a new CRT-RSA Algorithm Secure Against Bellcore", CC'03

@MISC{Otto_anew,

author = {Martin Otto and Jean-pierre Seifert and Secure Mobile Solutions},

title = {a new CRT-RSA Algorithm Secure Against Bellcore”, CC’03},

year = {}

}

In this paper we describe a new algorithm to prevent fault attacks on RSA signature algorithms using the Chinese Re-mainder Theorem (CRT-RSA). This variant of the RSA sig-nature algorithm is widely used on smartcards. Smartcards on the other hand are particularly susceptible to fault at-tacks like the one described in [7]. Recent results have shown that fault attacks are practical and easy to accomplish ([21], [17]). Therefore, they establish a practical need for fault at-tack protected CRT-RSA schemes. Starting from a careful derivation and classication of fault models, we describe a new variant of the CRT-RSA algorithm. For the most realis-tic fault model described, we rigorously analyze the success probability of an adversary. Thereby, we prove that our new algorithm is secure against the Bellcore attack. Only once in the analysis do we need to refer to a plausible number theoretic assumption.

