From 1caddd07577e608c6ed28321ce3d2a9b38a28953 Mon Sep 17 00:00:00 2001 From: jaseg Date: Fri, 24 Jan 2025 11:59:31 +0100 Subject: [PATCH] Update bibliography --- paper/paper.bib | 333 +++++++++++++++++++++++++++++++++++++++++++----- 1 file changed, 299 insertions(+), 34 deletions(-) diff --git a/paper/paper.bib b/paper/paper.bib index a0f41db..c424e54 100644 --- a/paper/paper.bib +++ b/paper/paper.bib @@ -1,3 +1,15 @@ +@book{2019ConferenceInformation2019, + title = {2019 {{Conference}} on {{Information Communications Technology}} and {{Society}} ({{ICTAS}}): {{Durban}}, {{South Africa}}, 6, 7 and 8 {{March}} 2019}, + shorttitle = {2019 {{Conference}} on {{Information Communications Technology}} and {{Society}} ({{ICTAS}})}, + date = {2019}, + publisher = {IEEE}, + location = {Piscataway, NJ}, + eventtitle = {Conference on {{Information Communications Technology}} and {{Society}}}, + isbn = {978-1-5386-7365-2}, + langid = {english}, + pagetotal = {1} +} + @online{adhikariDonLookUbiquitous2022, title = {Don't {{Look Up}}: {{Ubiquitous Data Exfiltration Pathways}} in {{Commercial Spaces}}}, shorttitle = {Don't {{Look Up}}}, @@ -43,6 +55,23 @@ file = {/home/jaseg/Zotero/storage/586UJPWU/Albertini et al. - How to Abuse and Fix Authenticated Encryption With.pdf} } +@article{alendalChipChopSmashing2021, + title = {Chip Chop — Smashing the Mobile Phone Secure Chip for Fun and Digital Forensics}, + author = {Alendal, Gunnar and Axelsson, Stefan and Dyrkolbotn, Geir Olav}, + date = {2021-07}, + journaltitle = {Forensic Science International: Digital Investigation}, + shortjournal = {Forensic Science International: Digital Investigation}, + volume = {37}, + pages = {301191}, + issn = {26662817}, + doi = {10.1016/j.fsidi.2021.301191}, + url = {https://linkinghub.elsevier.com/retrieve/pii/S2666281721000998}, + urldate = {2024-12-13}, + langid = {english}, + keywords = {sampling-mesh}, + file = {/home/jaseg/Sync/Research/Zotero/Alendal et al_2021_Chip chop — smashing the mobile phone secure chip for fun and digital forensics.pdf} +} + @online{alievExperimentalDemonstrationScalable2023, title = {Experimental Demonstration of Scalable Quantum Key Distribution over a Thousand Kilometers}, author = {Aliev, A. and Statiev, V. and Zarubin, I. and Kirsanov, N. and Strizhak, D. and Bezruchenko, A. and Osicheva, A. and Smirnov, A. and Yarovikov, M. and Kodukhov, A. and Pastushenko, V. and Pflitsch, M. and Vinokur, V.}, @@ -67,6 +96,22 @@ file = {/home/jaseg/Zotero/storage/ITYF3KAN/Alomair - Information Theoretically Secure Encryption with A.pdf} } +@inproceedings{amhenriorDesignImplementationAutomatic2017, + title = {Design and Implementation of an Automatic Tamper Detection and Reporting Capability for a Single Phase Energy Meter}, + booktitle = {2017 {{IEEE}} 3rd {{International Conference}} on {{Electro-Technology}} for {{National Development}} ({{NIGERCON}})}, + author = {Amhenrior, H. E. and Edeko, F. O. and Ogujor, E. A. and Emagbetere, J. O.}, + date = {2017-11}, + pages = {1--9}, + issn = {2377-2697}, + doi = {10.1109/NIGERCON.2017.8281947}, + url = {https://ieeexplore.ieee.org/document/8281947/?arnumber=8281947&tag=1}, + urldate = {2024-12-13}, + abstract = {In this paper, the design and implementation of automatic tamper detection and reporting capability of Energy meter was carried out. The system has the capability to detect bypass internally on the meter and externally on the service cables from the electric pole. It also incorporates wireless disconnection and connection of load capabilities. This becomes imperative as a result of high rate of energy theft that arises from meter tampering. The system comprises of a developed Single Phase Prepayment Energy Meter and the supply authority Global System for Mobile Communications (GSM) capable device platform. The meter is made of the energy meter IC, two microcontrollers which are suitably programmed in C++, one for Energy measurement and the other for monitoring of meter activities especially terminal tamper and communications. It also has the tamper switch, the circuit breaker and the GSM modem (SIM900) which is interfaced to the monitoring microcontroller. The modem is used for communication particularly in Short Message Service (SMS) form with the supply authority. The server and the Application Platform communicates with the meter using developed commands available to only the supply authority. The use of Wireless Current Transducers (WCT) for the detection of energy theft through external bypass of the Prepaid Meter was also proposed to be incorporated in the system. The results obtained show satisfactory tamper detection and reporting as well as wireless connection with 100\% success rate recorded as implemented.}, + eventtitle = {2017 {{IEEE}} 3rd {{International Conference}} on {{Electro-Technology}} for {{National Development}} ({{NIGERCON}})}, + keywords = {Automatic Tamper Reporting,Companies,Developed Commands,GSM,Meters,Microcontroller,Microcontrollers,Monitoring,Pins,SMS,Wireless Connection}, + file = {/home/jaseg/Sync/Research/Zotero/Amhenrior et al_2017_Design and implementation of an automatic tamper detection and reporting.pdf;/home/jaseg/Zotero/storage/8E7R2D7Z/8281947.html} +} + @incollection{amiriEfficientUnconditionallySecure2018, title = {Efficient {{Unconditionally Secure Signatures Using Universal Hashing}}}, booktitle = {Applied {{Cryptography}} and {{Network Security}}}, @@ -106,6 +151,15 @@ file = {/home/jaseg/Sync/Research/Zotero/2020_Amitonova et al_Quantum key establishment via a multimode fiber.pdf} } +@inproceedings{anderson1996tamper, + title = {Tamper Resistance-a Cautionary Note}, + booktitle = {Proceedings of the Second {{Usenix}} Workshop on Electronic Commerce}, + author = {Anderson, Ross and Kuhn, Markus}, + date = {1996}, + volume = {2}, + pages = {1--11} +} + @book{andersonSecurityEngineeringGuide2020, title = {Security {{Engineering}}: {{A Guide}} to {{Building Dependable Distributed Systems}}}, shorttitle = {Security {{Engineering}}}, @@ -143,7 +197,7 @@ isbn = {978-1-4503-4139-4} } -@inproceedings{arpPrivacyThreatsUltrasonic2017a, +@inproceedings{arpPrivacyThreatsUltrasonic2017, title = {Privacy {{Threats}} through {{Ultrasonic Side Channels}} on {{Mobile Devices}}}, booktitle = {2017 {{IEEE European Symposium}} on {{Security}} and {{Privacy}} ({{EuroS}}\&{{P}})}, author = {Arp, Daniel and Quiring, Erwin and Wressnegger, Christian and Rieck, Konrad}, @@ -877,7 +931,7 @@ urldate = {2024-10-31}, abstract = {Protection of the Critical Security Parameters is a permanent concern for the designers, but also for the users