REVIEW 3 major objections 5 minor 34 references
Design-Agnostic Distributed Timing Fault Injection Monitor With End-to-End Design Automation
T0 review · 3 major / 5 minor · reviewed 2026-08-10 · deepseek-v4-flash
Pith's one-line read The paper claims that a standard-cell-only clock-pulse-width monitor, generated automatically and distributable across a chip, can detect all twelve clock glitch types and timing fault injections via voltage, electromagnetic interference…
desk verdict Strong silicon validation and a real automation contribution, but the security coverage claim overreaches relative to the attack model. read the letter →
The pith
A machine-rendered reading of the paper's core claim, the machinery that carries it, and where it could break.
The reading
What carries the argument
The load-bearing object is the configurable delay line together with the locking FSM and the acceptance window. The delay line produces three pulses—PMin, PL, and PMax—that set the minimum acceptable delay, the locked replica of the clock's pulse width, and the maximum acceptable delay. At the falling clock edge, the monitor samples whether the replica has already fired and whether it has not yet exceeded the window; any sample pattern other than RMin = 0 and RMax = 1 raises a glitch alert in the same cycle. The automation framework's core mechanism is the delay-line compiler, which simulates candidate standard-cell delay cells, optimizes the coarse, medium, and fine stage sizes against an area model that balances counter area against medium-stage area, runs automatic place and route, verifies post-layout tuning range and resolution, and returns the smallest monitor that satisfies the requested frequency range and resolution.
What would settle it
Inject a fast, localized disturbance, for example a roughly 1 ns supply droop covering only a register's data path while leaving the monitor's replica delay line unaffected, with a clean clock, and observe whether a register samples a wrong value while no alert is raised. If such an experiment produces an undetected timing fault, the claim that the monitor detects timing FIAs via voltage, EM, and temperature as stated is falsified.
Extended reading notes
Core claim
The central claim is that tracking the clock's positive pulse width with a delay-locked replica catches both entry points of a timing FIA: hijacking the clock changes the pulse width directly, and delay-manipulation attacks change the replica delay relative to the clock, causing the sampled window bits to deviate from the expected pattern. The paper enumerates twelve clock glitch types, shows that one monitor catches nine and a second monitor tracking the negative phase catches the rest, and reports that with an acceptance window of 400 ps or less all twelve are detected at a 250 MHz clock. Voltage glitches down to 120 mV, a 60 mV EMI disturbance, and fast heating or freezing attacks are all detected, while slow temperature drift over the automotive range does not trigger false alerts. The monitor is built entirely from standard cells using a coarse ring-oscillator-counting stage, a thermometer-coded medium stage, and a fine varactor-like stage, with an on-chip finite-state machine that locks in 7 to 26 clock cycles. The only bypass the paper acknowledges is an attack that changes gate delay and then matches the clock pulse width to the new delay, in which case no timing violation exists at the register.
Load-bearing premise
The security claim rests on the assumption that any timing fault injection that actually corrupts a register will change either the clock pulse width or the replica delay enough to fall outside the monitor's acceptance window, and that the monitor's slow-drift tracking will not follow an attack-induced change.
Editorial extensions
If this is right
- A digital design team can insert timing-FIA protection by running the compiler and instantiating the generated monitor as standard-cell IP, with no analog design, manual layout, or post-silicon calibration.
- Distributing monitors across the chip in a checkerboard of positive-phase and negative-phase units covers all twelve clock-glitch types and localized voltage, EM, and temperature attacks.
- Because the monitor slow-tracks clock drift, normal environmental changes such as a -40 to 125 °C temperature ramp do not raise false alerts, while fast heating or freezing attacks do.
- The same monitor IP scales to other process nodes: the 28 nm runs produce smaller footprints and higher locking frequencies than the measured 65 nm results.
- The measured power and area overheads, 0.2 to 1.12 mW and 1500 µm² in 65 nm, are small enough that the monitor can be distributed densely rather than placed once per chip.
