The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 26, 2020

Filed:

Oct. 06, 2017
Applicant:

Idemia Identity & Security France, Issy-les-Moulineaux, FR;

Inventors:

Victor Servant, Issy-les-Moulineaux, FR;

Guillaume Dabosville, Issy-les-Moulineaux, FR;

Assignee:

IDEMIA IDENTIFY & SECURITY FRANCE, Issy les Moulineaux, FR;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 7/72 (2006.01); H04L 9/00 (2006.01); G06F 9/30 (2018.01); G06K 19/07 (2006.01); H04L 9/30 (2006.01);
U.S. Cl.
CPC ...
G06F 7/725 (2013.01); G06F 9/30098 (2013.01); G06K 19/07 (2013.01); H04L 9/003 (2013.01); H04L 9/3066 (2013.01); G06F 2207/7261 (2013.01); G06F 2207/7285 (2013.01);
Abstract

The invention relates to a cryptographic processing method comprising multiplication of a point P of an elliptic curve on a Galois field by a scalar k, the multiplication comprising steps of: storing, in a first register, a zero point of the Galois field, executing a loop comprising at least one iteration comprising steps of: selecting a window of w bits in the non-signed binary representation of the scalar k, w being a predetermined integer independent of the scalar k and strictly greater than 1, calculating multiple points of P being each associated with a bit of the window and of the form ±2P, adding or not in the first register of multiple points stored, depending of the value of the bit of the window with which the multiple points are associated, wherein the loop ends once each bit of the non-signed binary representation of the scalar k has been selected, returning a value stored in the first register. If all the bits of the window selected during an iteration of the loop are zero, the iteration comprises at least one dummy execution of the addition function, and/or if all the bits of the window during an iteration of the loop are non-zero, the multiple points to be added in the first register during the step are determined from a non-adjacent form associated with the window.


Find Patent Forward Citations

Loading…