IP Library Granted Patent US 7,073,072
Granted Patent B1
US 7,073,072 · App. 09/646,640 · Granted Jul 4, 2006

Method to prevent power dissipation attacks on a cryptographic algorithm by implementing a random transformation step

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,073,072
App. No.
09/646,640
Granted
Jul 4, 2006
Kind
B1
Abstract

A data protection method using a cryptographic algorithm comprising at least one execution cycle of repetitive operations for processing data elements (K 2 , R 1 ) so as to generate encrypted information (C). At least one step ( 120, 220 ) is provided for randomly modifying the execution of at least one operation from one cycle to another, or at least one of the data elements, so that the encrypted information is unchanged by this random modification.

Claims (5)

1. Data protection method for operating a microprocessor of a chip card to protect data elements contained in a memory of a chip card from discovery by analysis of electrical power consumption by the microprocessor, said method using a cryptographic algorithm for executing operations for processing said data elements so as to generate encrypted information, said method comprising:

operating the microprocessor to randomly modifying the order of execution of operations involving manipulations of data elements contained in the memory from one cycle to another, a cycle being a complete execution cycle of the algorithm or an intermediate cycle of a group of operations, said operations being operations whose order of execution relative to the others does not affect the result, thereby protecting said data elements contained in said memory and processed by a microprocessor in a chip card from discovery by analysis of the microprocessor's electric power consumption.

2. The protection method according to claim 1 , wherein the modified order of execution of operations include permutation of bits of a message block which is performed after the permutation of bits of a key, and vice versa.

3. The protection method according to claim 1 , wherein the modified order of execution of operations include a random determination of the processing of quartets.

4. The data protection method of claim 1 wherein said data elements are keys.

Assignments (2)
CHANGE OF NAME Recorded Aug 31, 2010
From: AXALTO SA
To: GEMALTO SA
Reel/Frame 024906/0851 →
CHANGE OF NAME Recorded Feb 7, 2006
From: SCHLUMBERGER SYSTEMES S.A.
To: AXALTO SA
Reel/Frame 017275/0173 →