Paper 2024/1875
mUOV: Masking the Unbalanced Oil and Vinegar Digital Sigital Signature Scheme at First- and Higher-Order
Abstract
The National Institute for Standards and Technology (NIST) initiated a standardization procedure for additional digital signatures and recently announced round-2 candidates for the PQ additional digital signature schemes. The multivariate digital signature scheme Unbalanced Oil and Vinegar (UOV) is one of the oldest post-quantum schemes and has been selected by NIST for Round 2. Although UOV is mathematically secure, several side-channel attacks (SCA) have been shown on the UOV or UOV-based digital signatures. We carefully analyze the sensitivity of variables and operations in the UOV scheme from the side-channel perspective and show which require protection. To mitigate implementation-based SCA, we integrate a provably secure arbitrary-order masking technique with the key generation and signature generation algorithms of UOV. We propose efficient techniques for the masked dot-product and matrix-vector operations, which are both critical in multivariate DS schemes. We also implemented and demonstrate the practical feasibility of our masking algorithms for UOV-Ip on the ARM Cortex-M4 microcontroller. Our first-order masked UOV implementations have $2.7\times$ and $3.6\times$ performance overhead compared to the unmasked scheme for key generation and signature generation algorithms. Our first-order masked UOV implementations use $1.3\times$ and $1.9\times$ stack memory rather than the unmasked version of the key generation and signature generation algorithms.
Metadata
- Available format(s)
- Category
- Implementation
- Publication info
- Preprint.
- Keywords
- Post-Quantum CryptographyMaskingMultivariate-based Digital SignaturesUOV
- Contact author(s)
-
suparna kundu @ esat kuleuven be
quinten norga @ esat kuleuven be
uttamkumarojha1729 @ gmail com
anindyag @ cse iitk ac in
angshuman @ cse iitk ac in
ingrid verbauwhede @ esat kuleuven be - History
- 2024-11-18: approved
- 2024-11-16: received
- See all versions
- Short URL
- https://ia.cr/2024/1875
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2024/1875, author = {Suparna Kundu and Quinten Norga and Uttam Kumar Ojha and Anindya Ganguly and Angshuman Karmakar and Ingrid Verbauwhede}, title = {{mUOV}: Masking the Unbalanced Oil and Vinegar Digital Sigital Signature Scheme at First- and Higher-Order}, howpublished = {Cryptology {ePrint} Archive, Paper 2024/1875}, year = {2024}, url = {https://eprint.iacr.org/2024/1875} }