of cryptographic equipment. The usage of a conductive mesh is a sensitive and efficient solution in order to protect the firmware, keys or any other sensitive data that could be contained in a cryptographic module. In order to improve the security provided by this principle, based on the flexibility of common technology that can be used to produce PCBs, an algorithm to produce particular designs of conductive mesh on PCBs starting from random bit strings is present in this article. Random design of conductive mesh is useful in order to increase the unpredictability of its electrical characteristics so, in addition to the sensitivity of this conductive mesh which will detect and react even to any attempt of measuring it by probes, an attacker will not have any information which can be exploited. The proposed innovative algorithm provides filling of the full area of envelope which cover the cryptographic module, even if its perimeter is irregular, according to necessary dimensions and profile, keeping traces on a dense grid, without any uncovered areas. The main advantage of the proposed solution consists of the possibility to implement a fully automated production flux, without human participation, and with an increased level of security due to unpredictable electrical characteristics of conductive mesh generated from a true random bit string.}, eventtitle = {2020 {{IEEE}} 26th {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, - keywords = {algorithm,Cryptography,Electric variables,Electronics packaging,Generators,mesh,Probes,Production,random,security,Sensitivity,tamperproof}, + keywords = {algorithm,Cryptography,Electric variables,Electronics packaging,Generators,mesh,Probes,Production,random,sampling-mesh,security,Sensitivity,tamperproof}, file = {/home/jaseg/Sync/Research/Zotero/Chiţu et al_2020_Algorithm to Design Conductive Mesh for Tamperproof Envelope.pdf;/home/jaseg/Zotero/storage/XPN3D8DA/9292275.html} } @@ -958,6 +1012,24 @@ file = {/home/jaseg/Zotero/storage/RKFV7HX5/Choudhuri et al. - 2021 - Fluid MPC Secure Multiparty Computation with Dyna.pdf} } +@inproceedings{cifuentesPoorMansHardware2016, + title = {Poor {{Man}}'s {{Hardware Security Module}} ({{pmHSM}}): {{A Threshold Cryptographic Backend}} for {{DNSSEC}}}, + shorttitle = {Poor {{Man}}'s {{Hardware Security Module}} ({{pmHSM}})}, + booktitle = {Proceedings of the 9th {{Latin America Networking Conference}}}, + author = {Cifuentes, Francisco and Hevia, Alejandro and Montoto, Francisco and Barros, Tomás and Ramiro, Victor and Bustos-Jiménez, Javier}, + date = {2016-10-13}, + pages = {59--64}, + publisher = {ACM}, + location = {Valparaiso Chile}, + doi = {10.1145/2998373.2998452}, + url = {https://dl.acm.org/doi/10.1145/2998373.2998452}, + urldate = {2024-12-13}, + eventtitle = {{{LANC}} '16: {{Latin America Networking Conference}}}, + isbn = {978-1-4503-4591-0}, + langid = {english}, + keywords = {sampling-mesh} +} + @online{ClavisXGQKD2024, title = {Clavis {{XG QKD System Brochure}}}, date = {2024-07}, @@ -1033,7 +1105,7 @@ file = {/home/jaseg/Sync/Research/Zotero/Couteau et al_2021_Silver.pdf} } -@article{cuellarStaticFatigueLifetime1987, +@article{cuellarStaticFatigueLifetime1987a, title = {Static Fatigue Lifetime of Optical Fibers in Bending}, author = {Cuellar, E. and Roberts, D. and Middleman, L.}, date = {1987-01-01}, @@ -1153,6 +1225,25 @@ file = {/home/jaseg/Zotero/storage/S8S9P8L5/Deshotels - Inaudible Sound as a Covert Channel in Mobile Devi.pdf} } +@inproceedings{desouzaAuditBackupProcedures2008, + title = {Audit and Backup Procedures for Hardware Security Modules}, + booktitle = {Proceedings of the 7th Symposium on {{Identity}} and Trust on the {{Internet}}}, + author = {family=Souza, given=Túlio Cicero Salvaro, prefix=de, useprefix=true and Martina, Jean Everson and Custódio, Ricardo Felipe}, + date = {2008-03-04}, + pages = {89--97}, + publisher = {ACM}, + location = {Gaithersburg Maryland USA}, + doi = {10.1145/1373290.1373302}, + url = {https://dl.acm.org/doi/10.1145/1373290.1373302}, + urldate = {2024-12-13}, + abstract = {Hardware Security Modules (HSMs) are an useful tool to deploy public key infrastructure (PKI) and its applications. This paper presents necessary procedures and protocols to perform backup and audit in such devices when deployed in PKIs. These protocols were evaluated in an implementation of a real HSM, enabling it to perform secure backups and to provide an audit trail, two important considerations for a safe PKI operation. It also introduces a ceremony procedure to support the operation of such HSMs in a PKI environment.}, + eventtitle = {{{IDtrust}} 2008: 7th {{Symposium}} on {{Identity}} and {{Trust}} on the {{Internet}}}, + isbn = {978-1-60558-066-1}, + langid = {english}, + keywords = {sampling-mesh}, + file = {/home/jaseg/Zotero/storage/8ACFQAKY/de Souza et al. - 2008 - Audit and backup procedures for hardware security .pdf} +} + @article{diamantiPracticalChallengesQuantum2016, title = {Practical Challenges in Quantum Key Distribution}, author = {Diamanti, Eleni and Lo, Hoi-Kwong and Qi, Bing and Yuan, Zhiliang}, @@ -1243,6 +1334,22 @@ file = {/home/jaseg/Zotero/storage/KAKTBELB/Dumitru et al. - The Impostor Among US(B) Off-Path Injection Attac.pdf} } +@inproceedings{duncanFLATSFillingLogic2019, + title = {{{FLATS}}: {{Filling Logic}} and {{Testing Spatially}} for {{FPGA Authentication}} and {{Tamper Detection}}}, + shorttitle = {{{FLATS}}}, + booktitle = {2019 {{IEEE International Symposium}} on {{Hardware Oriented Security}} and {{Trust}} ({{HOST}})}, + author = {Duncan, Adam and Skipper, Grant and Stern, Andrew and Nahiyan, Adib and Rahman, Fahim and Lukefahr, Andrew and Tehranipoor, Mark and Swany, Martin}, + date = {2019-05}, + pages = {81--90}, + doi = {10.1109/HST.2019.8741025}, + url = {https://ieeexplore.ieee.org/document/8741025/?arnumber=8741025}, + urldate = {2024-12-13}, + abstract = {Security-critical field programmable gate array (FPGA) designs traditionally rely on bitstream encryption and hashing to prevent bitstream modifications and provide design authentication. Recent attacks to extract bitstream encryption keys, and research in automated bitstream manipulation tools, have created a class of vulnerabilities involving post-synthesis low-level FPGA editing. Current authentication and tamper (e.g., malicious modification) detection approaches dependent upon hash-based comparison mechanisms and register transfer level safeguards are vulnerable to these post-synthesis exploits. In this paper, we propose FLATS, which provides filling logic and testing spatially to combat such vulnerability. FLATS fills unused lookup tables (LUTs) within the FPGA design and inserts infrared-emitting spatial watermarks into the partially used LUTs at the post-synthesis stage for physical authentication and tamper detection using backside infrared imaging. FLATS takes an existing synthesized design and re-purposes a portion of its LUT initialization to function as a watermark allowing for the detection of changes to the post-synthesis placement and initialization. Experimental results validate the FLATS architecture on a 28nm Xilinx FPGA with less than 12\% look-up table utilization overhead and negligible compromises in power and speed.