The Experts below are selected from a list of 45 Experts worldwide ranked by ideXlab platform
Sang Jae Moon - One of the best experts on this subject based on the ideXlab platform.
-
RSA speedup with Chinese remainder theorem immune against hardware fault cryptanalysis
IEEE Transactions on Computers, 2003Co-Authors: Sung Ming Yen, Seongan Lim, Sang Jae MoonAbstract:This article considers the problem of how to prevent RSA signature and decryption computation with a residue number system (CRT-based approach) speedup from a hardware fault cryptanalysis in a highly reliable and efficient approach. CRT-based speedup for an RSA signature has been widely adopted as an implementation standard ranging from large servers to very tiny smart IC cards. However, given a single erroneous computation result, hardware fault cryptanalysis can totally break the RSA system by factoring the public modulus. Countermeasures using a simple verification function (e.g., raising a signature to the power of a public key) or fault detection (e.g., an expanded modulus approach) have been reported in the literature; however, it is pointed out that very few of these existing solutions are both sound and efficient. Unreasonably, in these methods, they assume that a Comparison Instruction will always be fault-free when developing countermeasures against hardware fault cryptanalysis. Research shows that the expanded modulus approach proposed by Shamir (1997, 1999) is superior to the approach using a simple verification function when another physical cryptanalysis (e.g., timing cryptanalysis) is considered. So, we intend to improve Shamir's method. In this paper, the new concepts of fault infective CRT computation and fault infective CRT recombination are proposed. Based on the new concepts, two novel protocols are developed with a rigorous proof of security. Two possible parameter settings are provided for the protocols. One setting selects a small public key and the proposed protocols can have comparable performance to Shamir's scheme. The other setting has better performance than Shamir's scheme (i.e., having comparable performance to conventional CRT speedup), but with a large public key. Most importantly, we wish to emphasize the importance of developing and proving the security of physically secure protocols without relying on unreliable or unreasonable assumptions, e.g., always fault-free Instructions. In this paper, related protocols are also considered and carefully examined to point out possible weaknesses.
-
ICISC - RSA Speedup with Residue Number System Immune against Hardware Fault Cryptanalysis
Information Security and Cryptology — ICISC 2001, 2002Co-Authors: Sung Ming Yen, Seongan Lim, Seungjoo Kim, Sang Jae MoonAbstract:This article considers the problem of how to prevent the fast RSA signature and decryption computation with residue number system (or called the CRT-based approach) speedup from a hardware fault cryptanalysis in a highly reliable and efficient approach. The CRT-based speedup for RSA signature has been widely adopted as an implementation standard ranging from large servers to very tiny smart IC cards. However, given a single erroneous computation result, a hardware fault cryptanalysis can totally break the RSA system by factoring the public modulus. Some countermeasures by using a simple verification function (e.g., raising a signature to the power of public key) or fault detection (e.g., an expanded modulus approach) have been reported in the literature, however it will be pointed out in this paper that very few of these existing solutions are both sound and efficient. Unreasonably, in these methods, they assume that a Comparison Instruction will always be fault free when developing countermeasures against hardware fault cryptanalysis. Researches show that the expanded modulus approach proposed by Shamir is superior to the approach of using a simple verification function when other physical cryptanalysis (e.g., timing cryptanalysis) is considered. So, we intend to improve Shamir's method. In this paper, the new concept of fault infective CRT computation and fault infective CRT recombination are proposed. Based on the new concept, two novel protocols are developed with rigorous proof of security. Two possible parameter settings are provided for the protocols. One setting is to select a small public key e and the proposed protocols can have comparable performance to Shamir's scheme. The other setting is to have better performance than Shamir's scheme (i.e., having comparable performance to conventional CRT speedup) but with a large public key. Most importantly, we wish to emphasize the importance of developing and proving the security of physically secure protocols without relying on unreliable or unreasonable assumptions, e.g., always fault free Instructions.
Susanna S. S. Yeung - One of the best experts on this subject based on the ideXlab platform.
-
Effects of a phonological awareness program on English reading and spelling among Hong Kong Chinese ESL children
Reading and Writing, 2013Co-Authors: Susanna S. S. Yeung, Linda S. Siegel, Carol K. K. ChanAbstract:This study investigated the effects of a 12-week language-enriched phonological awareness Instruction on 76 Hong Kong young children who were learning English as a second language. The children were assigned randomly to receive the Instruction on phonological awareness skills embedded in vocabulary learning activities or Comparison Instruction which consisted of vocabulary learning and writing tasks but no direct Instruction in phonological awareness skills. They were tested on receptive and expressive vocabulary, phonological awareness at the syllable, rhyme and phoneme levels, reading, and spelling in English before and after the program implementation. The results indicated that children who received the phonological awareness Instruction performed significantly better than the Comparison group on English word reading, spelling, phonological awareness at all levels and expressive vocabulary on the posttest when age, general intelligence and the pretest scores were controlled statistically. The findings suggest that phonological awareness Instruction embedded in vocabulary learning activities might be beneficial to kindergarteners learning English as a second language.
