131],"key.":[134],"We":[135,179,196,227],"illustrate":[136],"design":[139],"combined":[142],"with":[143,224,242],"nature":[145],"arithmetic":[148],"enables":[149],"attack.":[151,195],"Since":[152],"straightforward":[154],"suffers":[156],"from":[157,237],"false":[158],"positives,":[159],"we":[160],"demonstrate":[161],"novel":[163],"extend-and-prune":[164],"procedure":[165],"recover":[167],"by":[170,214],"following":[171],"sequence":[173],"updates":[176],"during":[177],"multiplication.":[178],"analyzed":[180],"two":[181],"protocols,":[182],"Frodo":[183],"FrodoKEM":[185],",":[186],"reveal":[188],"they":[190],"vulnerable":[192],"implement":[197],"stand-alone":[199],"RISC-V":[202],"based":[203],"realizations":[205],"test":[207],"effectiveness":[209],"proposed":[212,231],"using":[215],"concrete":[216],"parameters":[217],"physical":[222],"platforms":[223],"real":[225],"measurements.":[226],"show":[228],"estimate":[234],"measurement":[241],"99%":[244],"success":[245],"rate.":[246]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":7},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":4}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
