搜索

x

留言板

尊敬的读者、作者、审稿人, 关于本刊的投稿、审稿、编辑和出版的任何问题, 您可以本页添加留言。我们将尽快给您答复。谢谢您的支持!

姓名
邮箱
手机号码
标题
留言内容
验证码

物理型硬件木马失效机理及检测方法

骆扬 王亚楠

引用本文:
Citation:

物理型硬件木马失效机理及检测方法

骆扬, 王亚楠

Physical hardware trojan failure analysis and detection method

Luo Yang, Wang Ya-Nan
PDF
导出引用
  • 对两种物理型硬件木马造成芯片退化或失效的机理进行了详细分析. 通过使用ATLAS 二维器件仿真系统并结合SmartSpice电路逻辑仿真器, 模拟了两种物理型硬件木马对反相器逻辑电路输出特性的影响. 使用ATHENA工艺仿真系统模拟了掺杂离子注入工艺过程, 实现了掺杂型硬件木马的金属-氧化物-半导体场效应管(MOSFET)器件; 使用热载流子注入退化模型对ATLAS 仿真器件进行热载流子压力测试, 以模拟热载流子注入型硬件木马注入MOSFET器件并造成器件退化失效的过程, 分别将上述掺杂型硬件木马和热载流子注入型硬件木马的MOSFET器件与另一个正常MOSFET器件组成同样的反相器逻辑电路. 反相器使用Spice 逻辑电路仿真输出DC直流、AC瞬态传输特性以研究物理型硬件木马对电路输出特性的影响. 为了研究MOSFET器件的物理特性本身对硬件木马的影响, 在不同温度不同宽长比(W/L)下同样对反相器进行Spice电路逻辑输出仿真. 本文分析了离子掺杂工艺、热载流子注入压力测试形成的物理型硬件木马随压力强度、温度的变化对逻辑电路输出特性的影响. 通过结果对比分析得出了含有物理型硬件木马的逻辑电路在DC直流输出特性上的扰动比AC瞬态传输特性更明显的结论. 因此, 本文提出了一种针对物理型硬件木马的检测流程. 同时, 该检测流程是一种具有可操作性的检测物理型硬件木马的方法.
    The semiconductor industry is rapidly developing in the global market, and chip design companies usually purchase the third-party EDA tools in order to shorten the design cycle of IC and reduce manufacturing cost. Therefore, in the IC chip production procedure there exist a lot of insecurity factors, and the hardware security of IC chips becomes the most important issue of the national security defense. Physical hardware trojan will modify the value of register, leak sensitive data and cause device degradation failure. Furthermore, the physical hardware trojans only modify the physical properties of the circuit chip rather than injects the malicious functional circuit. They are hidden more deeply than logical hardware trojans. Therefore, it is far-reaching significance issues for the hardware trojan detection methods and national security to study logic circuit transmission characteristics and the chip degradation failure physical mechanism which are caused by injection physical hardware trojans. In this paper, a metal-oxide-semiconductor field-effect transistor (MOSFET) device with injection dopant hardware trojan is realized by using ATHENA process simulation system to achieve the ion implantation process. The ATLAS simulation devices are tested using hot carrier injection degradation (hot carrier degradation is denoted by HCD) stress model for the degradation failure process which is caused by injecting the hot carrier injection hardware trojan (HCHT) into the MOSFET device. Another normal MOSFET combines with dopant hardware trojan MOSFET or hot carrier injection hardware trojan MOSFET to comprise the same inverter logic circuit by using the ATLAS two-dimensional (2D) device simulation system with SmartSpice instructions mode. The effect on logic circuit output characteristics caused by physical hardware trojan is studied by using Spice simulation to output the DC and AC transient time characteristics. It is also studied how the W/L value of a hardware trojan transistor influences the output characteristics of the logic circuit. We design an experiment to study transient characteristics of the same inverter logic module which consists of different W/L values of a transistor at different temperatures. The experiment is realized by Spice circuit simulation. In this paper, the effects of the variations of the HCD stress intensity and temperature on output characteristic are analyzed for hot carrier injection hardware trojan. The results indicate that the negative effect of hardware trojan on logic circuit DC current output characteristic is more obvious than AC transient time characteristic. Thus, we propose an effective method and a convenient procedure to detect the injection physical hardware trojan in packaged chips. Furthermore, the test process is a feasible operation method of detecting physical hardware trojan.
      通信作者: 骆扬, mddr@163.com
    • 基金项目: 国家自然科学基金(批准号: 61402536)资助的课题.
      Corresponding author: Luo Yang, mddr@163.com
    • Funds: Project supported by the National Natural Science Foundation of China (Grant No. 61402536)
    [1]

