Side-Channel Analysis for the Authentication Protocols of CDMA Cellular Networks.
Saved in:
| Title: | Side-Channel Analysis for the Authentication Protocols of CDMA Cellular Networks. |
|---|---|
| Authors: | Zhang, Chi1 (AUTHOR) zcsjtu@sjtu.edu.cn, Liu, Jun-Rong1,2 (AUTHOR) liujunrong@zxcsec.com, Gu, Da-Wu1 (AUTHOR) dwgu@sjtu.edu.cn, Wang, Wei-Jia3 (AUTHOR) weijia.wang@uclouvain.be, Lu, Xiang-Jun1 (AUTHOR) luxiangjun@sjtu.edu.cn, Guo, Zheng1,2 (AUTHOR) guozheng@zxcsec.com, Lu, Hai-Ning1,4 (AUTHOR) haining.lu@viewsources.com |
| Source: | Journal of Computer Science & Technology (10009000). Sep2019, Vol. 34 Issue 5, p1079-1095. 17p. |
| Subjects: | Near field communication, Code division multiple access, Computer network protocols, SIM cards |
| Abstract: | Time-division multiple access (TDMA) and code-division multiple access (CDMA) are two technologies used in digital cellular networks. The authentication protocols of TDMA networks have been proven to be vulnerable to side-channel analysis (SCA), giving rise to a series of powerful SCA-based attacks against unprotected subscriber identity module (SIM) cards. CDMA networks have two authentication protocols, cellular authentication and voice encryption (CAVE) based authentication protocol and authentication and key agreement (AKA) based authentication protocol, which are used in different phases of the networks. However, there has been no SCA attack for these two protocols so far. In this paper, in order to figure out if the authentication protocols of CDMA networks are sufficiently secure against SCA, we investigate the two existing protocols and their cryptographic algorithms. We find the side-channel weaknesses of the two protocols when they are implemented on embedded systems. Based on these weaknesses, we propose specific attack strategies to recover their authentication keys for the two protocols, respectively. We verify our strategies on an 8-bit microcontroller and a real-world SIM card, showing that the authentication keys can be fully recovered within a few minutes with a limited number of power measurements. The successful experiments demonstrate the correctness and the effectiveness of our proposed strategies and prove that the unprotected implementations of the authentication protocols of CDMA networks cannot resist SCA. [ABSTRACT FROM AUTHOR] |
| Copyright of Journal of Computer Science & Technology (10009000) is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract. (Copyright applies to all Abstracts.) | |
| Database: | Engineering Source |
| FullText | Text: Availability: 0 |
|---|---|
| Header | DbId: egs DbLabel: Engineering Source An: 138935585 AccessLevel: 6 PubType: Academic Journal PubTypeId: academicJournal PreciseRelevancyScore: 0 |
| IllustrationInfo | |
| Items | – Name: Title Label: Title Group: Ti Data: Side-Channel Analysis for the Authentication Protocols of CDMA Cellular Networks. – Name: Author Label: Authors Group: Au Data: <searchLink fieldCode="AR" term="%22Zhang%2C+Chi%22">Zhang, Chi</searchLink><relatesTo>1</relatesTo> (AUTHOR)<i> zcsjtu@sjtu.edu.cn</i><br /><searchLink fieldCode="AR" term="%22Liu%2C+Jun-Rong%22">Liu, Jun-Rong</searchLink><relatesTo>1,2</relatesTo> (AUTHOR)<i> liujunrong@zxcsec.com</i><br /><searchLink fieldCode="AR" term="%22Gu%2C+Da-Wu%22">Gu, Da-Wu</searchLink><relatesTo>1</relatesTo> (AUTHOR)<i> dwgu@sjtu.edu.cn</i><br /><searchLink fieldCode="AR" term="%22Wang%2C+Wei-Jia%22">Wang, Wei-Jia</searchLink><relatesTo>3</relatesTo> (AUTHOR)<i> weijia.wang@uclouvain.be</i><br /><searchLink fieldCode="AR" term="%22Lu%2C+Xiang-Jun%22">Lu, Xiang-Jun</searchLink><relatesTo>1</relatesTo> (AUTHOR)<i> luxiangjun@sjtu.edu.cn</i><br /><searchLink fieldCode="AR" term="%22Guo%2C+Zheng%22">Guo, Zheng</searchLink><relatesTo>1,2</relatesTo> (AUTHOR)<i> guozheng@zxcsec.com</i><br /><searchLink fieldCode="AR" term="%22Lu%2C+Hai-Ning%22">Lu, Hai-Ning</searchLink><relatesTo>1,4</relatesTo> (AUTHOR)<i> haining.lu@viewsources.com</i> – Name: TitleSource Label: Source Group: Src Data: <searchLink fieldCode="JN" term="%22Journal+of+Computer+Science+%26+Technology+%2810009000%29%22">Journal of Computer Science & Technology (10009000)</searchLink>. Sep2019, Vol. 34 Issue 5, p1079-1095. 