EDBT 2026 Demo / reviewers in the wild / expert
Alexandre Berzati
dblp:66/6816
· DBLP profile ↗
8ranked-venue papers
4as first author
2since 2021 · last 2023
—ORCID · none
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 7 · 4 first-author · 2 since 2021Systems, architecture and hardware · 1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2023 | Fault Attacks Sensitivity of Public Parameters in the Dilithium Verification
Andersson Calle Viera, Alexandre Berzati, Karine Heydemann |
CARDIS | 2 |
| 2021 | Hardware Implementations of Pairings at Updated Security Levels
Arthur Lavice, Nadia El Mrabet, Alexandre Berzati, Jean-Baptiste Rigaud, Julien Proy |
CARDIS | 3 |
| 2019 | A First ISA-Level Characterization of EM Pulse Effects on Superscalar Microarchitectures: A Secure Software PerspectiveabstractIn the area of physical attacks, system-on-chip (SoC) designs have not received the same level of attention as simpler micro-controllers. We try to model the behavior of secure software running on a superscalar out-of-order microprocessor typical of more complex SoC, in the presence of electromagnetic (EM) pulses. We first show that it is possible, in a black box approach, to corrupt the loop iteration count of both original and hardened versions of two sensitive loops. We propose a characterization methodology based on very simple codes, to understand and classify the fault effects at the level of the instruction set architecture (ISA). The resulting classification includes the well established instruction skip and register corruption models, as well as new effects specific to more complex processors, such as operand substitution, multiple correlated register corruptions, advanced control-flow hijacking, and combinations of all reported effects. This diversity and complexity of effects can lead to powerful attacks. The proposed methodology and fault classification at ISA level is a first step towards a more complete characterization. It is also a tool supporting the designers of software and hardware countermeasures. Julien Proy, Karine Heydemann, Alexandre Berzati, Fabien Majéric, Albert Cohen 0001 |
ARES | 3 |
| 2017 | Compiler-Assisted Loop Hardening Against Fault AttacksabstractSecure elements widely used in smartphones, digital consumer electronics, and payment systems are subject to fault attacks. To thwart such attacks, software protections are manually inserted requiring experts and time. The explosion of the Internet of Things (IoT) in home, business, and public spaces motivates the hardening of a wider class of applications and the need to offer security solutions to non-experts. This article addresses the automated protection of loops at compilation time, covering the widest range of control- and data-flow patterns, in both shape and complexity. The security property we consider is that a sensitive loop must always perform the expected number of iterations; otherwise, an attack must be reported. We propose a generic compile-time loop hardening scheme based on the duplication of termination conditions and of the computations involved in the evaluation of such conditions. We also investigate how to preserve the security property along the compilation flow while enabling aggressive optimizations. We implemented this algorithm in LLVM 4.0 at the Intermediate Representation (IR) level in the backend. On average, the compiler automatically hardens 95% of the sensitive loops of typical security benchmarks, and 98% of these loops are shown to be robust to simulated faults. Performance and code size overhead remain quite affordable, at 12.5% and 14%, respectively. Julien Proy, Karine Heydemann, Alexandre Berzati, Albert Cohen 0001 |
ACM Trans. Archit. Code Optim. | 3 |
| 2010 | Public Key Perturbation of Randomized RSA Implementations
Alexandre Berzati, Cécile Canovas, Louis Goubin |
CHES | 1 |
| 2009 | Fault Attacks on RSA Public Keys: Left-To-Right Implementations Are Also Vulnerable
Alexandre Berzati, Cécile Canovas, Jean-Guillaume Dumas, Louis Goubin |
CT-RSA | 1 |
| 2008 | Perturbating RSA Public Keys: An Improved Attack
Alexandre Berzati, Cécile Canovas, Louis Goubin |
CHES | 1 |
| 2008 | In(security) Against Fault Injection Attacks for CRT-RSA ImplementationsabstractSince its invention in 1977, the celebrated RSA primitive has remained unbroken from a mathematical point of view, and has been widely used to build provably secure encryption or signature protocols. However, the introduction in 1996 of a new model of attacks - based on fault injections - by Boneh, deMillo and Lipton suggests the use of specific countermeasures to obtain a secure RSA implementation. In the special case of CRT implementations, many protections have been proposed and most of them have been proven insufficient to ensure resistance against DFA. In the present paper, we show that the Ciet-Joye method proposed in FDTC'2005 [10] does not completely prevent fault injection attacks: for a CRT-RSA with a 1024-bit modulus, we show that 13 faulty signatures are enough to recover the secret exponent with a probability greater than 50%, which can be improved to 99% with 83 faulty signatures. Alexandre Berzati, Cécile Canovas, Louis Goubin |
FDTC | 1 |