Side-Channel Analysis for the Re-Keying Protocol of Bluetooth Low Energy

被引:0
|
作者
Pei Cao
Chi Zhang
Xiang-Jun Lu
Hai-Ning Lu
Da-Wu Gu
机构
[1] Shanghai Jiao Tong University,School of Electronic Information and Electrical Engineering
关键词
Bluetooth low energy (BLE/BTLE); long term key; re-keying protocol; side-channel analysis;
D O I
暂无
中图分类号
学科分类号
摘要
In the era of the Internet of Things, Bluetooth low energy (BLE/BTLE) plays an important role as a well-known wireless communication technology. While the security and privacy of BLE have been analyzed and fixed several times, the threat of side-channel attacks to BLE devices is still not well understood. In this work, we highlight a side-channel threat to the re-keying protocol of BLE. This protocol uses a fixed long term key for generating session keys, and the leakage of the long term key could render the encryption of all the following (and previous) connections useless. Our attack exploits the side-channel leakage of the re-keying protocol when it is implemented on embedded devices. In particular, we present successful correlation electromagnetic analysis and deep learning based profiled analysis that recover long term keys of BLE devices. We evaluate our attack on an ARM Cortex-M4 processor (Nordic Semiconductor nRF52840) running Nimble, a popular open-source BLE stack. Our results demonstrate that the long term key can be recovered within only a small amount of electromagnetic traces. Further, we summarize the features and limitations of our attack, and suggest a range of countermeasures to prevent it.
引用
收藏
页码:1132 / 1148
页数:16
相关论文
共 50 条
  • [31] On Side-Channel Analysis of Memristive Cryptographic Circuits
    Chen, Li-Wei
    Chen, Ziang
    Schindler, Werner
    Zhao, Xianyue
    Schmidt, Heidemarie
    Du, Nan
    Polian, Ilia
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 463 - 476
  • [32] DIFFuzz: Differential Fuzzing for Side-Channel Analysis
    Nilizadeh, Shirin
    Noller, Yannic
    Pasareanu, Corina S.
    2019 IEEE/ACM 41ST INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING (ICSE 2019), 2019, : 176 - 187
  • [33] Abacus: A Tool for Precise Side-channel Analysis
    Bao, Qinkun
    Wang, Zihao
    Larus, James R.
    Wu, Dinghao
    2021 IEEE/ACM 43RD INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING: COMPANION PROCEEDINGS (ICSE-COMPANION 2021), 2021, : 238 - 239
  • [34] Photonic Side-Channel Analysis of Arbiter PUFs
    Tajik, Shahin
    Nedospasov, Dmitry
    Seifert, Jean-Pierre
    Dietz, Enrico
    Frohmann, Sven
    Dittrich, Helmar
    Huebers, Heinz-Wilhelm
    Helfmeier, Clemens
    Boit, Christian
    JOURNAL OF CRYPTOLOGY, 2017, 30 (02) : 550 - 571
  • [35] Shuffling Based Side-Channel Countermeasure for Energy Harvester
    Nozaki, Yusuke
    Yoshikawa, Masaya
    2018 IEEE 7TH GLOBAL CONFERENCE ON CONSUMER ELECTRONICS (GCCE 2018), 2018, : 714 - 715
  • [36] Photonic Side-Channel Analysis of Arbiter PUFs
    Shahin Tajik
    Enrico Dietz
    Sven Frohmann
    Helmar Dittrich
    Dmitry Nedospasov
    Clemens Helfmeier
    Jean-Pierre Seifert
    Christian Boit
    Heinz-Wilhelm Hübers
    Journal of Cryptology, 2017, 30 : 550 - 571
  • [37] Side-Channel Analysis of PUFs and Fuzzy Extractors
    Merli, Dominik
    Schuster, Dieter
    Stumpf, Frederic
    Sigl, Georg
    TRUST AND TRUSTWORTHY COMPUTING, TRUST 2011, 2011, 6740 : 33 - 47
  • [38] Algebraic Side-Channel Analysis in the Presence of Errors
    Oren, Yossef
    Kirschbaum, Mario
    Popp, Thomas
    Wool, Avishai
    CRYPTOGRAPHIC HARDWARE AND EMBEDDED SYSTEMS - CHES 2010, 2010, 6225 : 428 - +
  • [39] A Protocol-Channel-Based Indoor Positioning Performance Study for Bluetooth Low Energy
    de Blasio, Gabriel
    Quesada-Arencibia, Alexis
    Garcia, Carmelo R.
    Rodriguez-Rodriguez, Jose Carlos
    Moreno-Diaz, Roberto, Jr.
    IEEE ACCESS, 2018, 6 : 33440 - 33450
  • [40] Side-Channel Analysis of MAC-Keccak
    Taha, Mostafa
    Schaumont, Patrick
    2013 IEEE INTERNATIONAL SYMPOSIUM ON HARDWARE-ORIENTED SECURITY AND TRUST (HOST), 2013, : 125 - 130