Eurocrypt 2026
PERSEUS – Probabilistic Evaluation of Random Probing SEcurity Using Efficient Sampling
Sonia Belaïd
CryptoExperts
Gaëtan Cassiers
CryptoExperts & UCLouvain
Keywords: random probing security, formal verification, masking, side-channel security, sampling
Abstract
Cryptographic implementations are inherently vulnerable to side-channel attacks, which exploit physical leakages such as power consumption. Masking has become the most widely adopted countermeasure to mitigate these threats, as it randomizes intermediate values and makes the leakage less exploitable. Yet, a central challenge remains: how to rigorously assess the concrete security level of masked implementations. To tackle this issue, the random probing model has emerged as a powerful abstraction. It formalizes leakage as random probes in the circuit and, importantly, the security in the noisy leakage model, which closely reflects the behavior of real embedded devices, reduces to security in the random probing model. Hence, proving security in the random probing model provides sound guarantees of practical resistance against side-channel attacks. Yet, the current state of the art on random probing compilers and verifiers suffers from a clear limitation: scalable approaches yield prohibitively large and inefficient circuits, while tighter methods do not scale to practical circuit sizes. In this work, we bridge this gap by introducing a new methodology that directly estimates the random probing security of large circuits through Monte Carlo sampling, combined with a pruning strategy that drastically reduces the sampling space. We implement our approach in a new tool, PERSEUS, which supports both gate and wire leakage models. Our experiments demonstrate that PERSEUS can efficiently evaluate masked implementations of AES-128 with $n=8$ shares, achieving security levels beyond 32 bits, thereby significantly advancing the state of the art in practical verification of side-channel countermeasures.
Publication
EUROCRYPT 2026, LNCS 16547
PaperArtifact
Artifact number
eurocrypt/2026/a3
Artifact published
July 25, 2026
Badge
🏆 IACR EUROCRYPT Results Reproduced
License
This work is licensed under the Apache License, Version 2.0.
Some files in this archive are licensed under a different license. See the contents of this archive for more information.
Note that license information is supplied by the authors and has not been confirmed by the IACR.
BibTeX How to cite
Sonia Belaïd and Gaëtan Cassiers. (2026). PERSEUS – Probabilistic Evaluation of Random Probing SEcurity Using Efficient Sampling. In Advances in Cryptology – EUROCRYPT 2026, Lecture Notes in Computer Science vol. 16547, pp. 506–536, Springer. https://doi.org/10.1007/978-3-032-25336-1_18. Artifact at https://artifacts.iacr.org/eurocrypt/2026/a3.