首页> 外文会议>Asia and South Pacific Design Automation Conference >Security vulnerability analysis of design-for-test exploits for asset protection in SoCs
【24h】

Security vulnerability analysis of design-for-test exploits for asset protection in SoCs

机译:用于SoC中资产保护的测试设计漏洞的安全漏洞分析

获取原文

摘要

SoCs implementing security modules should be both testable and secure. Oversights in a design's test structure could expose internal modules creating security vulnerabilities during test. In this paper, for the first time, we propose a novel automated security vulnerability analysis framework to identify violations of confidentiality, integrity, and availability policies caused by test structures and designer oversights during SoC integration. Results demonstrate existing information leakage vulnerabilities in implementations of various encryption algorithms and secure microprocessors. These can be exploited to obtain secret keys, control finite state machines, or gain unauthorized access to memory read/write functions.
机译:实施安全模块的SoC应该既可测试又安全。设计的测试结构中的监督可能会暴露内部模块,从而在测试期间创建安全漏洞。在本文中,我们首次提出了一种新颖的自动化安全漏洞分析框架,以识别由于SoC集成过程中的测试结构和设计者疏忽而导致的机密性,完整性和可用性策略的违规行为。结果证明了各种加密算法和安全微处理器的实现中存在的现有信息泄漏漏洞。这些可以被利用来获得秘密密钥,控制有限状态机或获得对存储器读/写功能的未授权访问。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号