A novel differential scan attack on advanced DFT structures

  • Authors:
  • Jean Da Rolt;Giorgio Di Natale;Marie-Lise Flottes;Bruno Rouzeyre

  • Affiliations:
  • Laboratoire de Robotique, Informatique et Microelectronique de Montpellier;Laboratoire de Robotique, Informatique et Microelectronique de Montpellier;Laboratoire de Robotique, Informatique et Microelectronique de Montpellier;Laboratoire de Robotique, Informatique et Microelectronique de Montpellier

  • Venue:
  • ACM Transactions on Design Automation of Electronic Systems (TODAES) - Special Section on Networks on Chip: Architecture, Tools, and Methodologies
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

Scan chains insertion is the most common technique to ensure the testability of digital cores, providing high fault coverage. However, for ICs dealing with secret information, scan chains can be used as back doors for accessing secret data thus becoming a threat to system security. So far, advanced test structures used to reduce test costs (e.g., response compaction) and achieve high fault coverage (e.g., X's masking decoder) have been considered as intrinsic countermeasures against these threats. This work proposes a new generic scan-based attack demonstrating that these test structures are not sufficiently effective to prevent leakage through the test infrastructure. This generic attack can be easily adapted to several cryptographic implementations for both symmetric and public key algorithms. The proposed attack is demonstrated on several ciphers.