}, + eventtitle = {2019 {{IEEE International Symposium}} on {{Hardware Oriented Security}} and {{Trust}} ({{HOST}})}, + keywords = {3PIPs,Authentication,Encryption,Field programmable gate arrays,FPGA,Hardware,infrared,Table lookup,watermark,Watermarking}, + file = {/home/jaseg/Sync/Research/Zotero/Duncan et al_2019_FLATS.pdf;/home/jaseg/Zotero/storage/3C4TK3U3/8741025.html} +} + @article{dupontMiniaturizedUltraLowPowerTamper2022, title = {A {{Miniaturized}} and {{Ultra-Low-Power Tamper Detection Sensor}} for {{Portable Applications}}}, author = {Dupont, François and Laurent, Philippe and Montfort, Francis and Pierre, Hervé and Jeanne, Léo and Stoukatch, Serguei and Dricot, Samuel and Redouté, Jean-Michel}, @@ -1257,7 +1364,7 @@ urldate = {2024-07-25}, abstract = {This article presents a tamper detection sensor complementing cryptographic techniques in order to protect data from unauthorized access and/or from data falsification. Both the mechanical and electronic parts of the systems are described. The proposed architecture targets portable devices and can be realized using commercially available components, widely available materials and known manufacturing and assembly techniques. The tamper detection circuit is based on a capacitive sensing principle and uses ultra-low-power electronic components, leading to an overall consumed current below 10 \textbackslash mu \textbackslash textA . Autonomy is a crucial reported drawback of miniaturized battery backed-up anti-tampering hardware systems: the presented architecture and implementation ensures a lifetime of at least 3 years when powered by one CR2032 coin cell battery. The paper also assesses the sensitivity of the tamper detection: measurements show that the system is able to detect a variation of at least one percent of the capacitance of the tamper layer, resulting from an attempt to breach the outer shell surrounding the circuit for accessing the sensitive data.}, eventtitle = {{{IEEE Sensors Journal}}}, - keywords = {Batteries,Capacitive sensor,Computer architecture,data security,Encryption,FIPS 140-2,Hardware,Security,Sensors,tamper detection,Temperature sensors,ultra-low-power electronics}, + keywords = {Batteries,Capacitive sensor,Computer architecture,data security,Encryption,FIPS 140-2,Hardware,sampling-mesh,Security,Sensors,tamper detection,Temperature sensors,ultra-low-power electronics}, file = {/home/jaseg/Sync/Research/Zotero/2022_Dupont et al_A Miniaturized and Ultra-Low-Power Tamper Detection Sensor for Portable.pdf;/home/jaseg/Zotero/storage/RHDYLUS7/9682743.html} } @@ -1794,6 +1901,23 @@ abstract = {Contact discovery allows users of mobile messengers to conveniently connect with people in their address book. In this work, we demonstrate that severe privacy issues exist in currently deployed contact discovery methods and propose suitable mitigations.Our study of three popular messengers\ (WhatsApp, Signal, and Telegram) shows that large-scale crawling attacks are\ (still) possible. Using an accurate database of mobile phone number prefixes and very few resources, we queried\ 10 \% of\ US mobile phone numbers for\ WhatsApp and\ 100 \% for\ Signal. For\ Telegram, we find that its\ API exposes a wide range of sensitive information, even about numbers not registered with the service. We present interesting\ (cross-messenger) usage statistics, which also reveal that very few users change the default privacy settings.Furthermore, we demonstrate that currently deployed hashing-based contact discovery protocols are severely broken by comparing three methods for efficient hash reversal. Most notably, we show that with the password cracking tool\ “JTR,” we can iterate through the entire worldwide mobile phone number space in\ \< 150 s on a consumer-grade\ GPU. We also propose a significantly improved rainbow table construction for non-uniformly distributed input domains that is of independent interest.Regarding mitigations, we most notably propose two novel rate-limiting schemes: our\ incremental contact discovery for services without server-side contact storage strictly improves over\ Signal’s current approach while being compatible with private set intersection, whereas our\ differential scheme allows even stricter rate limits at the overhead for service providers to store a small constant-size state that does not reveal any contact information.} } +@inproceedings{hanScalingHardwareSecurity2019, + title = {Toward Scaling Hardware Security Module for Emerging Cloud Services}, + booktitle = {Proceedings of the 4th {{Workshop}} on {{System Software}} for {{Trusted Execution}}}, + author = {Han, Juhyeng and Kim, Seongmin and Kim, Taesoo and Han, Dongsu}, + date = {2019-10-27}, + pages = {1--6}, + publisher = {ACM}, + location = {Huntsville Ontario Canada}, + doi = {10.1145/3342559.3365335}, + url = {https://dl.acm.org/doi/10.1145/3342559.3365335}, + urldate = {2024-12-13}, + eventtitle = {{{SOSP}} '19: {{ACM SIGOPS}} 27th {{Symposium}} on {{Operating Systems Principles}}}, + isbn = {978-1-4503-6888-9}, + langid = {english}, + keywords = {sampling-mesh} +} + @article{hanspachCovertAcousticalMesh2013, title = {On {{Covert Acoustical Mesh Networks}} in {{Air}}}, author = {Hanspach, Michael and Goetz, Michael}, @@ -2013,16 +2137,16 @@ @online{IEEEXploreFullTexta, title = {{{IEEE Xplore Full-Text PDF}}:}, - url = {https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=6520632}, + url = {https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=8558378}, urldate = {2024-09-10}, - file = {/home/jaseg/Zotero/storage/PQYCW7K7/stamp.html} + file = {/home/jaseg/Zotero/storage/HJJK32NF/stamp.html} } @online{IEEEXploreFullTextb, title = {{{IEEE Xplore Full-Text PDF}}:}, - url = {https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=8558378}, + url = {https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=6520632}, urldate = {2024-09-10}, - file = {/home/jaseg/Zotero/storage/HJJK32NF/stamp.html} + file = {/home/jaseg/Zotero/storage/PQYCW7K7/stamp.html} } @online{ImpactPolarizationMode, @@ -2062,6 +2186,25 @@ file = {/home/jaseg/Zotero/storage/V8F2QBRE/Ivarsson and Nilsson - A Review of Hardware Security Modules Fall 2010.pdf} } +@article{ivarssonReviewHardwareSecuritya, + title = {A {{Review}} of {{Hardware Security Modules Fall}} 2010}, + author = {Ivarsson, Johan and Nilsson, Andreas}, + abstract = {This report describes a technical review of four leading network based Hardware Security Modules performed during the fall of 2010. When deriving the review point set the focus was primarily on security features and functionality used for DNSSEC applications. However the more interesting findings were in different areas such as usability and management procedures.