Reading between the lines
- A residual gap not quantified in the paper is a spatially mismatched attack: if a voltage, EM, or temperature disturbance changes the guarded data path's delay more than it changes the replica delay, the monitor could in principle miss a timing fault that actually corrupts a register; mapping that spatial sensitivity would sharpen the coverage claim.
- The detection guarantee is conditional on acceptance-window sizing, since the paper shows 400 ps catches all twelve glitch types at 250 MHz while wider windows sacrifice detection of short T5-T12-type events; a designer trading yield against security needs a quantitative window-selection rule.
- The same architecture could serve as an on-chip clock-integrity sensor for safety-critical control logic, flagging excessive jitter, supply droop, or aging-induced delay drift even when no adversary is present.
- A testable extension is to place the monitor at increasing distances from the protected logic and repeat the voltage and EM experiments, producing a coverage map that tells designers how densely the monitors must be distributed for a given attack localization.
Signed reviews
Editorial analysis
A structured set of objections, weighed in public.
Referee Report
Summary. This manuscript proposes a fully synthesizable, standard-cell-only timing fault-injection monitor based on a delayed-lock loop that locks to the clock pulse width and raises an alert when the delayed replica falls outside a programmable acceptance window. It also presents an automated design framework that generates and optimizes the monitor from PDK/library inputs, and reports silicon results from a 65 nm test chip (50 DUTs; 2 MHz to 1.26 GHz locking range; 12 on-chip-injected glitch types; voltage, EMI, and temperature injection experiments) as well as two generated 28 nm designs. The central security claim is that the monitor detects all possible clock glitches and all timing FIAs launched through supply voltage, EM, and temperature, provided the acceptance window is set appropriately; the authors acknowledge that the window must be 'reasonable' but do not provide a quantitative method for choosing it in a real deployment.
Significance. If the detection guarantees hold, the work is significant: it offers a small (1500 um2, 0.355 MF2 in 65 nm), low-power (0.487 mW at 250 MHz) standard-cell monitor that is design-agnostic, synthesizable, and automatically instantiated by a toolchain. The silicon validation is unusually extensive for this class of work, including 50 DUTs, the automotive temperature range, 0.5 to 1.4 V supply sweeps, on-chip arbitrary glitch injection at 100 to 500 ps widths, and voltage, EMI, and temperature attack experiments. The end-to-end automation framework, with its delay-line optimization and post-layout verification loop, is a practical contribution. Notably, detection performance is measured against physically injected glitches and attacks rather than derived from the calibration itself, so the central empirical claim is not circular; however, the coverage arguments are incomplete in the ways detailed below. The significance is conditional on clarifying what the monitor actually observes (clock and replica-delay timing, not DUT data-path margins) and on bounding the attack rates and spatial scales to which the alarm is guaranteed.
major comments (3)
- [Section III.A and III.B] Section III.A states that 'the only possible way to bypass the monitor is to change the delay of the gates and then match that delay with the pulse width of the clock accordingly,' and concludes that no timing violation exists in that case. This is not implied by the monitor's alert condition. The alert condition in Section III.B samples RMin and RMax from the replica delay line at the falling clock edge; it compares the replica delay with the clock pulse width, not with the actual setup/hold margins of the protected data paths. A localized EM or temperature event can slow a critical data path without changing the delay of a non-co-located replica, producing a setup violation while RMin and RMax remain normal. The paper offers only a qualitative 'checkerboard' placement suggestion in Section III.B and no spatial sensitivity bound. Please provide a quantitative coverage model (for example, the maximum allowed distance between a monitor and the paths it protects, or a bound on how much faster a local attack can move a data path than the replica), or restrict the security claim to attacks that uniformly affect the replica and the clock.
