USB powered devices: A survey of side-channel threats and countermeasures

被引:6
|
作者
Liu, Hao [1 ]
Spolaor, Riccardo [1 ]
Turrin, Federico [2 ]
Bonafede, Riccardo [3 ]
Conti, Mauro [2 ]
机构
[1] Shandong Univ, Sch Comp Sci & Technol, Qingdao, Peoples R China
[2] Univ Padua, Dept Math, Padua, Italy
[3] Univ Padua, Dept Informat Engn, Padua, Italy
来源
HIGH-CONFIDENCE COMPUTING | 2021年 / 1卷 / 01期
关键词
Smart devices; USB; Side-channel; Security; USAGE ANALYSIS; ATTACKS;
D O I
10.1016/j.hcc.2021.100007
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recent technological innovations lead to the rise of a plethora of portable electronic devices such as smartphones, small household appliances, and other IoT devices. To power or recharge the battery of such devices, manufac-turers identified in the ubiquitous Universal Serial Bus (USB) standard a convenient solution, as it enables both communication and energy supply. Unfortunately, the default trust on USB ports has been exploited by hackers to extract highly sensitive user data on such devices. Despite the efforts by security experts and manufacturers to detect and block this threat, an even more stealthy approach to undermine users privacy relies on side-channel attacks on the USB interface, such as electromagnetic emissions and power consumption.In this paper, we present a comprehensive survey of the state-of-the-art of side-channel analysis on the security of USB-powered devices. Differently from other surveys on USB-based attacks via the communication interface only, this survey considers research works that aim to infer or extract private information from the energy supply, the device itself, or unintentionally available functionalities. In particular, we consider this emergent trend of security work that was not previously considered in other surveys, such as the energy consumption and electromagnetic emission analyses, as well as Juice Filming Charging (JFC) attacks. We first analyze the physical properties of the side-channels and technical characteristics of such research work, we then summarize the countermeasures proposed in the state-of-the-art. Finally, we also identify some possible future directions to foster further research in this field.
引用
收藏
页数:12
相关论文
共 50 条
  • [41] A Survey of of Side-Channel Attacks and Mitigation for Processor Interconnects
    Yuan, Jie
    Zhang, Jing
    Qiu, Pengfei
    Wei, Xinghai
    Liu, Dongxiao
    APPLIED SCIENCES-BASEL, 2024, 14 (15):
  • [42] On Inferring Browsing Activity on Smartphones via USB Power Analysis Side-Channel
    Yang, Qing
    Gasti, Paolo
    Zhou, Gang
    Farajidavar, Aydin
    Balagani, Kiran S.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2017, 12 (05) : 1056 - 1066
  • [43] Secure compilation of side-channel countermeasures: the case of cryptographic "constant-time"
    Barthe, Gilles
    Gregoire, Benjamin
    Laporte, Vincent
    IEEE 31ST COMPUTER SECURITY FOUNDATIONS SYMPOSIUM (CSF 2018), 2018, : 328 - 343
  • [44] A simulated approach to evaluate side-channel attack countermeasures for the Advanced Encryption Standard
    Crocetti, Luca
    Baldanzi, Luca
    Bertolucci, Matteo
    Sarti, Luca
    Carnevale, Berardino
    Fanucci, Luca
    INTEGRATION-THE VLSI JOURNAL, 2019, 68 : 80 - 86
  • [45] Design and Implementation of a Reconfigurable Cryptographic Coprocessor with Multiple Side-Channel Attacks Countermeasures
    Shang, Xinchao
    Shan, Weiwei
    Liu, Xinning
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2018, 27 (11)
  • [46] Power Side-Channel Attacks and Countermeasures on Computation-in-Memory Architectures and Technologies
    Sapui, Brojogopal
    Krautter, Jonas
    Mayahinia, Mahta
    Jafari, Atousa
    Gnad, Dennis
    Meschkov, Sergej
    Tahoori, Mehdi B.
    2023 IEEE EUROPEAN TEST SYMPOSIUM, ETS, 2023,
  • [47] Roadmap of post-quantum cryptography standardization: Side-channel attacks and countermeasures
    Shaller, Ari
    Zamir, Linir
    Nojoumian, Mehrdad
    INFORMATION AND COMPUTATION, 2023, 295
  • [48] Implications of Noise Insertion Mechanisms of Different Countermeasures Against Side-Channel Attacks'
    Yu, Weize
    Kose, Selcuk
    2017 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS (ISCAS), 2017,
  • [49] Combining Clock and Voltage Noise Countermeasures against Power Side-Channel Analysis
    Lagasse, Jacqueline
    Bartoli, Christopher
    Burleson, Wayne
    2019 IEEE 30TH INTERNATIONAL CONFERENCE ON APPLICATION-SPECIFIC SYSTEMS, ARCHITECTURES AND PROCESSORS (ASAP 2019), 2019, : 214 - 217
  • [50] Cache Side-Channel Attacks: Flush plus Flush and the Countermeasures Time Gap
    Bhebe, Keith Nyasha
    Liu, Jian
    Qu, Wenyu
    2019 IEEE 25TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2019, : 880 - 887