{"id":"https://openalex.org/W4392753678","doi":"https://doi.org/10.46586/tches.v2024.i2.844-869","title":"Carry Your Fault: A Fault Propagation Attack on Side-Channel Protected LWE-based KEM","display_name":"Carry Your Fault: A Fault Propagation Attack on Side-Channel Protected LWE-based KEM","publication_year":2024,"publication_date":"2024-03-12","ids":{"openalex":"https://openalex.org/W4392753678","doi":"https://doi.org/10.46586/tches.v2024.i2.844-869"},"language":"en","primary_location":{"id":"doi:10.46586/tches.v2024.i2.844-869","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2024.i2.844-869","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/11449/10954","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://tches.iacr.org/index.php/TCHES/article/download/11449/10954","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5076712304","display_name":"Suparna Kundu","orcid":"https://orcid.org/0000-0003-4354-852X"},"institutions":[{"id":"https://openalex.org/I99464096","display_name":"KU Leuven","ror":"https://ror.org/05f950310","country_code":"BE","type":"education","lineage":["https://openalex.org/I99464096"]}],"countries":["BE"],"is_corresponding":true,"raw_author_name":"Suparna Kundu","raw_affiliation_strings":["COSIC, KU Leuven, Leuven, Belgium"],"affiliations":[{"raw_affiliation_string":"COSIC, KU Leuven, Leuven, Belgium","institution_ids":["https://openalex.org/I99464096"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5089810331","display_name":"Siddhartha Chowdhury","orcid":null},"institutions":[{"id":"https://openalex.org/I145894827","display_name":"Indian Institute of Technology Kharagpur","ror":"https://ror.org/03w5sq511","country_code":"IN","type":"education","lineage":["https://openalex.org/I145894827"]}],"countries":["IN"],"is_corresponding":false,"raw_author_name":"Siddhartha Chowdhury","raw_affiliation_strings":["Indian Institute of Technology Kharagpur, Kharagpur, India"],"affiliations":[{"raw_affiliation_string":"Indian Institute of Technology Kharagpur, Kharagpur, India","institution_ids":["https://openalex.org/I145894827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101432394","display_name":"Sayandeep Saha","orcid":"https://orcid.org/0000-0002-5535-1102"},"institutions":[{"id":"https://openalex.org/I95674353","display_name":"UCLouvain","ror":"https://ror.org/02495e989","country_code":"BE","type":"education","lineage":["https://openalex.org/I95674353"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Sayandeep Saha","raw_affiliation_strings":["Universit\u00e9 catholique de Louvain, Ottignies-Louvain-la-Neuve, Belgium"],"affiliations":[{"raw_affiliation_string":"Universit\u00e9 catholique de Louvain, Ottignies-Louvain-la-Neuve, Belgium","institution_ids":["https://openalex.org/I95674353"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5044163841","display_name":"Angshuman Karmakar","orcid":"https://orcid.org/0000-0003-2594-588X"},"institutions":[{"id":"https://openalex.org/I99464096","display_name":"KU Leuven","ror":"https://ror.org/05f950310","country_code":"BE","type":"education","lineage":["https://openalex.org/I99464096"]},{"id":"https://openalex.org/I94234084","display_name":"Indian Institute of Technology Kanpur","ror":"https://ror.org/05pjsgx75","country_code":"IN","type":"education","lineage":["https://openalex.org/I94234084"]}],"countries":["BE","IN"],"is_corresponding":false,"raw_author_name":"Angshuman Karmakar","raw_affiliation_strings":["COSIC, KU Leuven, Leuven, Belgium; Indian Institute of Technology Kanpur, Kanpur, India","Indian Institute of Technology Kanpur, Kanpur, India","COSIC, KU Leuven, Leuven, Belgium"],"affiliations":[{"raw_affiliation_string":"COSIC, KU Leuven, Leuven, Belgium; Indian Institute of Technology Kanpur, Kanpur, India","institution_ids":["https://openalex.org/I94234084"]},{"raw_affiliation_string":"Indian Institute of Technology Kanpur, Kanpur, India","institution_ids":["https://openalex.org/I94234084"]},{"raw_affiliation_string":"COSIC, KU Leuven, Leuven, Belgium","institution_ids":["https://openalex.org/I99464096"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078971402","display_name":"Debdeep Mukhopadhyay","orcid":"https://orcid.org/0000-0002-6499-8346"},"institutions":[{"id":"https://openalex.org/I145894827","display_name":"Indian Institute of Technology Kharagpur","ror":"https://ror.org/03w5sq511","country_code":"IN","type":"education","lineage":["https://openalex.org/I145894827"]}],"countries":["IN"],"is_corresponding":false,"raw_author_name":"Debdeep Mukhopadhyay","raw_affiliation_strings":["Indian Institute of Technology Kharagpur, Kharagpur, India"],"affiliations":[{"raw_affiliation_string":"Indian Institute of Technology Kharagpur, Kharagpur, India","institution_ids":["https://openalex.org/I145894827"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5082347771","display_name":"Ingrid Verbauwhede","orcid":"https://orcid.org/0000-0002-0879-076X"},"institutions":[{"id":"https://openalex.org/I99464096","display_name":"KU Leuven","ror":"https://ror.org/05f950310","country_code":"BE","type":"education","lineage":["https://openalex.org/I99464096"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Ingrid Verbauwhede","raw_affiliation_strings":["COSIC, KU Leuven, Leuven, Belgium"],"affiliations":[{"raw_affiliation_string":"COSIC, KU Leuven, Leuven, Belgium","institution_ids":["https://openalex.org/I99464096"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5076712304"],"corresponding_institution_ids":["https://openalex.org/I99464096"],"apc_list":null,"apc_paid":null,"fwci":3.485,"has_fulltext":true,"cited_by_count":17,"citation_normalized_percentile":{"value":0.9293571,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":100},"biblio":{"volume":"2024","issue":"2","first_page":"844","last_page":"869"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12495","display_name":"Electrostatic Discharge in Electronics","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12495","display_name":"Electrostatic Discharge in Electronics","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11005","display_name":"Radiation Effects in Electronics","score":0.9930999875068665,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9925000071525574,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.7506243586540222},{"id":"https://openalex.org/keywords/fault","display_name":"Fault (geology)","score":0.6637583374977112},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5013585090637207},{"id":"https://openalex.org/keywords/channel","display_name":"Channel (broadcasting)","score":0.4582492709159851},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.32514041662216187},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.29185760021209717},{"id":"https://openalex.org/keywords/geology","display_name":"Geology","score":0.2486863136291504},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.1298714280128479},{"id":"https://openalex.org/keywords/seismology","display_name":"Seismology","score":0.11903288960456848}],"concepts":[{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.7506243586540222},{"id":"https://openalex.org/C175551986","wikidata":"https://www.wikidata.org/wiki/Q47089","display_name":"Fault (geology)","level":2,"score":0.6637583374977112},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5013585090637207},{"id":"https://openalex.org/C127162648","wikidata":"https://www.wikidata.org/wiki/Q16858953","display_name":"Channel (broadcasting)","level":2,"score":0.4582492709159851},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.32514041662216187},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.29185760021209717},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.2486863136291504},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.1298714280128479},{"id":"https://openalex.org/C165205528","wikidata":"https://www.wikidata.org/wiki/Q83371","display_name":"Seismology","level":1,"score":0.11903288960456848}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.46586/tches.v2024.i2.844-869","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2024.i2.844-869","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/11449/10954","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},{"id":"pmh:oai:lirias2repo.kuleuven.be:20.500.12942/743059","is_oa":true,"landing_page_url":"https://lirias.kuleuven.be/handle/20.500.12942/743059","pdf_url":"https://lirias.kuleuven.be/retrieve/e1c4baee-96fc-494f-9377-66ba0cd1407a","source":{"id":"https://openalex.org/S4306401954","display_name":"Lirias (KU Leuven)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I99464096","host_organization_name":"KU Leuven","host_organization_lineage":["https://openalex.org/I99464096"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2024 (2), (844-869)","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:doaj.org/article:512e4f0757904f7383ace71b656f5a39","is_oa":true,"landing_page_url":"https://doaj.org/article/512e4f0757904f7383ace71b656f5a39","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Transactions on Cryptographic Hardware and Embedded Systems, Vol 2024, Iss 2 (2024)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.46586/tches.v2024.i2.844-869","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2024.i2.844-869","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/11449/10954","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.5400000214576721,"id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G4412498071","display_name":null,"funder_award_id":"India","funder_id":"https://openalex.org/F4320320719","funder_display_name":"Department of Science and Technology, Ministry of Science and Technology, India"},{"id":"https://openalex.org/G4435414571","display_name":null,"funder_award_id":"VR20192203","funder_id":"https://openalex.org/F4320327336","funder_display_name":"Vlaamse regering"},{"id":"https://openalex.org/G4947863528","display_name":null,"funder_award_id":"Grant","funder_id":"https://openalex.org/F4320321454","funder_display_name":"Belgian Federal Science Policy Office"}],"funders":[{"id":"https://openalex.org/F4320307102","display_name":"Intel Corporation","ror":"https://ror.org/01ek73717"},{"id":"https://openalex.org/F4320320719","display_name":"Department of Science and Technology, Ministry of Science and Technology, India","ror":"https://ror.org/0101xrq71"},{"id":"https://openalex.org/F4320321454","display_name":"Belgian Federal Science Policy Office","ror":"https://ror.org/01fapfv42"},{"id":"https://openalex.org/F4320321730","display_name":"Fonds Wetenschappelijk Onderzoek","ror":"https://ror.org/03qtxy027"},{"id":"https://openalex.org/F4320327336","display_name":"Vlaamse regering","ror":null}],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4392753678.pdf"},"referenced_works_count":39,"referenced_works":["https://openalex.org/W96383189","https://openalex.org/W1531508190","https://openalex.org/W1871739018","https://openalex.org/W1897761346","https://openalex.org/W2007466965","https://openalex.org/W2062272401","https://openalex.org/W2071825329","https://openalex.org/W2139750209","https://openalex.org/W2494078997","https://openalex.org/W2794903163","https://openalex.org/W2795291570","https://openalex.org/W2796314191","https://openalex.org/W2866028610","https://openalex.org/W2886903924","https://openalex.org/W2904830041","https://openalex.org/W2921053303","https://openalex.org/W2972972326","https://openalex.org/W2979160478","https://openalex.org/W2983229499","https://openalex.org/W3011642719","https://openalex.org/W3127016245","https://openalex.org/W3159559383","https://openalex.org/W3204480019","https://openalex.org/W3206090670","https://openalex.org/W3216383071","https://openalex.org/W4205974385","https://openalex.org/W4206155091","https://openalex.org/W4226075590","https