<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>Comments on: DPA is annoying (again?)</title>
	<atom:link href="http://javacard.vetilles.com/2009/09/11/dpa-is-annoying-again/feed/" rel="self" type="application/rss+xml" />
	<link>http://javacard.vetilles.com/2009/09/11/dpa-is-annoying-again/</link>
	<description>A weblog on Java Card, security, and other things personal</description>
	<lastBuildDate>Thu, 18 May 2017 07:26:32 +0000</lastBuildDate>
		<sy:updatePeriod>hourly</sy:updatePeriod>
		<sy:updateFrequency>1</sy:updateFrequency>
	<generator>https://wordpress.org/?v=4.0.32</generator>
	<item>
		<title>By: Sylvain GUILLEY</title>
		<link>http://javacard.vetilles.com/2009/09/11/dpa-is-annoying-again/#comment-4097</link>
		<dc:creator><![CDATA[Sylvain GUILLEY]]></dc:creator>
		<pubDate>Mon, 25 Jan 2010 20:44:10 +0000</pubDate>
		<guid isPermaLink="false">http://javacard.vetilles.com/?p=422#comment-4097</guid>
		<description><![CDATA[Hi Eric,

Given the interest raised by this contest, a second edition has been launched. This year, the goal is to still to evaluate the strength of attacks against an unprotected implementation of a block cipher (AES). Of course, most commercial smartcards embed advanced countermeasures that make such side-channel attacks difficult. Thus, we view this 2nd contest more as a way to learn how to compare attacks ; for this purpose, we will rate them according to metrics such as partial/global success rates or guessing entropy, and also according to the computational power of the attacker. We hope this will improve our understanding of the real threats on secure hardware...

More information there: http://www.dpacontest.org/v2/]]></description>
		<content:encoded><![CDATA[<p>Hi Eric,</p>
<p>Given the interest raised by this contest, a second edition has been launched. This year, the goal is to still to evaluate the strength of attacks against an unprotected implementation of a block cipher (AES). Of course, most commercial smartcards embed advanced countermeasures that make such side-channel attacks difficult. Thus, we view this 2nd contest more as a way to learn how to compare attacks ; for this purpose, we will rate them according to metrics such as partial/global success rates or guessing entropy, and also according to the computational power of the attacker. We hope this will improve our understanding of the real threats on secure hardware&#8230;</p>
<p>More information there: <a href="http://www.dpacontest.org/v2/" rel="nofollow" class="liexternal">http://www.dpacontest.org/v2/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Christophe Clavier</title>
		<link>http://javacard.vetilles.com/2009/09/11/dpa-is-annoying-again/#comment-3712</link>
		<dc:creator><![CDATA[Christophe Clavier]]></dc:creator>
		<pubDate>Fri, 11 Sep 2009 17:49:27 +0000</pubDate>
		<guid isPermaLink="false">http://javacard.vetilles.com/?p=422#comment-3712</guid>
		<description><![CDATA[Eric,

Thanks for posting about the results of this first DPA contest. I agree with the most parts of you text. I would like to give a small comment though.

This is exact that the partipants to the DPA contest knew the secret key, but this was only for verification purpose. It is not true that their methods have been tailored for that key value. At least this was not the case for the different methods I proposed. I am quite confident that my methods would have given very similar figures whatever the key.]]></description>
		<content:encoded><![CDATA[<p>Eric,</p>
<p>Thanks for posting about the results of this first DPA contest. I agree with the most parts of you text. I would like to give a small comment though.</p>
<p>This is exact that the partipants to the DPA contest knew the secret key, but this was only for verification purpose. It is not true that their methods have been tailored for that key value. At least this was not the case for the different methods I proposed. I am quite confident that my methods would have given very similar figures whatever the key.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
