arXiv論文メモ
新着一覧
cs.CR · 査読状況未確認

FPGAの部分再構成中に生じる光学的な情報漏えいを検証

The Achilles' Heel of Partial Reconfiguration: Optical Side-Channel Leakage on the 7-Series ICAP

Antonio Saavedra, Jan Caspar Marx, Lars Renkes, Jean-Pierre Seifert

この論文をやさしく読む

ひとことで言うと

FPGAの暗号化方式を改良しても、内部で復号後の構成データが通る部分から光学的に情報が漏れる可能性を実機で検証しています。

何に役立つ?

FPGAのビットストリーム保護を評価する際、暗号処理だけでなく再構成インターフェースも含めた物理的な保護を検討するための研究です。

この研究の面白いところ

修正可能な暗号処理を使っても、その先に固定されたデータ経路が残る点に着目しています。暗号方式と内部インターフェースの保護は別の問題だと示します。

どこまで分かった?

具体的な抽出実証はAMD XC7A200Tで、光学的な観測・計測を伴うものです。要旨にはすべてのFPGA系列に対する実証や、遠隔からの攻撃結果は記載されていません。

v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。

アブストラクトの日本語訳

主要なFPGAメーカーは、機密性の高い構成データを守るため、ビットストリーム暗号化を取り入れてきた。しかし、広く使われるFPGA系列では、デバイスに固定実装されて修正できない保護方式に対する複数の攻撃により、保護の回避や完全な破壊が可能であり、修正可能な方式が望まれる。 本研究では、Programmable Logicからの部分再構成を用いて、7-Series FPGAのビットストリームを保護する、AMDが提案した非対称鍵暗号方式の概念実証実装を示す。この実装のセキュリティ上の意味とハードウェアの追加負担を分析する。続いて、動的再構成の過程で平文の構成データを復元できる光学的サイドチャネル攻撃を提案し、実証する。 この攻撃は光子放出顕微鏡法と電気光学プロービングを利用し、Programmable Logicと構成ロジックを内部で接続するICAPインターフェースの位置を特定した後、そこから非接触で平文データを取り出す。AMD XC7A200TデバイスでICAPのバスを特定し、その上のデータを電気光学プロービングで抽出できることを示す。部分再構成と独自の暗号エンジンを使う高度な暗号方式であっても、再構成には固定実装された脆弱な構成インターフェースを通る必要があるため、光学攻撃に弱いと主張する。

v1の要旨から自動生成。本文の精読・人による確認は未実施。

初稿
2026-10-01(UTC)
最新改訂
2026-10-01 · v1
査読・掲載
査読状況未確認
arXivで読むPDF

更新履歴

取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。

原文の要旨

Major FPGA manufacturers have incorporated bitstream encryption to protect sensitive configuration data. However, for the most widely used FPGA families, multiple attacks against unpatchable protection schemes hard-wired into the devices can bypass or fully break them, making patchable schemes desirable. In this work, we present a proof-of-concept implementation of an AMD-proposed asymmetric key encryption scheme for bitstream protection for 7-Series FPGAs, using partial reconfiguration from the Programmable Logic. We analyze the security implications and hardware overhead of this implementation. We then propose and demonstrate an optical side-channel attack that is able to recover plain-text configuration data during the dynamic reconfiguration process. This attack leverages Photon Emission Microscopy and Electro-Optical Probing to first locate and then contactlessly extract the plain-text data from the ICAP interface, which internally connects the Programmable Logic with the configuration logic. We located the ICAP buses in an AMD XC7A200T device and show that the data on it can be extracted with Electro-Optical Probing. We claim that even advanced encryption schemes utilizing Partial Reconfiguration and custom cryptographic engines are vulnerable to optical attacks, as reconfiguration is only possible via hard-wired, vulnerable configuration interfaces.

著者のコメント

Accepted for publication in the 29th Euromicro Conference on Digital System Design (DSD 2026)

arXiv ID: 2610.01736 / 要約の誤りについて