Print Email Facebook Twitter Lightweight and Side-channel Secure 4 × 4 S-Boxes from Cellular Automata Rules Title Lightweight and Side-channel Secure 4 × 4 S-Boxes from Cellular Automata Rules Author Ghoshal, Ashrujit (Indian Institute of Technology Kharagpur) Sadhukhan, Rajat (Indian Institute of Technology Kharagpur) Patranabis, Sikhar (Indian Institute of Technology Kharagpur) Datta, Nilanjan (Indian Institute of Technology Kharagpur) Picek, S. (TU Delft Cyber Security) Mukhopadhyay, D (Indian Institute of Technology Kharagpur) Date 2018 Abstract This work focuses on side-channel resilient design strategies for symmetrickey cryptographic primitives targeting lightweight applications. In light of NIST’s lightweight cryptography project, design choices for block ciphers must consider not only security against traditional cryptanalysis, but also side-channel security, while adhering to low area and power requirements. In this paper, we explore design strategies for substitution-permutation network (SPN)-based block ciphers that make them amenable to low-cost threshold implementations (TI) - a provably secure strategy against side-channel attacks. The core building blocks for our strategy are cryptographically optimal 4×4 S-Boxes, implemented via repeated iterations of simple cellular automata (CA) rules. We present highly optimized TI circuits for such S-Boxes, that consume nearly 40% less area and power as compared to popular lightweight S-Boxes such as PRESENT and GIFT. We validate our claims via implementation results on ASIC using 180nm technology. We also present a comparison of TI circuits for two popular lightweight linear diffusion layer choices - bit permutations and MixColumns using almost-maximum-distance-separable (almost-MDS) matrices. We finally illustrate design paradigms that combine the aforementioned TI circuits for S-Boxes and diffusion layers to obtain fully side-channel secure SPN block cipher implementations with low area and power requirements. Subject LightweightBlock CiphersSide-channelsThreshold ImplementationCellular AutomataOptimal S-Box To reference this document use: http://resolver.tudelft.nl/uuid:22b8a8b4-66c6-476d-ada3-dee0dd13b0c1 DOI 10.13154/tosc.v2018.i3.311-334 ISSN 2519-173X Source IACR Transactions on Symmetric Cryptology, 2018 (3), 311-334 Part of collection Institutional Repository Document type journal article Rights © 2018 Ashrujit Ghoshal, Rajat Sadhukhan, Sikhar Patranabis, Nilanjan Datta, S. Picek, D Mukhopadhyay Files PDF document.pdf 1.18 MB Close viewer /islandora/object/uuid:22b8a8b4-66c6-476d-ada3-dee0dd13b0c1/datastream/OBJ/view