The SM4 algorithm is widely used to ensure the security of data transmission. The traditional chosen plaintext power attacks against SM4 usually need to analyze four rounds power traces in turn to recover the secret key. In this paper, we propose a new combined chosen plaintext power analysis, which combines the chosen plaintext power attack and the differential characteristics of the substitution box (S-box) in SM4. In our attack, only the second and fourth round S-box outputs of SM4 algorithm are used as attack points, and some sensitive fixed intermediate values are obtained by power analysis when inputting specific plaintext. Then the differential analysis of these sensitive intermediate values is carried out to calculate the difference between the input and output of the S-box, and the key can be recovered from the differential characteristics of S-box. Compared with the traditional chosen plaintext power analysis, which requires four rounds of analysis, our analysis reduces the number of attack rounds into two rounds, and adopts the nonlinear S-box with obvious leakage information as the attack intermediate value, which effectively improves the feasibility of attack. Finally, a practical attack experiment is carried out on a Field Programmable Gate Array (FPGA) based implementation of SM4 algorithm, and the results show that our method is feasible and effective for real experiments.
The article for the journal Recent Advances in Electrical and Electronic Engineering has been withdrawn on the request
of the authors due to some technical errors in the article.
Bentham Science apologizes to the readers of the journal for any inconvenience this may cause.
BENTHAM SCIENCE DISCLAIMER
It is a condition of publication that manuscripts submitted to this journal have not been published and will not be simultaneously
submitted or published elsewhere. Furthermore, any data, illustration, structure or table that has been published
elsewhere must be reported, and copyright permission for reproduction must be obtained. Plagiarism is strictly forbidden, and
by submitting the article for publication the authors agree that the publishers have the legal right to take appropriate action
against the authors, if plagiarism or fabricated information is discovered. By submitting a manuscript the authors agree that the
copyright of their article is transferred to the publishers if and when the article is accepted for publication.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.