Home Publications Technical Don’t Get Knocked Off the Curve: An Overview of Fault Injection Attacks on Elliptic Curve Cryptosystems

Don’t Get Knocked Off the Curve: An Overview of Fault Injection Attacks on Elliptic Curve Cryptosystems

Author: Nicole Fern

Elliptic curve cryptography (ECC) is ubiquitous and used to secure everything from internet traffic to embedded devices.  Fault injection attacks are a powerful class of attack technique capable of recovering secrets by introducing errors during the implementation of a cryptographic algorithm.

This guide provides an overview of fault injection attacks which target Elliptic Curve Digital Signature Algorithm (ECDSA) and Elliptic Curve Diffie-Hellman (ECDH).  We will illustrate what is possible to achieve with the current attack techniques, provide the prerequisites and assumptions for the attacks along with examples and references to real-world FI attacks on ECC.

Read the full publication here

Recent publications

PCI MPoC: Build It or Use It?

PCI MPoC: Build It or Use It?

Should you build your own MPoC Solution, or partner with a third-party MPoC provider? This white paper provides a detailed analysis to guide payment companies through this complex decision-making process.

read more
Share This