课题基金 / 基金详情

Cyber System:Research: Security Aware Design for Test Methods

Cyber System:Research: Security Aware Design for Test Methods
网络系统:研究:测试方法的安全意识设计
批准号:
0622039
负责人:
Kaijie Wu
金额:
$11.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2006
资助国家:
美国
项目状态:
已结题
起止时间:
2006-09-01 至 2010-08-31

项目摘要

项目成果

Kaijie Wu的其他基金

相似基金

相关文献

中文摘要
翻译
测试设计(DFT)技术通过改进从主要输入处对内部节点的控制,或通过改进在主要输出处对内部节点上的值的观察,或两者兼而有之,改进了对硬件设备内部状态的访问。另一方面,从安全角度考虑,硬件设备应该将内部状态的可控性和可观察性降到最低,从而最大限度地减少/消除对片上敏感信息的访问。需要保护的敏感信息可能包括存储在加密设备上的密钥、设计中包含的有价值的知识产权以及运行在通用处理器上的安全软件。知识价值:将研究传统DFT技术在各种设备(包括加密硬件、运行安全软件的嵌入式处理器和包含有价值知识产权的硬件设备)中引入的安全漏洞。并非所有DFT技术都可能引入安全漏洞。即使给定的DFT技术也可能不会在所有芯片和所有嵌入式处理器中引入安全漏洞。例如,在拥有数万个触发器的大型芯片和处理器中,测试数据通常被压缩在芯片上。这本身就使得攻击者的任务相当困难,甚至不可能。然而,在低端智能卡中使用的嵌入式处理器和加密加速器中,由于触发器数量有限,测试数据不会被压缩。我们将通过考虑这些因素系统地描述脆弱性。在不损害安全性的情况下提高可测试性的DFT机制也将被研究。pi还将通过了解流行的扫描DFT及其变体(如带有片上压缩和解压电路的扫描)引入的侧通道,研究可测试性和安全性之间的相互作用和权衡,并开发安全感知DFT技术,如安全扫描和加密扫描。最后,该提案将通过发起基于DFT的攻击来验证安全感知的DFT技术,这些攻击是容易受到攻击的,并通过评估结果的可测试性来验证。更广泛的影响:这项研究将带来智能卡和植入式生物医学电子设备的好处,而不会损害其财务和医疗安全。该研究将证明安全性是任何设计的重要设计指标,而不仅仅是安全硬件。本研究将在伊利诺伊理工学院和伊利诺伊大学的研究生和本科生教育中发挥重要作用。pi将在研究生项目导向的课程中引入安全意识测试。优秀的本科生将参与与本项目相关的项目,作为计算机工程本科高级设计项目的一部分。在伊利诺伊大学,PI将改革一系列课程,重点关注安全嵌入式系统设计。
英文摘要
Design for Test (DFT) techniques improve access to the internal state of hardware devices either by improving control of internal nodes from the primary inputs or by improving observation of values on internal nodes at the primary outputs or both. On the other hand, from a security perspective, hardware devices should minimize the controllability and observability of the internal state to a minimum and thereby minimize/eliminate access to sensitive on-chip information. The sensitive information that needs to be protected may include secret keys stored on cryptographic devices, valuable Intellectual Property incorporated into designs and security software running on general purpose processors.Intellectual merit: The security vulnerabilities introduced by traditional DFT techniques in a variety of devices including cryptographic hardware, embedded processors running security software and hardware devices that contain valuable intellectual property will be investigated. Not all DFT techniques may introduce security vulnerabilities. Even a given DFT technique may not introduce security vulnerabilities in all chips and in all embedded processors. For example, in large chips and processors with over tens of thousands of flip flops, test data is typically compressed on chip. This in itself makes the task of an attacker quite difficult nay impossible. However, in embedded processors and crypto accelerators used in low end smart cards, test data is not compressed owing to the limited number of flip flops. We will systematically characterize the vulnerabilities by accounting for these factors. The DFT mechanisms that improve testability without compromising security will also be investigated. The PIs will also study the interaction and trade-offs between Testability and Security by understanding the side channels introduced by popular Scan DFT and its variants such as scan with on-chip compression and decompression circuitry and develop security-aware DFT techniques such as secure-scan and encrypted-scan. Finally, the proposal will validate the security-aware DFT techniques by launching DFT-based attacks that they were vulnerable to and by evaluating the resulting testability.Broader impacts: This research will bring the benefits of smartcard and implantable biomedical electronic devices without compromising their financial and medical security to the general population. The research will demonstrate that security is an important design metric of any design and not just security hardware. This research will play a prominent role in the education of graduate and undergraduate students at Polytechnic and at University of Illinois. The PIs will introduce security aware test in a graduate project oriented courses. Outstanding undergraduates will participate in projects related to this project as part of an undergraduate Senior Design Project for Computer Engineering sequence. At University of Illinois, the PI will reform a sequence of courses to focus on secure embedded system design.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
CT-ISG: Collaborative Research: Fault Tolerance in Crypto Hardware via Dynamic Assertion Checking
  • 批准号:
    0831301
  • 项目类别:
    Standard Grant
  • 资助金额:
    $23.17万
  • 财政年份:
    2008
  • 负责人:
    Kaijie Wu
  • 依托单位:
国内基金
海外基金
基于铁死亡探讨黄芪甲苷调控System/Xc-/GSH/GPX4信号通路在神经损伤性勃起功能障碍治疗中的作用及机制研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2025
  • 负责人:
    马轲
  • 依托单位:
Data-driven Recommendation System Construction of an Online Medical Platform Based on the Fusion of Information
TBX1/LKB1轴阻断system Xc活性调控AML细胞铁死亡的机制研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    15.0万元
  • 批准年份:
    2024
  • 负责人:
  • 依托单位:
TET2通过调控BAP1-System Xc-轴促进紫拉非尼诱导的肝细胞癌铁死亡的机制研究
  • 批准号:
    --
  • 项目类别:
    青年科学基金项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
    --
  • 依托单位: