DANA Universal Dataflow Analysis for Gate-Level Netlist Reverse Engineering

网络列表 数据流 逆向工程 专用集成电路 计算机科学 嵌入式系统 计算机硬件 设计流量 现场可编程门阵列 地点和路线 计算机体系结构 并行计算 操作系统
作者
Nils Albartus,Max Hoffmann,Sebastian Temme,Leonid Azriel,Christof Paar
出处
期刊:IACR transactions on cryptographic hardware and embedded systems 卷期号:: 309-336 被引量:11
标识
DOI:10.46586/tches.v2020.i4.309-336
摘要

Reverse engineering of integrated circuits, i.e., understanding the internals of Integrated Circuits (ICs), is required for many benign and malicious applications. Examples of the former are detection of patent infringements, hardware Trojans or Intellectual Property (IP)-theft, as well as interface recovery and defect analysis, while malicious applications include IP-theft and finding insertion points for hardware Trojans. However, regardless of the application, the reverse engineer initially starts with a large unstructured netlist, forming an incomprehensible sea of gates.This work presents DANA, a generic, technology-agnostic, and fully automated dataflow analysis methodology for flattened gate-level netlists. By analyzing the flow of data between individual Flip Flops (FFs), DANA recovers high-level registers. The key idea behind DANA is to combine independent metrics based on structural and control information with a powerful automated architecture. Notably, DANA works without any thresholds, scenario-dependent parameters, or other “magic” values that the user must choose. We evaluate DANA on nine modern hardware designs, ranging from cryptographic co-processors, over CPUs, to the OpenTitan, a stateof- the-art System-on-Chip (SoC), which is maintained by the lowRISC initiative with supporting industry partners like Google and Western Digital. Our results demonstrate almost perfect recovery of registers for all case studies, regardless whether they were synthesized as FPGA or ASIC netlists. Furthermore, we explore two applications for dataflow analysis: we show that the raw output of DANA often already allows to identify crucial components and high-level architecture features and also demonstrate its applicability for detecting simple hardware Trojans.Hence, DANA can be applied universally as the first step when investigating unknown netlists and provides major guidance for human analysts by structuring and condensing the otherwise incomprehensible sea of gates. Our implementation of DANA and all synthesized netlists are available as open source on GitHub.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
PDF的下载单位、IP信息已删除 (2025-6-4)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
科研通AI6应助张乐采纳,获得10
1秒前
大模型应助shenerqing采纳,获得10
1秒前
FashionBoy应助orca采纳,获得10
1秒前
凹ring芝完成签到 ,获得积分10
2秒前
Hello应助crazy采纳,获得10
3秒前
核桃仁完成签到,获得积分10
3秒前
dew应助大意的冰真采纳,获得10
4秒前
轻舟发布了新的文献求助10
4秒前
赘婿应助赵思宁采纳,获得10
4秒前
核桃应助Hwj采纳,获得10
4秒前
miu发布了新的文献求助10
5秒前
脆筒发布了新的文献求助10
5秒前
浮游应助郁静飘瑶采纳,获得10
5秒前
6秒前
6秒前
xm完成签到 ,获得积分10
6秒前
orixero应助whf采纳,获得10
6秒前
7秒前
7秒前
Astrid完成签到,获得积分10
8秒前
风趣月饼完成签到,获得积分10
8秒前
森屿海港完成签到,获得积分10
8秒前
无尘泪发布了新的文献求助10
8秒前
9秒前
啸西风完成签到,获得积分10
9秒前
淡然柚子发布了新的文献求助10
9秒前
YZY发布了新的文献求助10
10秒前
10秒前
无辜的姒完成签到,获得积分10
10秒前
DUOZI完成签到,获得积分20
11秒前
javascript完成签到,获得积分10
11秒前
12秒前
科研小白发布了新的文献求助10
12秒前
mark2021完成签到,获得积分10
13秒前
zz发布了新的文献求助10
14秒前
15秒前
15秒前
乐观的夏彤完成签到,获得积分10
15秒前
胡涂图完成签到 ,获得积分10
16秒前
111发布了新的文献求助10
16秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Synthesis and properties of compounds of the type A (III) B2 (VI) X4 (VI), A (III) B4 (V) X7 (VI), and A3 (III) B4 (V) X9 (VI) 500
Microbially Influenced Corrosion of Materials 500
Die Fliegen der Palaearktischen Region. Familie 64 g: Larvaevorinae (Tachininae). 1975 500
The Experimental Biology of Bryophytes 500
The YWCA in China The Making of a Chinese Christian Women’s Institution, 1899–1957 400
Numerical controlled progressive forming as dieless forming 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 生物化学 物理 纳米技术 计算机科学 内科学 化学工程 复合材料 物理化学 基因 遗传学 催化作用 冶金 量子力学 光电子学
热门帖子
关注 科研通微信公众号,转发送积分 5396796
求助须知:如何正确求助?哪些是违规求助? 4517121
关于积分的说明 14062479
捐赠科研通 4428983
什么是DOI,文献DOI怎么找? 2432179
邀请新用户注册赠送积分活动 1424661
关于科研通互助平台的介绍 1403657