    Tehranipoor M, Koushanfar F 2010 IEEE Design Test of Computers 27 10

    [2]

    Alkabani Y, Koushanfar F 2009 Proceedings of Computer-Aided Design-Digest of Technical Papers San Jose, CA Nov. 2-5, 2009 p123

    [3]

    Banga M, Hsiao M S 2009 Proceedings of Hardware Oriented Security and Trust Francisco, CA July 27-27, 2009 p104

    [4]

    Koushanfar F, Mirhoseini A 2011 IEEE Trans. Inform. Forensics and Security 6 162

    [5]

    Koushanfar F, Mirhoseini A, Alkabani Y 2010 Proceedings of the Information Hiding Calgary, AB June 28-30, 2010 p17

    [6]

    Koushanfar F, Potkonjak M 2007 Proceedings of Design Automation Conference San Diego, CA June 4-8, 2007 p268

    [7]

    Wei S, Potkonjak M 2011 Proceedings of the Network and System Security Milan Sept. 6-8, 2011 p176

    [8]

    Wei S, Li K, Farina, Koushanfar, Miodrag Potkonjak 2012 Proceedings of Design Automation Conference San Francisco, CA June 3-7, 2012 p90

    [9]

    Becker G T, Regazzoni F, Paar C, Burleson W P 2013 Cryptographic Hardware and Embedded Systems (California: Santa Barbara) pp197-214

    [10]

    Zhang X W, En Y F 2015 The Reliability Evaluation Method of Semiconductor Integrated Circuit (Beijing: Electronic Industry Press) p142 (in Chinese) [章晓文, 恩云飞 2015 半导体集成电路的可靠性及评价方法(北京: 电子工业出版社) 第142页]

    [11]

    Liu H X, Zheng X F, Hao Y 2005 Acta Phys. Sin. 54 1373 (in Chinese) [刘红侠, 郑雪峰, 郝跃 2005 54 1373]

    [12]

    Li Z H, Liu H X, Hao Y 2006 Acta Phys. Sin. 55 820 (in Chinese) [李忠贺, 刘红侠, 郝跃 2006 55 820]

    [13]

    Xu J P, Li C X, Wu H P 2005 Acta Phys. Sin. 54 2918 (in Chinese) [徐静平, 李春霞, 吴海平 2005 54 2918]

    [14]

    Lei X Y, Liu H X, Zhang K, Zhang Y, Zheng X F, Ma X H, Hao Y 2013 Chin. Phys. B 22 047304

    [15]

    Donald A N(translated by Xie S) 2015 An Introduction to Semiconductor Devices (Beijing: Electronic Industry Press) pp224-245 (in Chinese) [唐纳德 A N 著(谢生 译) 2015 半导体导论 (北京: 电子工业出版社) 第224-245页]

    [16]

    Austin T, Blaauw D, Mudge T, Flautner K 2004 Computer 37 57

    [17]

    Ahmad I, Kornain Z, Idros M F M 2006 Proceedings of Optoelectronic and Microelectronic Materials and Devices Perth, WA Dec. 6-8, 2006 p298

    [18]

    Sato T, Kunitake Y 2007 Proceedings of the Quality Electronic Design San Jose, CA March 26-28, 2007 p539

    [19]

    Agarwal M, Paul B C, Zhang M, Mitra S 2007 Proceedings of the VLSI Test Symmposium Berkeley, CA May 6-10, 2007 p277

    [20]

    Quader K, Ko P, Hu C, Fang P, Yue J 1992 Proceedings of the Reliability Physics Symposium San Diego, CA March 31-April 2, 1992 p16

    [21]

    Zhang J, Chu S F S 2002 IEEE Trans. Electron. Dev. 49 1672

    [22]

    Zhang X H, Tehranipoor M 2011 Proceedings of the Design, Automation { Test in Europe Conference Exhibition Grenoble March 14-18, 2011 p1

    [23]

    Shiyanovskii Y, Wolff F, Rajendran A, Papachristou C, Weyer D, Clay W 2010 Proceedings of the Adaptive Hardware and System Anaheim June 15-18, 2010 p215

  • [1]

    Tehranipoor M, Koushanfar F 2010 IEEE Design Test of Computers 27 10

    [2]

    Alkabani Y, Koushanfar F 2009 Proceedings of Computer-Aided Design-Digest of Technical Papers San Jose, CA Nov. 2-5, 2009 p123