}, + langid = {english}, + file = {/home/jaseg/Zotero/storage/WU926YEI/Ivarsson and Nilsson - A Review of Hardware Security Modules Fall 2010.pdf} +} + +@video{jameshoffmannBeginnersGuideFixing2025, + entrysubtype = {video}, + title = {A {{Beginner}}'s {{Guide To Fixing Bad Espresso}}}, + editor = {{James Hoffmann}}, + editortype = {director}, + date = {2025-01-08}, + url = {https://www.youtube.com/watch?v=MbTD42FvMVU}, + urldate = {2025-01-08}, + abstract = {Take the quiz to find your perfect trainer and get 14 days of free training here: https://go.trainwell.net/JamesHoffmann. On the importance of coffee grinders: ~~~•~A~Beginner's~Guide~to~Coffee~Grinders~~ On buying good coffee: ~~~•~A~Beginner's~Guide~To~Buying~Great~Co...~~ On espresso doses: ~~~•~Understanding~Espresso~-~Dose~(Episod...~~ On espresso ratios: ~~~•~Understanding~Espresso~-~Ratio~(Episo...~~ On espresso brew times: ~~~•~Understanding~Espresso~-~Brew~Time~(E...~~ On espresso grind size: ~~~•~Understanding~Espresso~-~Grind~Size~(...~~ On espresso brew temperature: ~~~•~Understanding~Espresso~-~Brew~Tempera...~~ On espresso pressure: ~~~•~Understanding~Espresso:~Pressure~(Epi...~~ On espresso baskets: ~~~•~Espresso~Machine~Baskets~Explained~~ On puck prep: ~~~•~How~I~Make~Espresso:~Tools~and~Techni...~~ On coffee tasting: ~~~•~A~Beginners~Guide~to~Coffee~Tasting~~ On coffee machine maintenance: ~~~•~The~Beginner’s~Guide~to~Coffee~Machin...~~ On the best water for coffee: ~~~•~The~Best~Water~for~Coffee~-~An~Introd...~~ On steaming milk: ~~~•~Everything~You~Need~To~Know~To~Steam~...~~ Link to other resources on water for coffee: https://www.jameshoffmann.co.uk/weird... Weird Coffee Person Design for my sweatshirt and prints: https://geni.us/THT-Joy Breville/Sage's website that sells coffee: https://www.beanz.com/ Timestamps 0:00 Introduction: You've Got A New Machine... Now What? 3:30 Is Your Coffee Fresh? 4:26 Is The Recipe Right? 7:32 Are Those The Right Coffee Beans For You? 10:42 Is Your Coffee Too Bitter? 11:27 Is Your Coffee Sour or Bitter (and What’s The Difference)? 15:07 Is Your Water The Culprit? 17:30 Is It The Equipment? Grinder or Espresso Machine? Other Links: Patreon: ~~/~jameshoffmann~~ Limited Edition Merch: https://geni.us/TensHundredsThousands Instagram: ~~/~jimseven~~ Twitter: ~~/~jimseven~~ My Books: How to Make The Best Coffee At Home*: https://geni.us/howtomakethebestcoffee The World Atlas of Coffee*: http://geni.us/atlasofcoffee The World Atlas of Coffee Audiobook*: https://bit.ly/worldatlasofcoffeeaudio The Best of Jimseven*: https://geni.us/bestofjimseven Things I use and like: My old glasses: http://bit.ly/boldlondon My new glasses (Sept 2024 onwards): https://bit.ly/thenewglasses My hair product of choice*: https://geni.us/forthehair (*Affiliate links which may earn us a commission)} +} + @incollection{jarvinenEmbeddedSFEOffloading2010, title = {Embedded {{SFE}}: {{Offloading Server}} and {{Network Using Hardware Tokens}}}, shorttitle = {Embedded {{SFE}}}, @@ -2516,11 +2659,11 @@ issn = {2511-9044, 2511-9044}, doi = {10.1002/qute.201800011}, url = {http://arxiv.org/abs/1703.09278}, - urldate = {2024-05-27}, + urldate = {2024-05-02}, abstract = {Quantum key distribution using weak coherent states and homodyne detection is a promising candidate for practical quantum-cryptographic implementations due to its compatibility with existing telecom equipment and high detection efficiencies. However, despite the actual simplicity of the protocol, the security analysis of this method is rather involved compared to discrete-variable QKD. In this article we review the theoretical foundations of continuous-variable quantum key distribution (CV-QKD) with Gaussian modulation and rederive the essential relations from scratch in a pedagogical way. The aim of this paper is to be as comprehensive and self-contained as possible in order to be well intelligible even for readers with little pre-knowledge on the subject. Although the present article is a theoretical discussion of CV-QKD, its focus lies on practical implementations, taking into account various kinds of hardware imperfections and suggesting practical methods to perform the security analysis subsequent to the key exchange. Apart from a review of well known results, this manuscript presents a set of new original noise models which are helpful to get an estimate of how well a given set of hardware will perform in practice.}, langid = {english}, keywords = {Quantum Physics}, - file = {/home/jaseg/Zotero/storage/I7UL2SKX/Laudenbach et al. - 2018 - Continuous-Variable Quantum Key Distribution with .pdf} + file = {/home/jaseg/Zotero/storage/A2BQHUUW/Laudenbach et al. - 2018 - Continuous-Variable Quantum Key Distribution with .pdf} } @article{laudenbachContinuousVariableQuantumKey2018a, @@ -2538,11 +2681,11 @@ issn = {2511-9044, 2511-9044}, doi = {10.1002/qute.201800011}, url = {http://arxiv.org/abs/1703.09278}, - urldate = {2024-05-02}, + urldate = {2024-05-27}, abstract = {Quantum key distribution using weak coherent states and homodyne detection is a promising candidate for practical quantum-cryptographic implementations due to its compatibility with existing telecom equipment and high detection efficiencies. However, despite the actual simplicity of the protocol, the security analysis of this method is rather involved compared to discrete-variable QKD. In this article we review the theoretical foundations of continuous-variable quantum key distribution (CV-QKD) with Gaussian modulation and rederive the essential relations from scratch in a pedagogical way. The aim of this paper is to be as comprehensive and self-contained as possible in order to be well intelligible even for readers with little pre-knowledge on the subject. Although the present article is a theoretical discussion of CV-QKD, its focus lies on practical implementations, taking into account various kinds of hardware imperfections and suggesting practical methods to perform the security analysis subsequent to the key exchange. Apart from a review of well known results, this manuscript presents a set of new original noise models which are helpful to get an estimate of how well a given set of hardware will perform in practice.