Skip to content
Open access

Hardware Private Cubic Circuits

Jul 2026 · IACR Cryptology ePrint Archive · Vol 2026, pp. 1351 · 0 citations · 30 references
Computer Science

TL;DR

HPCC is presented, the first low-latency 3-input multiplication gadget for arbitrary fields that maintains a constant latency of one cycle, independent of the number of shares, and is leveraged to implement the first composable AES S-Box with two cycles of latency with an arbitrary number of shares.

Abstract

Cryptographic hardware implementations often leak secret information through side channels. This can allow attackers to learn secret data, such as a cryptographic key, without any vulnerability in the cryptographic algorithm itself. A popular countermeasure to such attacks is masking, which ensures that processed data is independent of the secrets by splitting them into multiple independent shares, often at the cost of significant overhead in terms of required area, latency, and randomness. The composable PINI notion in the glitch-extended probing model ensures some degree of security against such side-channel analysis attacks, and guarantees that the circuit may be arbitrarily composed with other PINI circuits while maintaining the same security level. This allows for the secure implementation of arbitrary circuits using trivial composition, replacing elementary gates with “gadgets” realizing the same functionality in a PINI-secure manner. Up to now, PINI gadgets at arbitrary security order are limited to quadratic functions, i.e., 2-input gates, with the best known as HPC3.X realizing a 2-input multiplier in one clock cycle.In this work, we present HPCC, the first low-latency 3-input multiplication gadget for arbitrary fields that maintains a constant latency of one cycle, independent of the number of shares. HPCC additionally allows for the computation of any number of multiplications in a single cycle with relatively little overhead when two of the three operands are identical. When instantiated with two shares and for F2, HPCC halves the previous record for lowest number of fresh masks required at comparable area cost. With more shares, HPCC is the only single-cycle gadget realizing 3- input multiplications in arbitrary fields. We leverage HPCC to implement the first composable AES S-Box with two cycles of latency with an arbitrary number of shares. This S-Box design significantly outperforms the previous record in terms of area and randomness when instantiated with three shares and stands as the only two-cycle solution for more shares.

Read PDF

Similar papers

Open access Sep 2026

Coupling Leakage in Theory and Practice

With the widespread adoption of Field Programmable Gate Arrays (FPGAs) in security-critical industries such as defense and telecommunications, ensuring the confidentiality of sensitive data processed by these devices has become paramount. Side-Channel Analysis (SCA) poses a significant threat, necessitating the protect...

Nicolai Müller, Daniel Lammers, Simon Osterheider et al. · 0 citations
Open access Sep 2026

Area Efficiency in Constant-Cycle Schemes

Boolean masking is a widely used countermeasure to protect hardware implementations against side-channel attacks. However, combining security with low latency remains challenging, since in many composed masked designs the latency increases with the number of cascaded non-linear operations. Constant-cycle masking scheme...

Daniel Lammers, Lukas Weber, A. Moradi · 0 citations
Open access Aug 2026

Cryptanalysis of the Falcon-M Signature Scheme

Symmetry is crucial in lattice cryptography, where secure signatures rely on structural invariants over polynomial rings. This paper conducts a rigorous security and correctness analysis on Falcon-M, a lightweight signature scheme. We first demonstrate a fundamental correctness failure through an explicit experimental...

Li-Ming Zuo, Pengyun Ma, Shuli Xu et al. · 0 citations
Preprint Aug 2026

On the Sensitivity to Errors in Homomorphic Computing: Single Transient Bit-flip Client-side Error Characterization

This work identifies homomorphic multiplication as the most error-sensitive operation in practical HE pipelines and characterize how faults propagate and amplify through it, exposing a critical robustness vulnerability and motivating the need for more resilient HE deployments.

Matías Mazzanti, Vattana Chan, Karthik Swaminathan et al. · 0 citations
Open access Jul 2026

LISHARK: Lightweight Side Channel Protected Secure Hardware Extension with Re-keying

The Secure Hardware Extension (SHE) provides crucial functionalities such as error-detection, authorization, and authentication of messages exchanged between Electronic Control Units (ECUs) over the Controller Area Network (CAN) bus with the help of Advanced Encryption Standard (AES) cryptographic cores. However, the s...

Soumi Chatterjee, Siddhartha Chowdhury, Urbi Chatterjee et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.