The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 10, 2017

Filed:

Dec. 12, 2014
Applicant:

Thomson Licensing, Issy de Moulineaux, FR;

Inventors:

Mohamed Karroumi, Rennes, FR;

Benjamin Richard, Cesson-Sevigne, FR;

Marc Joye, Fougeres, FR;

Assignee:

THOMSON LICENSING, Issy les Moulineaux, FR;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/00 (2006.01); G06F 7/72 (2006.01); H04L 9/06 (2006.01);
U.S. Cl.
CPC ...
H04L 9/003 (2013.01); G06F 7/72 (2013.01); G06F 7/727 (2013.01); H04L 9/0625 (2013.01); G06F 2207/7238 (2013.01); H04L 2209/12 (2013.01);
Abstract

A cryptographic device performs modular addition between a first integer value x and a second integer value y in a processor by: obtaining a first masked input {circumflex over (x)}, a second masked input ŷ, a first mask rand a second mask r, the first masked input {circumflex over (x)} resulting from the first integer value x masked by the first mask rand the second masked input ŷ resulting from the second integer value y masked by the second mask r; computing a first iteration masked carry value ĉ, using the first masked input {circumflex over (x)}, the second masked input ŷ, the first mask r, the second mask rand a carry mask value λ; recursively updating the masked carry value ĉto obtain a final masked carry value ĉ, wherein the masked carry value is updated using the first masked input {circumflex over (x)}, the second masked input ŷ, the first mask r, the second mask r, and the carry mask value λ; combining the first masked input {circumflex over (x)} and the second masked input ŷ and the final masked value ĉto obtain an intermediate value; combining the intermediate value with the carry mask value to obtain a masked result; and outputting the masked result and a combination of the first mask rand the second mask r. It is preferred that the combinations use XOR.


Find Patent Forward Citations

Loading…