}, langid = {english}, keywords = {Quantum Physics}, - file = {/home/jaseg/Zotero/storage/A2BQHUUW/Laudenbach et al. - 2018 - Continuous-Variable Quantum Key Distribution with .pdf} + file = {/home/jaseg/Zotero/storage/I7UL2SKX/Laudenbach et al. - 2018 - Continuous-Variable Quantum Key Distribution with .pdf} } @article{laudenbachContinuousVariableQuantumKey2018b, @@ -2588,7 +2731,7 @@ file = {/home/jaseg/Zotero/storage/SPNJ8KBL/Launchbury et al. - 2014 - Application-Scale Secure Multiparty Computation.pdf} } -@article{leePrintedSpiralWinding2011a, +@article{leePrintedSpiralWinding2011, title = {Printed {{Spiral Winding Inductor With Wide Frequency Bandwidth}}}, author = {Lee, Chi Kwan and Su, Y. P. and Ron Hui, S. Y.}, date = {2011-10}, @@ -2790,7 +2933,7 @@ file = {/home/jaseg/Zotero/storage/WBSKAYAN/Long et al. - 2024 - EM Eye Characterizing Electromagnetic Side-channe.pdf} } -@article{lopeFirstSelfResonant2021, +@article{lopeFirstSelfresonantFrequency2021, title = {First Self‐resonant Frequency of Power Inductors Based on Approximated Corrected Stray Capacitances}, author = {Lope, Ignacio and Carretero, Claudio and Acero, Jesus}, date = {2021-02}, @@ -2929,6 +3072,36 @@ file = {/home/jaseg/Zotero/storage/FCPRRWEK/Marhoefer et al. - Applicability of Quantum Cryptography for Securing.pdf} } +@book{markantonakisSecureSmartEmbedded2014, + title = {Secure Smart Embedded Devices, Platforms and Applications}, + author = {Markantonakis, Konstantinos and Mayes, Keith}, + date = {2014}, + publisher = {Springer}, + location = {New York, NY Heidelberg}, + isbn = {978-1-4614-7914-7 978-1-4614-7915-4}, + langid = {english}, + pagetotal = {568} +} + +@incollection{martinaOpenHSMOpenKey2007, + title = {{{OpenHSM}}: {{An Open Key Life Cycle Protocol}} for {{Public Key Infrastructure}}’s {{Hardware Security Modules}}}, + shorttitle = {{{OpenHSM}}}, + booktitle = {Public {{Key Infrastructure}}}, + author = {Martina, Jean Everson and family=Souza, given=Tulio Cicero Salvaro, prefix=de, useprefix=true and Custodio, Ricardo Felipe}, + editor = {Lopez, Javier and Samarati, Pierangela and Ferrer, Josep L.}, + editora = {Hutchison, David and Kanade, Takeo and Kittler, Josef and Kleinberg, Jon M. and Mattern, Friedemann and Mitchell, John C. and Naor, Moni and Nierstrasz, Oscar and Pandu Rangan, C. and Steffen, Bernhard and Sudan, Madhu and Terzopoulos, Demetri and Tygar, Doug and Vardi, Moshe Y. and Weikum, Gerhard}, + editoratype = {redactor}, + date = {2007}, + volume = {4582}, + pages = {220--235}, + publisher = {Springer Berlin Heidelberg}, + location = {Berlin, Heidelberg}, + doi = {10.1007/978-3-540-73408-6_16}, + url = {http://link.springer.com/10.1007/978-3-540-73408-6_16}, + urldate = {2024-12-13}, + isbn = {978-3-540-73407-9 978-3-540-73408-6} +} + @inproceedings{martinMultiturnTwistedInductor2016, title = {A Multi-Turn Twisted Inductor for on-Chip Cross-Talk Reduction}, booktitle = {2016 {{IEEE International Conference}} on the {{Science}} of {{Electrical Engineering}} ({{ICSEE}})}, @@ -3171,7 +3344,7 @@ file = {/home/jaseg/Zotero/storage/EBAXQHG5/Mosavirik et al. - 2022 - ImpedanceVerif On-Chip Impedance Sensing for Syst.pdf} } -@article{mosavirikSiliconEchoesNonInvasive2023a, +@article{mosavirikSiliconEchoesNonInvasive2023, title = {Silicon {{Echoes}}: {{Non-Invasive Trojan}} and {{Tamper Detection}} Using {{Frequency-Selective Impedance Analysis}}}, shorttitle = {Silicon {{Echoes}}}, author = {Mosavirik, Tahoura and Monfared, Saleh Khalaj and Safa, Maryam Saadat and Tajik, Shahin}, @@ -3187,7 +3360,7 @@ abstract = {The threat of chip-level tampering and its detection has been widely researched. Hardware Trojan insertions are prominent examples of such tamper events. Altering the placement and routing of a design or removing a part of a circuit for side-channel leakage/fault sensitivity amplification are other instances of such attacks. While semi- and fully-invasive physical verification methods can confidently detect such stealthy tamper events, they are costly, time-consuming, and destructive. On the other hand, virtually all proposed non-invasive side-channel methods suffer from noise and, therefore, have low confidence. Moreover, they require activating the tampered part of the circuit (e.g., the Trojan trigger) to compare and detect the modifications. In this work, we introduce a non-invasive post-silicon tamper detection technique applicable to different classes of tamper events at the chip level without requiring the activation of the malicious circuit. Our method relies on the fact that physical modifications (regardless of their physical, activation, or action characteristics) alter the impedance of the chip. Hence, characterizing the impedance can lead to the detection of the tamper events. To sense the changes in the impedance, we deploy known RF tools, namely, scattering parameters, in which we inject sine wave signals with high frequencies to the power distribution network (PDN) of the system and measure the “echo” of the signal. The reflected signals in various frequency bands reveal different tamper events based on their impact size on the die. To validate our claims, we performed measurements on several proof-ofconcept tampered hardware implementations realized on FPGAs manufactured with a 28 nm technology. We further show that deploying the Dynamic Time Warping (DTW) distance can distinguish between tamper events and noise resulting from manufacturing process variation of different chips/boards. Based on the acquired results, we demonstrate that stealthy hardware Trojans, as well as sophisticated modifications of P\&R, can be detected.