Side-Channel Analysis for the Re-Keying Protocol of Bluetooth Low Energy

被引:0
|
作者
Pei Cao
Chi Zhang
Xiang-Jun Lu
Hai-Ning Lu
Da-Wu Gu
机构
[1] Shanghai Jiao Tong University,School of Electronic Information and Electrical Engineering
关键词
Bluetooth low energy (BLE/BTLE); long term key; re-keying protocol; side-channel analysis;
D O I
暂无
中图分类号
学科分类号
摘要
In the era of the Internet of Things, Bluetooth low energy (BLE/BTLE) plays an important role as a well-known wireless communication technology. While the security and privacy of BLE have been analyzed and fixed several times, the threat of side-channel attacks to BLE devices is still not well understood. In this work, we highlight a side-channel threat to the re-keying protocol of BLE. This protocol uses a fixed long term key for generating session keys, and the leakage of the long term key could render the encryption of all the following (and previous) connections useless. Our attack exploits the side-channel leakage of the re-keying protocol when it is implemented on embedded devices. In particular, we present successful correlation electromagnetic analysis and deep learning based profiled analysis that recover long term keys of BLE devices. We evaluate our attack on an ARM Cortex-M4 processor (Nordic Semiconductor nRF52840) running Nimble, a popular open-source BLE stack. Our results demonstrate that the long term key can be recovered within only a small amount of electromagnetic traces. Further, we summarize the features and limitations of our attack, and suggest a range of countermeasures to prevent it.
引用
收藏
页码:1132 / 1148
页数:16
相关论文
共 50 条
  • [41] On the Bright Side of Darkness: Side-Channel Based Authentication Protocol Against Relay Attacks
    Dabosville, Guillaume
    Maghrebi, Houssem
    Lhuillery, Alexis
    Le, Thanh-Ha
    Bringer, Julien
    2019 22ND EUROMICRO CONFERENCE ON DIGITAL SYSTEM DESIGN (DSD), 2019, : 214 - 221
  • [42] Predicting the Channel Access of Bluetooth Low Energy
    Karoliny, Julian
    Blazek, Thomas
    Springer, Andreas
    Bernhard, Hans-Peter
    ICC 2023-IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2023, : 1756 - 1761
  • [43] Energy Implications of Mitigating Side-Channel Attacks on Branch Prediction
    Alqurashi, Fahad
    AL-Hashimi, Mohammed
    Saleh, Mostafa
    Abulnaja, Osama
    COMPUTERS, 2025, 14 (02)
  • [44] Side-Channel Analysis of CRYSTALS-Kyber and A Novel Low-Cost Countermeasure
    Hamoudi, Meziane
    Korchi, Amina Bel
    Guilley, Sylvain
    Takarabt, Sofiane
    Karray, Khaled
    Souissi, Youssef
    SECURITY AND PRIVACY, ICSP 2021, 2021, 1497 : 30 - 46
  • [45] CDAE: Towards Empowering Denoising in Side-Channel Analysis
    Yang, Guang
    Li, Huizhong
    Ming, Jingdian
    Zhou, Yongbin
    INFORMATION AND COMMUNICATIONS SECURITY (ICICS 2019), 2020, 11999 : 269 - 286
  • [46] NeuroSCA: Evolving Activation Functions for Side-Channel Analysis
    Knezevic, Karlo
    Fulir, Juraj
    Jakobovic, Domagoj
    Picek, Stjepan
    Durasevic, Marko
    IEEE ACCESS, 2023, 11 : 284 - 299
  • [47] Side-Channel Analysis of Cryptographic RFIDs with Analog Demodulation
    Kasper, Timo
    Oswald, David
    Paar, Christof
    RFID: SECURITY AND PRIVACY: 7TH INTERNATIONALWORKSHOP, RFIDSEC 2011, 2012, 7055 : 61 - 77
  • [48] Profiled Side-Channel Analysis in the Efficient Attacker Framework
    Picek, Stjepan
    Heuser, Annelie
    Perin, Guilherme
    Guilley, Sylvain
    SMART CARD RESEARCH AND ADVANCED APPLICATIONS (CARDIS 2021), 2022, 13173 : 44 - 63
  • [49] Side-Channel Analysis of Montgomery's Representation Randomization
    Jaulmes, Eliane
    Prouff, Emmanuel
    Wild, Justine
    SELECTED AREAS IN CRYPTOGRAPHY - SAC 2014, 2014, 8781 : 212 - 227
  • [50] Hydraulic analysis of side-channel spillways as reservoir outlets
    Etheridge, M.J.
    Journal of the Chartered Institution of Water and Environment Management, 1996, 10 (04): : 245 - 252