SaTC: STARSS: Collaborative: IPTrust: A Comprehensive Framework for IP Integrity Validation
SaTC: STARSS: Collaborative: IPTrust: A Comprehensive Framework for IP Integrity Validation
批准号:
1603483
负责人:
Swarup Bhunia
金额:
$19.1万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2015
资助国家:
美国
项目状态:
已结题
起止时间:
2015-09-01 至 2020-09-30
中文摘要
为了在满足上市时间限制的同时降低生产成本,半导体公司通常设计具有可重复使用的硬件模块的硬件系统,通常称为知识产权(IP)模块。对这些硬件IP(通常来自不受信任的第三方供应商)的日益依赖严重影响了最终系统的安全性和可信性。从外部来源获取的硬件IP可能带有故意的恶意植入、作为隐藏后门工作的未记录接口或其他完整性问题。被篡改的硬件IP可能会导致安全和隐私问题(例如,在手持设备中使用时)以及危及生命的后果(例如,当在安全关键系统中使用时)。由于硬件IP的功能规范不完整,缺乏黄金参考模型,验证硬件IP的完整性和可信性极其困难。为了满足这一迫切的需求,在这个项目中,我们开发了一个全面的、可扩展的IP信任分析和验证框架。我们评估不同类型和形式的IP,并开发IP信任/完整性问题的威胁模型、分类和实例。本文研究了一种综合了功能验证、结构验证和参数验证功能的IP信任验证框架。我们使用统计测试和明智的定向测试来敏感很少触发的恶意更改,并观察它们的影响。统一验证框架可以灵活地检测不同的篡改工作,可扩展到大型设计,并且不再需要黄金模型。一个用于IP信任验证、威胁分析和信任度量的平台将为未来的设计人员提供使能技术,以便为不同的应用程序实现安全和可信的系统。
英文摘要
To reduce production cost while meeting time-to-market constraints, semiconductor companies usually design hardware systems with reusable hardware modules, popularly known as Intellectual Property (IP) blocks. Growing reliance on these hardware IPs, often gathered from untrusted third-party vendors, severely affects the security and trustworthiness of the final system. The hardware IPs acquired from external sources may come with deliberate malicious implants, undocumented interfaces working as hidden backdoor, or other integrity issues. Tampered hardware IPs can lead to security and privacy concerns (e.g., when used in handheld devices) as well as life-threatening consequences (e.g., when used in safety-critical systems). It is extremely difficult to verify the integrity and trustworthiness of hardware IPs due to incomplete functional specifications and lack of golden reference models. To address this critical need, in this project, we develop a comprehensive and scalable framework for IP trust analysis and verification. We evaluate IPs of diverse types and forms and develop threat models, taxonomy and instances of IP trust/integrity issues. We investigate an integrative IP trust validation framework that combines the complementary abilities of functional, structural and parametric verification. We employ both statistical as well as judicious directed tests to sensitize rarely triggered malicious changes and observe their effects. The unified validation framework is flexible to detect diverse tampering efforts, scalable to large designs, and eliminates the need for a golden model. A platform for IP trust validation, threat analysis, and trust metrics would provide enabling technology to future designers to implement secure and trusted systems for diverse applications.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: EDU: Hardware Security Education for All Through Seamless Extension of Existing Curricula
-
批准号:2114165
-
项目类别:Standard Grant
-
资助金额:$9.0万
-
财政年份:2021
-
负责人:Swarup Bhunia
-
依托单位:
Collaborative Research: Distributed Electro-Mechanical Transmitters for Adaptive and Power-Efficient Wireless Communications in RF-Denied Environments
-
批准号:2104195
-
项目类别:Standard Grant
-
资助金额:$14.97万
-
财政年份:2020
-
负责人:Swarup Bhunia
-
依托单位:
Planning Grant: Engineering Research Center for Intelligent Sensing, Mapping, and Forecasting of Water Quality for Sustainable Coastal Ecosystems (iCoast)
-
批准号:1936864
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2019
-
负责人:Swarup Bhunia
-
依托单位:
Collaborative Research: SURPASS: NSF SFS Unique Scholarship Program in Hardware and Systems Security
-
批准号:1662976
-
项目类别:Continuing Grant
-
资助金额:$250.85万
-
财政年份:2017
-
负责人:Swarup Bhunia
-
依托单位:
Support for the International Symposium on Hardware-Oriented Security and Trust (HOST)
-
批准号:1720541
-
项目类别:Standard Grant
-
资助金额:$1.8万
-
财政年份:2017
-
负责人:Swarup Bhunia
-
依托单位:
SHF: Medium: Collaborative Research: Materials authentication using nuclear quadrupole resonance spectroscopy
-
批准号:1563924
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2016
-
负责人:Swarup Bhunia
-
依托单位:
TUES:Type1:Collaborative: An Integrative Hands-on Approach to Security Education for Undergraduate Students
-
批准号:1603480
-
项目类别:Standard Grant
-
资助金额:$2.98万
-
财政年份:2015
-
负责人:Swarup Bhunia
-
依托单位:
CAREER: An Integrative and Scalable Approach to Embedded Hardware Protection
-
批准号:1603475
-
项目类别:Standard Grant
-
资助金额:$15.26万
-
财政年份:2015
-
负责人:Swarup Bhunia
-
依托单位:
SaTC: STARSS: Collaborative: IPTrust: A Comprehensive Framework for IP Integrity Validation
-
批准号:1441705
-
项目类别:Standard Grant
-
资助金额:$19.33万
-
财政年份:2014
-
负责人:Swarup Bhunia
-
依托单位:
TUES:Type1:Collaborative: An Integrative Hands-on Approach to Security Education for Undergraduate Students
-
批准号:1245756
-
项目类别:Standard Grant
-
资助金额:$8.0万
-
财政年份:2013
-
负责人:Swarup Bhunia
-
依托单位:
CAREER: An Integrative and Scalable Approach to Embedded Hardware Protection
-
批准号:1054744
-
项目类别:Standard Grant
-
资助金额:$46.18万
-
财政年份:2011
-
负责人:Swarup Bhunia
-
依托单位:
SHF: Small: Device-Circuit-Architecture Co-Design for Reconfigurable Computing at the Extreme
-
批准号:1116102
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2011
-
负责人:Swarup Bhunia
-
依托单位:
SHF: Medium: Collaborative Research: System Level Self Correction Using On-Chip Micro Sensor Network and Autonomous Feedback Control
-
批准号:0964514
-
项目类别:Continuing Grant
-
资助金额:$30.0万
-
财政年份:2010
-
负责人:Swarup Bhunia
-
依托单位:
COLLABORATIVE RESEARCH: RECONFIGURABLE COMPUTING USING 2D NANOSCALE MEMORY ARRAY FOR MULTIMEDIA SIGNAL PROCESSING
-
批准号:1002237
-
项目类别:Standard Grant
-
资助金额:$19.64万
-
财政年份:2010
-
负责人:Swarup Bhunia
-
依托单位:
海外基金