}, issue = {4}, langid = {english}, - keywords = {Backscattered Side-channel,Hardware Trojans,Impedance Characterization,Physical Layer Security,Scattering Parameters,Tamper Detection}, + keywords = {Backscattered Side-channel,Hardware Trojans,Impedance Characterization,Physical Layer Security,sampling-mesh,Scattering Parameters,Tamper Detection}, file = {/home/jaseg/Sync/Research/Zotero/2023_Mosavirik et al_Silicon Echoes2.pdf} } @@ -3299,6 +3472,23 @@ file = {/home/jaseg/Zotero/storage/3XBD9Z7V/Murali et al. - 2023 - Continuous Authentication Using Human-Induced Elec.pdf} } +@article{murtazaPortableHardwareSecurity2022, + title = {A Portable Hardware Security Module and Cryptographic Key Generator}, + author = {Murtaza, Malik Hamza and Tahir, Hasan and Tahir, Shahzaib and Alizai, Zahoor Ahmed and Riaz, Qaiser and Hussain, Mehdi}, + date = {2022-11-01}, + journaltitle = {Journal of Information Security and Applications}, + shortjournal = {Journal of Information Security and Applications}, + volume = {70}, + pages = {103332}, + issn = {2214-2126}, + doi = {10.1016/j.jisa.2022.103332}, + url = {https://www.sciencedirect.com/science/article/pii/S2214212622001776}, + urldate = {2024-12-13}, + abstract = {It has been noted with concern that the ability of a password to keep an information system secure is diminishing. Increasingly sophisticated attack vectors and low memorability associated with complicated passwords are among the leading reasons limiting security provisioned by passwords. Cryptographic keys suffer from issues including lack of memorability, vulnerable storage mechanisms, key retrieval attacks, lockouts due to key loss and risk of using the same key for multiple services. This study proposes a novel Hardware Security Module (HSM) as a basis for the generation/ re-creation of cryptographic keys. The designed hardware module entirely eliminates the stored cryptographic keys thus eliminating attacks against stored keys. The HSM derives the cryptographic key from sub-components behaving similar to multi-factor authentication, where each factor is an independent authenticator. The proposed scheme enhances security by incorporating physical security into digital security, i.e. as long as either the crypto provider device remains secure or the human component remains secure, the system security remains intact. The scheme proposes a strategy based on defense in depth to secure the HSM, its user, the related service from attacks ranging from simple shoulder surfing to sophisticated Man-in-the-Middle attacks. The proposed HSM is based on commodity hardware components thus having limited cost implications.}, + keywords = {Cryptography,Hardware security module,Key generator,Key-based authentication,Multi factor authentication,Physical Unclonable Function (PUF)}, + file = {/home/jaseg/Zotero/storage/QP5FG729/S2214212622001776.html} +} + @article{nassiLamphonePassiveSound, title = {Lamphone: {{Passive Sound Recovery}} from a {{Desk Lamp}}’s {{Light Bulb Vibrations}}}, author = {Nassi, Ben and Pirutin, Yaron and Swissa, Raz and Shamir, Adi and Elovici, Yuval and Zadov, Boris}, @@ -3800,6 +3990,15 @@ file = {/home/jaseg/Zotero/storage/MJR5J958/Coil Winding.pdf} } +@article{rahmanComprehensiveSurveyHardwareSoftware, + title = {A {{Comprehensive Survey}} on {{Hardware-Software}} Co-{{Protection}} against {{Invasive}}, {{Non-Invasive}} and {{Interactive Security Threats}}}, + author = {Rahman, Habibur}, + abstract = {In the face of escalating security threats in modern computing systems, there is an urgent need for comprehensive defense mechanisms that can effectively mitigate invasive, noninvasive and interactive security vulnerabilities in hardware and software domains. Individually, hardware and software weaknesses and probable remedies have been practiced but protecting a combined system has not yet been discussed in detail. This survey paper provides a comprehensive overview of the emerging field of Hardware-Software co-Protection against Invasive and Non-Invasive Security Threats. We systematically review state-of-the-art research and developments in hardware and software security techniques, focusing on their integration to create synergistic defense mechanisms. The survey covers a wide range of security threats, including physical attacks, side-channel attacks, and malware exploits, and explores the diverse strategies employed to counter them. Our survey meticulously examines the landscape of security vulnerabilities, encompassing both physical and software-based attack vectors, and explores the intricate interplay between hardware and software defenses in mitigating these threats.Furthermore, we discuss the challenges and opportunities associated with Hardware-Software co-Protection and identify future research directions to advance the field. Through this survey, we aim to provide researchers, practitioners, and policymakers with valuable insights into the latest advancements and best practices for defending against complex security threats in modern computing environments.}, + langid = {english}, + keywords = {sampling-mesh}, + file = {/home/jaseg/Zotero/storage/EKJ87EQG/Rahman - A Comprehensive Survey on Hardware-Software co-Pro.pdf} +} + @article{RenesasRA6T1Group, title = {Renesas {{RA6T1 Group User}}'s {{Manual}}: {{Hardware}}}, langid = {english}, @@ -4001,6 +4200,24 @@ file = {/home/jaseg/Zotero/storage/LYZND7TS/Saeif et al. - 2023 - The Day-After-Tomorrow On the Performance of Radi.pdf} } +@article{samiAdvancingTrustworthinessSysteminPackage2024, + title = {Advancing {{Trustworthiness}} in {{System-in-Package}}: {{A Novel Root-of-Trust Hardware Security Module}} for {{Heterogeneous Integration}}}, + shorttitle = {Advancing {{Trustworthiness}} in {{System-in-Package}}}, + author = {Sami, Md Sami Ul Islam and Zhang, Tao and Shuvo, Amit Mazumder and Haque, Md Saad Ul and Calzada, Paul E. and Azar, Kimia Zamiri and Kamali, Hadi Mardani and Rahman, Fahim and Farahmandi, Farimah and Tehranipoor, Mark}, + date = {2024}, + journaltitle = {IEEE Access}, + volume = {12}, + pages = {48081--48107}, + issn = {2169-3536}, + doi = {10.1109/ACCESS.2024.3375874}, + url = {https://ieeexplore.ieee.org/document/10466542/?arnumber=10466542}, + urldate = {2024-12-13}, + abstract = {The semiconductor industry has adopted heterogeneous integration (HI), incorporating modular intellectual property (IP) blocks (chiplets) into a unified system-in-package (SiP) to overcome the slowdown in Moore’s Law and Dennard scaling and to respond to the increasing demand for advanced integrated circuits (ICs). Despite the manifold benefits of HI, such as enhanced performance, reduced area overhead, and improved yield, this transformation has also led to security vulnerabilities in the SiP supply chain and in-field operations, ranging from chiplet piracy and SiP reverse engineering (RE) to information leakage. Although conventional countermeasures provide the desired robustness for monolithic ICs, they are insufficient for addressing these challenges in the context of HI. To address these concerns, this paper presents a novel root-of-trust architecture, augmenting the process of integration using a centralized chiplet hardware security module (CHSM), aiming to provide comprehensive and robust protection throughout the SiP supply chain and in-field operations. Also, the proposed architecture equipped with the CHSM effectively addresses potential security breaches while providing robust protection against zero-day attacks through its reconfigurable capabilities. Throughout five detailed case studies, this paper performs a comprehensive security analysis to illustrate the resilience of CHSM against contemporary attack scenarios in the HI domain.}, + eventtitle = {{{IEEE Access}}}, + keywords = {chiplet,Hardware security,hardware security module,Heterogeneous integration,Information leakage,Intellectual property,Multichip modules,Packaging,packaging technology,Reverse engineering,Security management,Semiconductor device manufacture,SiP security,Supply chain management,supply chain security,system-in-package,System-in-package,Trust management,vulnerability mitigation}, + file = {/home/jaseg/Sync/Research/Zotero/Sami et al_2024_Advancing Trustworthiness in System-in-Package.pdf;/home/jaseg/Zotero/storage/CHJP67V4/10466542.html} +} + @article{sasakiQuantumNetworksWhere2017, title = {Quantum Networks: Where Should We Be Heading?}, shorttitle = {Quantum Networks}, @@ -4129,6 +4346,24 @@ file = {/home/jaseg/Sync/Research/Zotero/2024_Sen et al_Origami Inductor.pdf;/home/jaseg/Zotero/storage/35VMZ29J/10462531.html} } +@article{seolTrustedIaaSEnvironment2016, + title = {A {{Trusted IaaS Environment}} with {{Hardware Security Module}}}, + author = {Seol, Jinho and Jin, Seongwook and Lee, Daewoo and Huh, Jaehyuk and Maeng, Seungryoul}, + date = {2016-05}, + journaltitle = {IEEE Transactions on Services Computing}, + volume = {9}, + number = {3}, + pages = {343--356}, + issn = {1939-1374}, + doi = {10.1109/TSC.2015.2392099}, + url = {https://ieeexplore.ieee.org/document/7010017/?arnumber=7010017&tag=1}, + urldate = {2024-12-13}, + abstract = {With the proliferation of cloud computing, security concerns about confidentiality violations of user data by the privileged domain and system administrators have been growing. This paper proposes secure cloud architecture with a hardware security module, which isolates cloud user data from potentially malicious privileged domains or cloud administrators. Within a securely isolated execution environment, the hardware security module provides essential security functionality with only restricted interfaces exposed to vulnerable management systems or cloud administrators. Such restriction prevents cloud administrators from affecting the security of guest VMs. The proposed architecture not only defends against wide attack vectors but also achieves a small TCB. This paper discusses our hardware and software implementation of the proposed cloud architecture, analyzes its security, and presents its performance results.}, + eventtitle = {{{IEEE Transactions}} on {{Services Computing}}}, + keywords = {Cloud computing,Computer architecture,Cryptography,Hardware,hardware security module,Hardware Security Module,Protocols,security,TCB}, + file = {/home/jaseg/Sync/Research/Zotero/Seol et al_2016_A Trusted IaaS Environment with Hardware Security Module.pdf;/home/jaseg/Zotero/storage/ZFNE2NAZ/7010017.html} +} + @article{shenDAENetMakingStrong2022, title = {{{DAENet}}: {{Making Strong Anonymity Scale}} in a {{Fully Decentralized Network}}}, shorttitle = {{{DAENet}}}, @@ -4415,22 +4650,6 @@ } @incollection{TamperResistance2020, - title = {Tamper {{Resistance}}}, - booktitle = {Security {{Engineering}}}, - date = {2020}, - pages = {599--637}, - publisher = {John Wiley \& Sons, Ltd}, - doi = {10.1002/9781119644682.ch18}, - url = {https://onlinelibrary.wiley.com/doi/abs/10.1002/9781119644682.ch18}, - urldate = {2024-12-03}, - abstract = {The security engineer needs to understand what tamper resistance is, and what it can and can't do. In this chapter, the author takes the reader through the past thirty years of evolution of attack and defence. The banking community realised that commercial operating systems were likely to remain insufficient to protect PINs, particularly from bank insiders, and decided to use separate hardware to manage them. This led to the development of standalone cryptographic modules or hardware security modules (HSMs). The chapter provides a few comments about the evaluation of HSMs. Each of the product categories discussed in this chapter, from HSMs down through FPGAs to smartcards, has a wide range of offerings with wide variability in the quality of protection. The security engineer will therefore have to pay attention to the many failure modes of systems involving tamper-resistant processors that are more or less independent of the price or technical tamper-resistance of the device.}, - isbn = {978-1-119-64468-2}, - langid = {english}, - keywords = {banking community,FPGAs,hardware security modules,security engineer,smartcards,tamper resistance}, - file = {/home/jaseg/Zotero/storage/DSFCQBZB/9781119644682.html} -} - -@incollection{TamperResistance2020a, title = {Tamper {{Resistance}}}, booktitle = {Security {{Engineering}}}, date = {2020}, @@ -4492,6 +4711,20 @@ urldate = {2024-09-19} } +@book{tehranipoorIntroductionHardwareSecurity2012, + title = {Introduction to {{Hardware Security}} and {{Trust}}}, + editor = {Tehranipoor, Mohammad and Wang, Cliff}, + date = {2012}, + publisher = {Springer New York}, + location = {New York, NY}, + doi = {10.1007/978-1-4419-8080-9}, + url = {https://link.springer.com/10.1007/978-1-4419-8080-9}, + urldate = {2024-12-13}, + isbn = {978-1-4419-8079-3 978-1-4419-8080-9}, + langid = {english}, + file = {/home/jaseg/Zotero/storage/QX3DYZC3/Tehranipoor and Wang - 2012 - Introduction to Hardware Security and Trust.pdf} +} + @article{tobischPhysicalSystemsIntegrity, title = {Physical Systems for Integrity Protection and Authentication}, author = {Tobisch, Johannes}, @@ -4550,7 +4783,7 @@ urldate = {2024-07-25}, abstract = {Tamper detection circuits provide the first and most important defensive wall in protecting electronic modules containing security data. A widely used procedure is to cover the entire module with a foil containing fine conductive mesh, which detects intrusion attempts. Detection circuits are further classified as passive or active. Passive circuits have the advantage of low power consumption, however they are unable to detect small variations in the conductive mesh parameters. Since modern tools provide an upper leverage over the passive method, the most efficient way to protect security modules is thus to use active circuits. The active tamper detection circuits are typically probing the conductive mesh with short pulses, analyzing its response in terms of delay and shape. The method proposed in this paper generates short pulses at one end of the mesh and analyzes the response at the other end. Apart from measuring pulse delay, the analysis includes a frequency domain characterization of the system, determining whether there has been an intrusion or not, by comparing it to a reference (un-tampered with) spectrum. The novelty of this design is the combined analysis, in time and frequency domains, of the small variations in mesh characteristic parameters.