{"id":"https://openalex.org/W4414017172","doi":"https://doi.org/10.46586/tches.v2025.i4.1010-1052","title":"Fault Attacks on ECC Signature Verification","display_name":"Fault Attacks on ECC Signature Verification","publication_year":2025,"publication_date":"2025-09-05","ids":{"openalex":"https://openalex.org/W4414017172","doi":"https://doi.org/10.46586/tches.v2025.i4.1010-1052"},"language":"en","primary_location":{"id":"doi:10.46586/tches.v2025.i4.1010-1052","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2025.i4.1010-1052","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/12436/12164","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://tches.iacr.org/index.php/TCHES/article/download/12436/12164","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5102771063","display_name":"Kevin Schneider","orcid":"https://orcid.org/0000-0003-4029-2995"},"institutions":[{"id":"https://openalex.org/I4210136922","display_name":"Fraunhofer Institute for Applied and Integrated Security","ror":"https://ror.org/03w0bbr97","country_code":"DE","type":"facility","lineage":["https://openalex.org/I4210136922","https://openalex.org/I4923324"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Kevin Schneider","raw_affiliation_strings":["Fraunhofer AISEC, Garching, Germany"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Fraunhofer AISEC, Garching, Germany","institution_ids":["https://openalex.org/I4210136922"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071980614","display_name":"Lukas Auer","orcid":"https://orcid.org/0000-0001-8967-6063"},"institutions":[{"id":"https://openalex.org/I4210136922","display_name":"Fraunhofer Institute for Applied and Integrated Security","ror":"https://ror.org/03w0bbr97","country_code":"DE","type":"facility","lineage":["https://openalex.org/I4210136922","https://openalex.org/I4923324"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Lukas Auer","raw_affiliation_strings":["Fraunhofer AISEC, Garching, Germany; Technical University of Munich, Munich, Germany"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Fraunhofer AISEC, Garching, Germany; Technical University of Munich, Munich, Germany","institution_ids":["https://openalex.org/I4210136922"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5053056145","display_name":"Alexander Wagner","orcid":"https://orcid.org/0000-0003-2853-3063"},"institutions":[{"id":"https://openalex.org/I4210136922","display_name":"Fraunhofer Institute for Applied and Integrated Security","ror":"https://ror.org/03w0bbr97","country_code":"DE","type":"facility","lineage":["https://openalex.org/I4210136922","https://openalex.org/I4923324"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Alexander Wagner","raw_affiliation_strings":["Fraunhofer AISEC, Garching, Germany; Technical University of Munich, Munich, Germany"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Fraunhofer AISEC, Garching, Germany; Technical University of Munich, Munich, Germany","institution_ids":["https://openalex.org/I4210136922"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I4210136922"],"apc_list":null,"apc_paid":null,"fwci":3.1718,"has_fulltext":true,"cited_by_count":2,"citation_normalized_percentile":{"value":0.92018256,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":98},"biblio":{"volume":"2025","issue":"4","first_page":"1010","last_page":"1052"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11032","display_name":"VLSI and Analog Circuit Testing","score":0.995199978351593,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11032","display_name":"VLSI and Analog Circuit Testing","score":0.995199978351593,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9911999702453613,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/signature","display_name":"Signature (topology)","score":0.7812772989273071},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6062635183334351},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4701932370662689},{"id":"https://openalex.org/keywords/fault","display_name":"Fault (geology)","score":0.45962655544281006},{"id":"https://openalex.org/keywords/digital-signature","display_name":"Digital signature","score":0.4451889097690582},{"id":"https://openalex.org/keywords/geology","display_name":"Geology","score":0.12405902147293091},{"id":"https://openalex.org/keywords/seismology","display_name":"Seismology","score":0.09975218772888184},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.09620669484138489},{"id":"https://openalex.org/keywords/hash-function","display_name":"Hash function","score":0.05586281418800354}],"concepts":[{"id":"https://openalex.org/C2779696439","wikidata":"https://www.wikidata.org/wiki/Q7512811","display_name":"Signature (topology)","level":2,"score":0.7812772989273071},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6062635183334351},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4701932370662689},{"id":"https://openalex.org/C175551986","wikidata":"https://www.wikidata.org/wiki/Q47089","display_name":"Fault (geology)","level":2,"score":0.45962655544281006},{"id":"https://openalex.org/C118463975","wikidata":"https://www.wikidata.org/wiki/Q220849","display_name":"Digital signature","level":3,"score":0.4451889097690582},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.12405902147293091},{"id":"https://openalex.org/C165205528","wikidata":"https://www.wikidata.org/wiki/Q83371","display_name":"Seismology","level":1,"score":0.09975218772888184},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.09620669484138489},{"id":"https://openalex.org/C99138194","wikidata":"https://www.wikidata.org/wiki/Q183427","display_name":"Hash function","level":2,"score":0.05586281418800354},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.46586/tches.v2025.i4.1010-1052","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2025.i4.1010-1052","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/12436/12164","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:762ae2581318462d9826e0d0c25f9d71","is_oa":true,"landing_page_url":"https://doaj.org/article/762ae2581318462d9826e0d0c25f9d71","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Transactions on Cryptographic Hardware and Embedded Systems, Vol 2025, Iss 4 (2025)","raw_type":"article"},{"id":"pmh:oai:publica.fraunhofer.de:publica/497024","is_oa":true,"landing_page_url":"https://publica.fraunhofer.de/handle/publica/497024","pdf_url":null,"source":{"id":"https://openalex.org/S4306400318","display_name":"Fraunhofer-Publica (Fraunhofer-Gesellschaft)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4923324","host_organization_name":"Fraunhofer-Gesellschaft","host_organization_lineage":["https://openalex.org/I4923324"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"journal article"}],"best_oa_location":{"id":"doi:10.46586/tches.v2025.i4.1010-1052","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2025.i4.1010-1052","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/12436/12164","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320331012","display_name":"Bayerische Staatsministerium f\u00fcr Wirtschaft, Landesentwicklung und Energie","ror":null}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4414017172.pdf","grobid_xml":"https://content.openalex.org/works/W4414017172.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2149234266","https://openalex.org/W2390942931","https://openalex.org/W1932157736","https://openalex.org/W1601957798","https://openalex.org/W2125461068","https://openalex.org/W3093940215"],"abstract_inverted_index":{"Signature":[0],"verification":[1,54,180],"operations":[2,55,124],"used":[3,112],"in":[4,83,95,108,113,140],"secure":[5,146],"boot":[6,147],"or":[7],"firmware":[8],"updates":[9],"are":[10,19],"the":[11,49,63,109,114,138,164,173,176],"foundation":[12],"of":[13,51,65,175],"trusted":[14],"devices.":[15],"ECC-based":[16,52,69],"signature":[17,30,53,70],"schemes":[18],"preferred":[20],"for":[21,216],"these":[22,156,196],"applications":[23],"due":[24],"to":[25,39,92,121,189,212],"their":[26,33],"smaller":[27],"key":[28],"and":[29,76,87,97,101,149,178,197,203],"sizes.":[31],"Despite":[32],"widespread":[34],"use,":[35],"we":[36,60,142,200],"would":[37],"like":[38],"highlight":[40],"that":[41,47,81],"there":[42],"is":[43,187],"no":[44],"research":[45,215],"available":[46],"analyzes":[48],"resilience":[50],"against":[56],"fault":[57,66,152],"attacks.":[58,78],"Therefore,":[59],"thoroughly":[61],"investigate":[62],"feasibility":[64],"attacks":[67,171],"on":[68,125,172],"verification.":[71],"We":[72,79,168],"cover":[73],"both":[74],"theoretical":[75],"implementation-specific":[77],"demonstrate":[80],"faults":[82],"elliptic":[84],"curve":[85],"points":[86],"parameters":[88],"allow":[89],"an":[90,119],"adversary":[91,120],"forge":[93],"signatures":[94],"ECGDSA":[96],"ECSDSA,":[98],"while":[99],"ECDSA":[100,177],"EdDSA":[102,179],"remain":[103],"resilient.":[104],"The":[105],"weakness":[106],"lies":[107],"Weierstra\u00df":[110],"curves":[111,128],"affected":[115],"schemes.":[116],"This":[117],"allows":[118],"perform":[122],"cryptographic":[123,166,219],"much":[126],"weaker":[127],"by":[129],"corrupting":[130],"at":[131],"least":[132],"a":[133,183,209],"single":[134,184],"bit.":[135],"To":[136,194],"assess":[137],"severity":[139],"practice,":[141],"evaluate":[143],"two":[144],"open-source":[145],"implementations\u2014MCUboot":[148],"wolfBoot\u2014that":[150],"use":[151],"injection":[153],"hardening.":[154],"Interestingly,":[155],"examples":[157],"do":[158],"not":[159],"employ":[160],"any":[161],"hardening":[162],"within":[163],"underlying":[165],"libraries.":[167],"discovered":[169],"several":[170],"implementation":[174],"algorithms.":[181],"Here,":[182],"instruction":[185],"skip":[186],"sufficient":[188],"accept":[190],"trivially":[191],"forged":[192],"signatures.":[193],"improve":[195],"future":[198],"implementations,":[199],"propose":[201],"effective":[202],"efficient":[204],"countermeasures.":[205],"Our":[206],"work":[207],"fills":[208],"critical":[210],"gap":[211],"motivate":[213],"further":[214],"more":[217],"resilient":[218],"implementations.":[220]},"counts_by_year":[{"year":2026,"cited_by_count":2}],"updated_date":"2026-06-26T08:34:08.712188","created_date":"2025-10-10T00:00:00"}
