Download Advances in Cryptology — EUROCRYPT ’97: International by Johan Borst, Lars R. Knudsen, Vincent Rijmen (auth.), Walter PDF

By Johan Borst, Lars R. Knudsen, Vincent Rijmen (auth.), Walter Fumy (eds.)

EUROCRYEVr '97, the fifteenth annual EUROCRYPT convention at the thought and alertness of cryptographic concepts, used to be geared up and subsidized by way of the overseas organization for Cryptologic learn (IACR). The IACR organizes sequence of overseas meetings every year, the EUROCRYPT assembly in Europe and CRWTO within the usa. The background of EUROCRYFT all started 15 years in the past in Germany with the Burg Feuerstein Workshop (see Springer LNCS 149 for the proceedings). It used to be because of Thomas Beth's initiative and tough paintings that the seventy six contributors from 14 international locations collected in Burg Feuerstein for the 1st open assembly in Europe dedicated to modem cryptography. i'm proud to were one of many individuals and nonetheless fondly take note my first encounters with a number of the celebrities in cryptography. when you consider that these early days the convention has been held in a distinct situation in Europe every year (Udine, Paris, Linz, Linkoping, Amsterdam, Davos, Houthalen, Aarhus, Brighton, Balantonfiired, Lofthus, Perugia, Saint-Malo, Saragossa) and it has loved a gentle development, because the moment convention (Udine, 1983) the IACR has been concerned, because the Paris assembly in 1984, the identify EUROCRYPT has been used. For its fifteenth anniversary, EUROCRYPT eventually again to Germany. The clinical software for EUROCRYPT '97 was once prepare via a 18-member application committee whch thought of 104 top of the range submissions. those court cases comprise the revised models of the 34 papers that have been permitted for presentation. additionally, there have been invited talks via Ernst Bovelander and through Gerhard Frey.

We have a new type of attack that also avoids directly factoring the modulus. We essentially use the fact that from time to time the hardware performing the computations may introduce errors. There are several models that may enable a malicious adversary t o collect and possibly cause faults. We give a high level description: Transient faults Consider a certification authority (CA) that is constantly generating certificates and sending them out t o clients. Due t o random transient hardware faults the CA might generate faulty certificates on rare occasions.

To test if T is correct Bob can verify that the relation T 2 = Vi mod N holds. Usually only one of the possible values for E will satisfy the relation. In such a case Bob correctly obtains the value of si. Even in the unlikely event that two values E , E' satisfy the relation, Bob can still break the system. If there are two possible values El E' generating two values T, T', T # T' satisfying the relation then clearly T 2= (TI)' mod N . If T # -T' mod N then Bob can already factor N . Suppose T = -T' mod N .

