Research Article

Towards Optimized DFA Attacks on AES under Multibyte Random Fault Model

Table 2

The theoretical candidate numbers after each analysis in three fault models.

Analyses completed123456

Single-byte fault model10200.000240000
Two-byte fault model389983350.003000
Three-byte fault model661424961018594156862413.720.06