17p. – Name: Subject Label: Subjects Group: Su Data: <searchLink fieldCode="DE" term="%22Near+field+communication%22">Near field communication</searchLink><br /><searchLink fieldCode="DE" term="%22Code+division+multiple+access%22">Code division multiple access</searchLink><br /><searchLink fieldCode="DE" term="%22Computer+network+protocols%22">Computer network protocols</searchLink><br /><searchLink fieldCode="DE" term="%22SIM+cards%22">SIM cards</searchLink> – Name: Abstract Label: Abstract Group: Ab Data: Time-division multiple access (TDMA) and code-division multiple access (CDMA) are two technologies used in digital cellular networks. The authentication protocols of TDMA networks have been proven to be vulnerable to side-channel analysis (SCA), giving rise to a series of powerful SCA-based attacks against unprotected subscriber identity module (SIM) cards. CDMA networks have two authentication protocols, cellular authentication and voice encryption (CAVE) based authentication protocol and authentication and key agreement (AKA) based authentication protocol, which are used in different phases of the networks. However, there has been no SCA attack for these two protocols so far. In this paper, in order to figure out if the authentication protocols of CDMA networks are sufficiently secure against SCA, we investigate the two existing protocols and their cryptographic algorithms. We find the side-channel weaknesses of the two protocols when they are implemented on embedded systems. Based on these weaknesses, we propose specific attack strategies to recover their authentication keys for the two protocols, respectively. We verify our strategies on an 8-bit microcontroller and a real-world SIM card, showing that the authentication keys can be fully recovered within a few minutes with a limited number of power measurements. The successful experiments demonstrate the correctness and the effectiveness of our proposed strategies and prove that the unprotected implementations of the authentication protocols of CDMA networks cannot resist SCA. [ABSTRACT FROM AUTHOR] – Name: AbstractSuppliedCopyright Label: Group: Ab Data: <i>Copyright of Journal of Computer Science & Technology (10009000) is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract.</i> (Copyright applies to all Abstracts.) |
| PLink | https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=egs&AN=138935585 |
| RecordInfo | BibRecord: BibEntity: Identifiers: – Type: doi Value: 10.1007/s11390-019-1961-5 Languages: – Code: eng Text: English PhysicalDescription: Pagination: PageCount: 17 StartPage: 1079 Subjects: – SubjectFull: Near field communication Type: general – SubjectFull: Code division multiple access Type: general – SubjectFull: Computer network protocols Type: general – SubjectFull: SIM cards Type: general Titles: – TitleFull: Side-Channel Analysis for the Authentication Protocols of CDMA Cellular Networks. Type: main BibRelationships: HasContributorRelationships: – PersonEntity: Name: NameFull: Zhang, Chi – PersonEntity: Name: NameFull: Liu, Jun-Rong – PersonEntity: Name: NameFull: Gu, Da-Wu – PersonEntity: Name: NameFull: Wang, Wei-Jia – PersonEntity: Name: NameFull: Lu, Xiang-Jun – PersonEntity: Name: NameFull: Guo, Zheng – PersonEntity: Name: NameFull: Lu, Hai-Ning IsPartOfRelationships: – BibEntity: Dates: – D: 01 M: 09 Text: Sep2019 Type: published Y: 2019 Identifiers: – Type: issn-print Value: 10009000 Numbering: – Type: volume Value: 34 – Type: issue Value: 5 Titles: – TitleFull: Journal of Computer Science & Technology (10009000) Type: main |
| ResultId | 1 |