Demo: Ascon S-box

  1. Enter your S-box inputs (e.g., ***** for "uniformly random 5-bit values" or 0000* for {00000,00001})
  2. Select a wire you want to fault with a bitflip (orange)
  3. If we keep only values where the fault is ineffective, we learn the blue wires!
  4. Click to run and see in detail how well your fault can be exploited (high capacity and ineffectivity rate)
  5. Below you find details on the input/output distribution among ineffective faults
a
b
c
d
e
a b c d eT0 r s t u v
r
s
t
u
v
Capacity C(p, θ)
N/A
Ineffectivity rate π=
N/A
No ineffective input -> output mapping could be found!
Welcome

This is an exmplanation and DIY page for Statistical Ineffective Fault Attacks (SIFA)!

Do you want to know how to recover some AES key using SIFA?



Do you want to see the effect of SIFA by trying different fault positions on S-boxes?



Nice! Then let's move to some device with a screen bigger than 769px!

See you there!