# Defeating modexp side-channel attacks with data-independent execution traces

@inproceedings{Granlund2013DefeatingMS, title={Defeating modexp side-channel attacks with data-independent execution traces}, author={Torbj{\"o}rn Granlund}, year={2013} }

We present an efficient algorithm for computing m mod N , which is resilient to common side-channel attacks. For any two sets of n-bit operands, the algorithm performs the same sequence of operations and yields the exact same memory access traces. It is side-channel silent under reasonable assumptions of the underlying hardware’s side-channel silence for basic word operations. We have implemented the algorithm as part of the GMP library, and show that it is almost as efficient as corresponding…