://openalex.org/W4232836212","https://openalex.org/W4235846187","https://openalex.org/W4238796697","https://openalex.org/W4294326140","https://openalex.org/W4294698993","https://openalex.org/W4308198585","https://openalex.org/W4312920563","https://openalex.org/W4323320232","https://openalex.org/W4379115904","https://openalex.org/W4386328232","https://openalex.org/W4388857067"],"related_works":["https://openalex.org/W2748952813","https://openalex.org/W4323824501","https://openalex.org/W2355552010","https://openalex.org/W2136687465","https://openalex.org/W2390279801","https://openalex.org/W3016859066","https://openalex.org/W2358668433","https://openalex.org/W4200321003","https://openalex.org/W2376932109","https://openalex.org/W3196561854"],"abstract_inverted_index":{"Post-quantum":[0],"cryptographic":[1],"(PQC)":[2],"algorithms,":[3],"especially":[4],"those":[5],"based":[6],"on":[7,96,181,254],"the":[8,22,26,41,48,66,77,80,124,130,134,156,170,184,196,203,218,244],"learning":[9],"with":[10],"errors":[11],"(LWE)":[12],"problem,":[13],"have":[14],"been":[15],"subjected":[16],"to":[17,30,47,75,114,120,211,223],"several":[18],"physical":[19],"attacks":[20,27,36,166],"in":[21,84,138],"recent":[23],"past.":[24],"Although":[25],"broadly":[28],"belong":[29],"two":[31],"classes":[32],"\u2013":[33],"passive":[34],"side-channel":[35,97],"and":[37,140,187,237],"active":[38],"fault":[39,94,107],"attacks,":[40],"attack":[42,56,95,110,180,205,245],"strategies":[43],"vary":[44],"significantly":[45],"due":[46,113],"inherent":[49],"complexities":[50],"of":[51,68,79,101,133,155,158,167,198,243],"such":[52],"algorithms.":[53,70],"Exploring":[54],"further":[55],"surfaces":[57],"is,":[58],"therefore,":[59],"an":[60,115,207,247,255],"important":[61],"step":[62],"for":[63,174,192,246],"eventually":[64],"securing":[65],"deployment":[67],"these":[69],"Also,":[71],"it":[72,201],"is":[73,202],"mportant":[74],"test":[76],"robustness":[78],"already":[81],"proposed":[82],"countermeasures":[83],"this":[85,88,159],"regard.":[86],"In":[87],"work,":[89],"we":[90,162,233],"propose":[91],"a":[92,152],"new":[93],"secure":[98,250],"masked":[99],"implementation":[100,252],"LWE-based":[102],"key-encapsulation":[103],"mechanisms":[104],"(KEMs)":[105],"exploiting":[106,206,217],"propagation.":[108],"The":[109,179],"typically":[111],"originates":[112],"algorithmic":[116,208],"modification":[117],"widely":[118],"used":[119],"enable":[121],"masking,":[122],"namely":[123],"Arithmetic-to-Boolean":[125],"(A2B)":[126],"conversion.":[127],"We":[128],"exploit":[129],"data":[131],"dependency":[132],"adder":[135],"carry":[136],"chain":[137],"A2B":[139],"extract":[141],"sensitive":[142],"information,":[143],"albeit":[144],"masking":[145,213,222],"(of":[146],"arbitrary":[147],"order)":[148],"being":[149],"present.":[150],"As":[151],"practical":[153,241],"demonstration":[154],"exploitability":[157],"information":[160],"leakage,":[161],"show":[163],"key":[164,193],"recovery":[165],"Kyber,":[168],"although":[169],"leakage":[171],"also":[172],"exists":[173],"other":[175],"schemes":[176],"like":[177],"Saber.":[178],"Kyber":[182,251],"targets":[183],"decapsulation":[185],"module":[186],"utilizes":[188],"Belief":[189],"Propagation":[190],"(BP)":[191],"recovery.":[194],"To":[195],"best":[197],"our":[199],"knowledge,":[200],"first":[204],"component":[209],"introduced":[210,220],"ease":[212],"rather":[214],"than":[215],"only":[216],"randomness":[219],"by":[221,229],"obtain":[224],"desired":[225],"faults":[226],"(as":[227],"done":[228],"Delvaux":[230],"[Del22]).":[231],"Finally,":[232],"performed":[234],"both":[235],"simulated":[236],"electromagnetic":[238],"(EM)":[239],"fault-based":[240],"validation":[242],"open-source":[248],"first-order":[249],"running":[253],"STM32":[256],"platform.":[257]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":9},{"year":2024,"cited_by_count":4}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