    [3]

    Banga M, Hsiao M S 2009 Proceedings of Hardware Oriented Security and Trust Francisco, CA July 27-27, 2009 p104

    [4]

    Koushanfar F, Mirhoseini A 2011 IEEE Trans. Inform. Forensics and Security 6 162

    [5]

    Koushanfar F, Mirhoseini A, Alkabani Y 2010 Proceedings of the Information Hiding Calgary, AB June 28-30, 2010 p17

    [6]

    Koushanfar F, Potkonjak M 2007 Proceedings of Design Automation Conference San Diego, CA June 4-8, 2007 p268

    [7]

    Wei S, Potkonjak M 2011 Proceedings of the Network and System Security Milan Sept. 6-8, 2011 p176

    [8]

    Wei S, Li K, Farina, Koushanfar, Miodrag Potkonjak 2012 Proceedings of Design Automation Conference San Francisco, CA June 3-7, 2012 p90

    [9]

    Becker G T, Regazzoni F, Paar C, Burleson W P 2013 Cryptographic Hardware and Embedded Systems (California: Santa Barbara) pp197-214

    [10]

    Zhang X W, En Y F 2015 The Reliability Evaluation Method of Semiconductor Integrated Circuit (Beijing: Electronic Industry Press) p142 (in Chinese) [章晓文, 恩云飞 2015 半导体集成电路的可靠性及评价方法(北京: 电子工业出版社) 第142页]

    [11]

    Liu H X, Zheng X F, Hao Y 2005 Acta Phys. Sin. 54 1373 (in Chinese) [刘红侠, 郑雪峰, 郝跃 2005 54 1373]

    [12]

    Li Z H, Liu H X, Hao Y 2006 Acta Phys. Sin. 55 820 (in Chinese) [李忠贺, 刘红侠, 郝跃 2006 55 820]

    [13]

    Xu J P, Li C X, Wu H P 2005 Acta Phys. Sin. 54 2918 (in Chinese) [徐静平, 李春霞, 吴海平 2005 54 2918]

    [14]

    Lei X Y, Liu H X, Zhang K, Zhang Y, Zheng X F, Ma X H, Hao Y 2013 Chin. Phys. B 22 047304

    [15]

    Donald A N(translated by Xie S) 2015 An Introduction to Semiconductor Devices (Beijing: Electronic Industry Press) pp224-245 (in Chinese) [唐纳德 A N 著(谢生 译) 2015 半导体导论 (北京: 电子工业出版社) 第224-245页]

    [16]

    Austin T, Blaauw D, Mudge T, Flautner K 2004 Computer 37 57

    [17]

    Ahmad I, Kornain Z, Idros M F M 2006 Proceedings of Optoelectronic and Microelectronic Materials and Devices Perth, WA Dec. 6-8, 2006 p298

    [18]

    Sato T, Kunitake Y 2007 Proceedings of the Quality Electronic Design San Jose, CA March 26-28, 2007 p539

    [19]

    Agarwal M, Paul B C, Zhang M, Mitra S 2007 Proceedings of the VLSI Test Symmposium Berkeley, CA May 6-10, 2007 p277

    [20]

    Quader K, Ko P, Hu C, Fang P, Yue J 1992 Proceedings of the Reliability Physics Symposium San Diego, CA March 31-April 2, 1992 p16

    [21]

    Zhang J, Chu S F S 2002 IEEE Trans. Electron. Dev. 49 1672

    [22]

    Zhang X H, Tehranipoor M 2011 Proceedings of the Design, Automation { Test in Europe Conference Exhibition Grenoble March 14-18, 2011 p1

    [23]

    Shiyanovskii Y, Wolff F, Rajendran A, Papachristou C, Weyer D, Clay W 2010 Proceedings of the Adaptive Hardware and System Anaheim June 15-18, 2010 p215