}, eventtitle = {2017 40th {{International Spring Seminar}} on {{Electronics Technology}} ({{ISSE}})}, - keywords = {Clocks,Delays,Frequency-domain analysis,Mesh networks,Microcontrollers,Security,Shape}, + keywords = {Clocks,Delays,Frequency-domain analysis,Mesh networks,Microcontrollers,sampling-mesh,Security,Shape}, file = {/home/jaseg/Sync/Research/Zotero/2017_Vasile et al_Active tamper detection circuit based on the analysis of pulse response in2.pdf;/home/jaseg/Zotero/storage/CY2XYJWB/8000987.html} } @@ -4565,10 +4798,42 @@ urldate = {2024-07-25}, abstract = {The paper presents an improved method to detect tamper intrusions based on an active circuit. It is composed of a logical part, a microcontroller, capable of generating pulses that follow the rule of a linear-feedback shift register (LFSR), and an analogical part made of a mesh network, used to cover secure modules, and a pulse forming circuit. Pulses resulted from this forming circuit are analyzed by the microcontroller to determine the durations between pulses and the durations of pulses. The novelty of this method is that the pulses are generated synchronously at both ends of the mesh network in order to prevent any attempts of an attacker to break the wire of the mesh network and to simulate the generation of pulses.}, eventtitle = {2016 {{IEEE}} 22nd {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, - keywords = {active,Copper,Delays,Generators,LFSR,mesh,Mesh networks,Microcontrollers,Pins,Resistance,security,tamper}, + keywords = {active,Copper,Delays,Generators,LFSR,mesh,Mesh networks,Microcontrollers,Pins,Resistance,sampling-mesh,security,tamper}, file = {/home/jaseg/Sync/Research/Zotero/2016_Vasile et al_Improved tamper detection circuit based on linear-feedback shift register.pdf;/home/jaseg/Zotero/storage/RRHPBYLR/7777261.html} } +@inproceedings{vasileProtectingSecretsAdvanced2019, + title = {Protecting the {{Secrets}}: {{Advanced Technique}} for {{Active Tamper Detection Systems}}}, + shorttitle = {Protecting the {{Secrets}}}, + booktitle = {2019 {{IEEE}} 25th {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, + author = {Vasile, Daniel-Ciprian and Svasta, Paul}, + date = {2019-10}, + pages = {212--215}, + issn = {2642-7036}, + doi = {10.1109/SIITME47687.2019.8990877}, + url = {https://ieeexplore.ieee.org/document/8990877/?arnumber=8990877}, + urldate = {2024-12-13}, + abstract = {Cryptographic modules and security circuits are the kernels of every piece of equipment that process security data. No matter where they are deployed, the equipment must be protected against physical attacks, as no one can access the electronic circuits that process the security data: firmware implementations, cryptographic keys and secret data. The most effective way to protect this kind of electronic circuits is to wrap them in a special conductive mesh and probe it with proper signals in order to detect intrusions. This paper provides a complete solution for intrusions detection: a system made of a special conductive mesh and an active tamper detection circuit. The conductive mesh consists of three layers that detect intrusions earlier than the effective penetration of the mesh. The active tamper detection circuit is designed to probe the mesh with signals that cannot be emulated by an adversary.}, + eventtitle = {2019 {{IEEE}} 25th {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, + keywords = {anti-tamper,cryptography,mesh,security}, + file = {/home/jaseg/Sync/Research/Zotero/Vasile_Svasta_2019_Protecting the Secrets.pdf;/home/jaseg/Zotero/storage/TBDMU8PT/8990877.html} +} + +@inproceedings{vasileTemperatureSensitiveActive2017, + title = {Temperature Sensitive Active Tamper Detection Circuit}, + booktitle = {2017 {{IEEE}} 23rd {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, + author = {Vasile, D. C. and Svasta, P. M.}, + date = {2017-10}, + pages = {175--178}, + doi = {10.1109/SIITME.2017.8259885}, + url = {https://ieeexplore.ieee.org/document/8259885/?arnumber=8259885}, + urldate = {2024-12-12}, + abstract = {Electronic modules designed for processing sensitive data, such as cryptographic modules, firmware solutions protected by intellectual property rights and secure communication devices, use special circuits designed for protecting these solutions from unauthorized physical access. The main components of these circuits are the conductive mesh structure, which acts as a protective cover, and the active tamper detection circuit. Besides the physical attacks, there are side channel attacks, where an attacker takes advantage of the errors produced by the logic circuits functioning in extreme conditions. When logic circuits are subject of temperatures that exceed the operational limits, they may run with faults and create proper conditions for cryptographic attacks. This paper proposes an active tamper detection circuit that analyses the temperature (and its variation gradient) of the conductive mesh. This method improves and complements the protection functions of the active tamper detection circuits.}, + eventtitle = {2017 {{IEEE}} 23rd {{International Symposium}} for {{Design}} and {{Technology}} in {{Electronic Packaging}} ({{SIITME}})}, + keywords = {active,Cryptography,Electronic circuits,Ports (Computers),Program processors,sampling-mesh,security,tamper,temperature,Temperature distribution,Temperature measurement,Temperature sensors}, + file = {/home/jaseg/Sync/Research/Zotero/Vasile_Svasta_2017_Temperature sensitive active tamper detection circuit.pdf;/home/jaseg/Zotero/storage/RDC8GN3K/8259885.html} +} + @inproceedings{voloshynovskiyInformationtheoreticAnalysisElectronic2006, title = {Information-Theoretic Analysis of Electronic and Printed Document Authentication}, author = {Voloshynovskiy, Sviatoslav and Koval, Oleksiy and Villan, Renato and Topak, Emre and Vila Forcén, José Emilio and Deguillaume, Frederic and Rytsar, Yuriy and Pun, Thierry},