A Fault Analysis on SNOVA
Published in In *eprint*, 2024
SNOVA is a compact, post-quantum signature scheme and a second-round candidate in the NIST PQC competition. This paper analyzes its resistance to fault attacks.
Main contributions:
- Demonstrates key-recovery attacks using transient and permanent faults
- Introduces a novel fault-assisted reconciliation strategy based on solving quadratic systems
- Achieves key recovery with a small number of faulty signatures
- Simulates the impact of fault injections at various security levels
- Proposes a lightweight countermeasure to enhance robustness with minimal performance overhead
This work highlights the urgent need for fault-resilient designs in post-quantum cryptographic primitives.