Research Article

Towards Optimized DFA Attacks on AES under Multibyte Random Fault Model

Table 1

Some notations and their meanings.

NotationsMeaning

PcandidatesThe proportion of the number of candidate keys to the number of all possible keys
The number of candidate keys after the first analysis in DFA process
Pcandidates for the single-byte fault model
Pcandidates for the two-byte fault model
Pcandidates for the three-byte fault model