-
Phonological awareness, oral language proficiency and beginning reading development among Hong Kong Chinese kindergarteners: an intervention study
1Co-Authors: Susanna S. S. YeungAbstract:The present research investigates the causal influence of phonological awareness and oral language proficiency on beginning reading and spelling development of Chinese kindergarteners learning English-as-a-second-language (ESL). Three inter-related studies using correlational and intervention design were conducted to examine (1) the role of phonological awareness in English reading and spelling; (2), the contribution of oral language proficiency to English reading and spelling; (3), the efficacy of the phonological awareness Instruction led by kindergarten teachers in classroom settings, and (4) the cross-language associations of metalinguistic skills and reading between English and Chinese. In Study 1, 50 children from two Hong Kong ESL kindergartens were assessed on measures of general intelligence, English and Chinese phonological awareness, English and Chinese oral language proficiency, and English word reading. With age and general intelligence statistically controlled, both English oral language proficiency and English phonological awareness (phoneme awareness) accounted for unique additional variance in English word reading. In Study 2, the effects of phonological awareness Instruction were examined on 59 children from two local kindergartens. The phonological awareness Instruction, which taught syllable awareness and rhyme awareness, was compared to a treated control group. The Instructional programme was able to enhance phonological awareness skills at the rhyme level but not at the syllable level. Word reading was not significantly different between the Instructional group and the Comparison group during the posttest. The results suggest that Instructional programme that solely focuses on phonological awareness skills might not be able to enhance reading skills of Hong Kong Chinese ESL children. Study 3 investigated the effects of a 12-week language-enriched phonological awareness Instruction on 76 Hong Kong young ESL kindergarteners. The children were randomly assigned to receive the Instruction on phonological awareness skills embedded in vocabulary learning activities or a Comparison Instruction which consisted of vocabulary learning and writing tasks but no direct Instruction in phonological awareness skills. They were tested on oral language skills, phonological awareness at varied levels, reading, and spelling in English before and after the program implementation. The results indicated that children who received the phonological awareness Instruction performed significantly better than the Comparison group on English word reading, spelling, phonological awareness at all levels and expressive vocabulary on the posttest. In addition, regression analyses on both pretest and posttest data showed that phonological awareness (phoneme awareness) and oral language proficiency (expressive vocabulary) are significant predictors of English reading and spelling. Cross-language transfers of phonological awareness were found. The present research suggests that both phonological awareness, particularly phoneme awareness, and oral language proficiency (expressive vocabulary) play a causal influence on English reading and spelling among Chinese ESL children. The efficacious language-enriched phonological awareness Instruction indicates that kindergarten teachers with sufficient training and support are able to implement Instruction that aims to teach phonological awareness directly and explicitly. The significant cross-language associations suggest that phonological sensitivity is a common competence that children need to acquire in learning to read two writing systems.published_or_final_versionEducationDoctoralDoctor of Educatio
Eleanor H. Wertheim - One of the best experts on this subject based on the ideXlab platform.
-
Does Media Literacy Mitigate Risk for Reduced Body Satisfaction Following Exposure to Thin-Ideal Media?
Journal of Youth and Adolescence, 2016Co-Authors: Siân A. Mclean, Susan J. Paxton, Eleanor H. WertheimAbstract:Exposure to thin-ideal media can contribute to increased body dissatisfaction in adolescent girls. Understanding the factors that may prevent or exacerbate the negative effects of media exposure on body dissatisfaction is important to facilitate prevention of these problems. This study evaluated the effects of exposure to thin-ideal media images on body image in three Instructional set experimental conditions: appearance Comparison, peer norms, and control. An important aim was to examine baseline levels of media literacy as a protective factor and trait thin-ideal internalization and trait upward appearance Comparison as risk factors. Early adolescent girls ( N = 246) completed baseline measures and 1 week later viewed thin-ideal media images, before and after which they rated their state body satisfaction. Participants in the appearance Comparison Instruction but not peer norms Instruction condition had significantly reduced body satisfaction. Media literacy, particularly high levels of critical thinking, mitigated the negative effects of trait thin-ideal internalization and trait upward appearance Comparison on body satisfaction outcomes. These findings provide evidence for the role of media literacy as a protective factor against the negative effects on body satisfaction of exposure to thin-ideal media images, and also provide evidence to support the development and implementation of media literacy-based body image interventions.
Martha W. Alibali - One of the best experts on this subject based on the ideXlab platform.
-
Does Comparing Informal and Formal Procedures Promote Mathematics Learning? The Benefits of Bridging Depend on Attitudes toward Mathematics.