  • [1] 熊家骋, 黄哲群, 张恒, 王启祥, 崔可航. 热光伏器件中的光谱调控.  , 2024, 73(14): 144402. doi: 10.7498/aps.73.20240629
    [2] 王其钰, 王朔, 周格, 张杰男, 郑杰允, 禹习谦, 李泓. 锂电池失效分析与研究进展.  , 2018, 67(12): 128501. doi: 10.7498/aps.67.20180757
    [3] 符民, 文尚胜, 夏云云, 向昌明, 马丙戌, 方方. GaN基通孔垂直结构的发光二极管失效分析.  , 2017, 66(4): 048501. doi: 10.7498/aps.66.048501
    [4] 刘畅, 卢继武, 吴汪然, 唐晓雨, 张睿, 俞文杰, 王曦, 赵毅. 超短沟道绝缘层上硅平面场效应晶体管中热载流子注入应力导致的退化对沟道长度的依赖性.  , 2015, 64(16): 167305. doi: 10.7498/aps.64.167305
    [5] 段宝兴, 杨银堂, 陈敬. F离子注入新型Al0.25Ga0.75 N/GaN HEMT 器件耐压分析.  , 2012, 61(22): 227302. doi: 10.7498/aps.61.227302
    [6] 林晓玲, 肖庆中, 恩云飞, 姚若河. 倒装芯片塑料球栅阵列封装器件在外应力下的失效机理.  , 2012, 61(12): 128502. doi: 10.7498/aps.61.128502
    [7] 商怀超, 刘红侠, 卓青青. 低剂量率60Co γ 射线辐照下SOI MOS器件的退化机理.  , 2012, 61(24): 246101. doi: 10.7498/aps.61.246101
    [8] 游海龙, 蓝建春, 范菊平, 贾新章, 查薇. 高功率微波作用下热载流子引起n型金属-氧化物-半导体场效应晶体管特性退化研究.  , 2012, 61(10): 108501. doi: 10.7498/aps.61.108501
    [9] 薛正群, 黄生荣, 张保平, 陈朝. GaN基白光发光二极管失效机理分析.  , 2010, 59(7): 5002-5009. doi: 10.7498/aps.59.5002
    [10] 刘培生. 多孔材料在压缩载荷作用下的屈曲失效模式分析.  , 2010, 59(12): 8801-8806. doi: 10.7498/aps.59.8801
    [11] 王祖军, 唐本奇, 肖志刚, 刘敏波, 黄绍艳, 张勇. 质子辐照电荷耦合器件诱导电荷转移效率退化的实验分析.  , 2010, 59(6): 4136-4142. doi: 10.7498/aps.59.4136
    [12] 谷文萍, 郝跃, 张进城, 王冲, 冯倩, 马晓华. 高场应力及栅应力下AlGaN/GaN HEMT器件退化研究.  , 2009, 58(1): 511-517. doi: 10.7498/aps.58.511
    [13] 沈自才, 孔伟金, 冯伟泉, 丁义刚, 刘宇明, 郑慧奇, 赵雪, 赵春晴. 热控涂层光学性能退化模型研究.  , 2009, 58(2): 860-864. doi: 10.7498/aps.58.860
    [14] 刘宇安, 杜 磊, 包军林. 金属氧化物半导体场效应管热载流子退化的1/fγ噪声相关性研究.  , 2008, 57(4): 2468-2475. doi: 10.7498/aps.57.2468
    [15] 陈海峰, 郝 跃, 马晓华, 唐 瑜, 孟志琴, 曹艳荣, 周鹏举. 超薄栅下LDD nMOSFET器件GIDL应力下退化特性.  , 2007, 56(3): 1662-1667. doi: 10.7498/aps.56.1662
    [16] 李忠贺, 刘红侠, 郝 跃. 超深亚微米PMOS器件的NBTI退化机理.  , 2006, 55(2): 820-824. doi: 10.7498/aps.55.820
    [17] 刘红侠, 郑雪峰, 郝 跃. NBT导致的深亚微米PMOS器件退化与物理机理.  , 2005, 54(3): 1373-1377. doi: 10.7498/aps.54.1373
    [18] 宋国峰, 甘巧强, 瞿 欣, 方培源, 高建霞, 曹 青, 徐 军, 康香宁, 徐 云, 钟 源, 杨国华, 陈良惠. 微小孔径激光器的工艺及器件功率和寿命特性分析.  , 2005, 54(12): 5609-5613. doi: 10.7498/aps.54.5609
    [19] 任红霞, 郝 跃. 新型槽栅PMOSFET热载流子退化机理与抗热载流子效应研究.  , 2000, 49(9): 1683-1688. doi: 10.7498/aps.49.1683
    [20] 刘家璐, 张廷庆, 李建军, 赵元富. BF2+注入多晶硅栅常规热退火氟迁移特性的二次离子质谱分析.  , 1997, 46(8): 1580-1584. doi: 10.7498/aps.46.1580
计量
  • 文章访问数:  5797
  • PDF下载量:  373
  • 被引次数: 0
出版历程
  • 收稿日期:  2016-02-16
  • 修回日期:  2016-03-08
  • 刊出日期:  2016-06-05

/

返回文章
返回
Baidu
map