Bibliographic Details
| Title: |
Side-Channel Analysis for the Authentication Protocols of CDMA Cellular Networks. |
| Authors: |
Zhang, Chi1 (AUTHOR) zcsjtu@sjtu.edu.cn, Liu, Jun-Rong1,2 (AUTHOR) liujunrong@zxcsec.com, Gu, Da-Wu1 (AUTHOR) dwgu@sjtu.edu.cn, Wang, Wei-Jia3 (AUTHOR) weijia.wang@uclouvain.be, Lu, Xiang-Jun1 (AUTHOR) luxiangjun@sjtu.edu.cn, Guo, Zheng1,2 (AUTHOR) guozheng@zxcsec.com, Lu, Hai-Ning1,4 (AUTHOR) haining.lu@viewsources.com |
| Source: |
Journal of Computer Science & Technology (10009000). Sep2019, Vol. 34 Issue 5, p1079-1095. 17p. |
| Subjects: |
Near field communication, Code division multiple access, Computer network protocols, SIM cards |
| Abstract: |
Time-division multiple access (TDMA) and code-division multiple access (CDMA) are two technologies used in digital cellular networks. The authentication protocols of TDMA networks have been proven to be vulnerable to side-channel analysis (SCA), giving rise to a series of powerful SCA-based attacks against unprotected subscriber identity module (SIM) cards. CDMA networks have two authentication protocols, cellular authentication and voice encryption (CAVE) based authentication protocol and authentication and key agreement (AKA) based authentication protocol, which are used in different phases of the networks. However, there has been no SCA attack for these two protocols so far. In this paper, in order to figure out if the authentication protocols of CDMA networks are sufficiently secure against SCA, we investigate the two existing protocols and their cryptographic algorithms. We find the side-channel weaknesses of the two protocols when they are implemented on embedded systems. Based on these weaknesses, we propose specific attack strategies to recover their authentication keys for the two protocols, respectively. We verify our strategies on an 8-bit microcontroller and a real-world SIM card, showing that the authentication keys can be fully recovered within a few minutes with a limited number of power measurements. The successful experiments demonstrate the correctness and the effectiveness of our proposed strategies and prove that the unprotected implementations of the authentication protocols of CDMA networks cannot resist SCA. [ABSTRACT FROM AUTHOR] |
|
Copyright of Journal of Computer Science & Technology (10009000) is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract. (Copyright applies to all Abstracts.) |
| Database: |
Engineering Source |