The Journal of Problem Solving, 2016Co-Authors: Shanta Hattikudur, Pooja G. Sidney, Martha W. AlibaliAbstract:1 Temple University, 2 University of Wisconsin—Madison Students benefit from learning multiple procedures for solving the same or related problems. However, past research on Comparison Instruction has focused on comparing multiple formal procedures. This study investigated whether the benefits of comparing procedures extend to Comparisons that involve informal and formal procedures. We also examined how learner characteristics, including prior knowledge and attitudes toward mathematics, affect learning from comparing procedures. We addressed these issues in college students’ learning procedures for solving systems of equations problems in algebra. Learners who liked mathematics learned equally well whether they received Comparison or sequential Instruction. However, among learners who did not like mathematics, Instruction that included support for Comparisons between the formal and informal procedures led to greater gains in conceptual knowledge than did sequential Instruction of the procedures. Correspondence: Correspondence concerning this article should be addressed to Shanta Hattikudur, via email to shanta.hattikudur@temple.edu.
Sung Ming Yen - One of the best experts on this subject based on the ideXlab platform.
-
RSA speedup with Chinese remainder theorem immune against hardware fault cryptanalysis
IEEE Transactions on Computers, 2003Co-Authors: Sung Ming Yen, Seongan Lim, Sang Jae MoonAbstract:This article considers the problem of how to prevent RSA signature and decryption computation with a residue number system (CRT-based approach) speedup from a hardware fault cryptanalysis in a highly reliable and efficient approach. CRT-based speedup for an RSA signature has been widely adopted as an implementation standard ranging from large servers to very tiny smart IC cards. However, given a single erroneous computation result, hardware fault cryptanalysis can totally break the RSA system by factoring the public modulus. Countermeasures using a simple verification function (e.g., raising a signature to the power of a public key) or fault detection (e.g., an expanded modulus approach) have been reported in the literature; however, it is pointed out that very few of these existing solutions are both sound and efficient. Unreasonably, in these methods, they assume that a Comparison Instruction will always be fault-free when developing countermeasures against hardware fault cryptanalysis. Research shows that the expanded modulus approach proposed by Shamir (1997, 1999) is superior to the approach using a simple verification function when another physical cryptanalysis (e.g., timing cryptanalysis) is considered. So, we intend to improve Shamir's method. In this paper, the new concepts of fault infective CRT computation and fault infective CRT recombination are proposed. Based on the new concepts, two novel protocols are developed with a rigorous proof of security. Two possible parameter settings are provided for the protocols. One setting selects a small public key and the proposed protocols can have comparable performance to Shamir's scheme. The other setting has better performance than Shamir's scheme (i.e., having comparable performance to conventional CRT speedup), but with a large public key. Most importantly, we wish to emphasize the importance of developing and proving the security of physically secure protocols without relying on unreliable or unreasonable assumptions, e.g., always fault-free Instructions. In this paper, related protocols are also considered and carefully examined to point out possible weaknesses.
-
ICISC - RSA Speedup with Residue Number System Immune against Hardware Fault Cryptanalysis
Information Security and Cryptology — ICISC 2001, 2002Co-Authors: Sung Ming Yen, Seongan Lim, Seungjoo Kim, Sang Jae MoonAbstract:This article considers the problem of how to prevent the fast RSA signature and decryption computation with residue number system (or called the CRT-based approach) speedup from a hardware fault cryptanalysis in a highly reliable and efficient approach. The CRT-based speedup for RSA signature has been widely adopted as an implementation standard ranging from large servers to very tiny smart IC cards. However, given a single erroneous computation result, a hardware fault cryptanalysis can totally break the RSA system by factoring the public modulus. Some countermeasures by using a simple verification function (e.g., raising a signature to the power of public key) or fault detection (e.g., an expanded modulus approach) have been reported in the literature, however it will be pointed out in this paper that very few of these existing solutions are both sound and efficient. Unreasonably, in these methods, they assume that a Comparison Instruction will always be fault free when developing countermeasures against hardware fault cryptanalysis. Researches show that the expanded modulus approach proposed by Shamir is superior to the approach of using a simple verification function when other physical cryptanalysis (e.g., timing cryptanalysis) is considered. So, we intend to improve Shamir's method. In this paper, the new concept of fault infective CRT computation and fault infective CRT recombination are proposed. Based on the new concept, two novel protocols are developed with rigorous proof of security. Two possible parameter settings are provided for the protocols. One setting is to select a small public key e and the proposed protocols can have comparable performance to Shamir's scheme. The other setting is to have better performance than Shamir's scheme (i.e., having comparable performance to conventional CRT speedup) but with a large public key. Most importantly, we wish to emphasize the importance of developing and proving the security of physically secure protocols without relying on unreliable or unreasonable assumptions, e.g., always fault free Instructions.