05-03-2020 дата публикации
Номер: US20200076594A1
Принадлежит:
Embodiments of the present invention provide methods to perform key updates on key shares of a masked key, which allows updating the masked key without unmasking the masked key (e.g., producing the effective key). By using key shares of a masked key and performing the key update on one or more of the key shares without unmasking the effective key, the cumulative leakage of individual effective keys across multiple cryptographic operations is reduced, and preferably minimized. 149-. (canceled)50. A method of updating key shares , comprising:applying at least one key update function to a corresponding at least one key share of n key shares, such that each key update function of the at least one key update function is applied to the corresponding key share of the at least one key share of the n key shares, such that a corresponding at least one updated key share is produced,wherein n is an integer greater than or equal to 2,wherein when the n key shares are n-share unmasked, an effective key is produced, (i) the at least one updated key share; and', '(ii) key shares of the n key shares to which a key update function of the at least one key update function was not applied,, 'wherein whenare n-share unmasked, an updated effective key is produced.51. The method according to claim 50 ,wherein each key share of the n key shares is independent of the effective key.52. The method according to claim 50 , further comprising:receiving the n key shares.53. The method according to claim 50 , wherein applying at least one key update function to a corresponding at least one key share of n key shares is accomplished via a processor.54. The method according to claim 50 , wherein the n key shares are unmasked by applying an n-share unmasking operator to the n key shares.55. The method according to claim 50 ,wherein the n-share unmasking operator is additive and applying the n-share unmasking operator to the n key shares comprises adding the n key shares together,wherein the n-share ...
Подробнее