- [Section III.E and Table II] Section III.E implements a Full Range Linear Tracking mode with temporal majority voting whose purpose is to follow slow clock drift, and Table II reports that a 2 degC/min temperature drift is treated as 'no glitch.' The same mechanism gives an attacker a slow-ramp bypass: by changing supply voltage or temperature at a rate below the FSM's tracking threshold, the attacker can gradually push the DUT into a timing violation while RL remains locked and no alert is raised. The manuscript does not report the maximum slew rate the tracking loop can follow, nor does it argue that all realistic attack ramps exceed that rate. Please bound this rate (for example, in ppm/s of clock period or in V/s of supply voltage) and demonstrate that the measured voltage, EM, and temperature attacks, or any adversary within the stated threat model, are outside the tracked envelope.
- [Section V.C, Fig. 19b, and Section II.A] Fig. 19b shows that the 'all 12 types' detection is achieved only for acceptance windows of 400 ps or smaller at the tested 250 MHz clock; at 500 ps, types T5 through T12 are missed. The acceptance window width is a free design parameter (Section III.A), and no method is given for choosing it from the known clock jitter, the required false-alert rate, and the attack profile. The abstract and conclusion state unqualified detection of 'all twelve types of possible clock glitches,' so the claim should either be qualified by the window setting or accompanied by a design-time procedure that selects the window and proves the selected value covers the intended threat model. In addition, the completeness of the T1-T12 taxonomy is asserted in Section II.A and Fig. 2 rather than demonstrated; the paper should define the class of waveforms it claims to cover or prove that arbitrary glitch waveforms reduce to detectable combinations of the listed types.
minor comments (5)
- [Fig. 19b and Section V.C] Please clarify how the 100 trials were distributed across glitch types and acceptance-window settings, and report the false-alert rate at each setting in addition to the miss rate, since the distinction between detection and false positive is central to the 'reasonable acceptance window' discussion.
- [Section V.D and Fig. 21] The voltage-glitch experiment injects a supply disturbance but does not state whether the DUT actually produced a faulty output; please state explicitly whether the monitored metric is attack detection or fault detection, and whether the two are distinguished in the measurements.
- [Table II] The 'Temperature Drift' row says 'No glitch'; please clarify that this means no false alert was raised during a non-attack drift, rather than that a glitch went undetected.
- [Section VI and Table I] The 28 nm rows in Table I are described as post-layout evaluation, but the text should state explicitly near the table that no 28 nm silicon was measured, to avoid the impression that the 28 nm results are as experimentally validated as the 65 nm results.
- [Section V.E] The phrase 'validated under a versatile of voltages' should read 'validated under a variety of voltages.'
Circularity Check
No significant circularity: detection claims are backed by direct silicon measurements and physical fault injection, not by a fitted parameter or self-citation chain.
full rationale
The paper's central claims are validated by direct measurement rather than derived from their own inputs. The monitor's alert condition (RMin != 0 or RMax != 1, sampled at the falling clock edge) is the designed detection mechanism itself, and the paper then independently tests that mechanism against injected clock glitches of all 12 enumerated types (Fig. 19b, Fig. 20b), voltage glitches (Fig. 21), EM interference (Fig. 22), and rapid temperature changes (Table II). These are empirical silicon measurements with a fabricated 65 nm chip across 50 DUTs, not predictions computed from fitted parameters. The acceptance window is a programmable detection threshold; the paper openly reports that larger windows miss certain glitch types, which is an honest characterization of a tunable sensitivity trade-off, not a circular 'prediction.' The only self-citation is reference [9], the authors' prior ISSCC paper, used in the sentence 'This article extends [9]' and as background for the basic monitor concept. That citation is not load-bearing here because the present paper provides the full design details, locking FSM, automation framework, and new 28 nm and 65 nm measurement results. The statement that 'the only possible way to bypass the monitor is to change the delay of the gates and then match that delay with the pulse width of the clock accordingly' is a security-assumption argument about replica-DUT coupling, not a circular reduction: it is a correctness/coverage concern, and under the paper's stated attack model the detection claim follows from the measured behavior of the fabricated monitors. No equation in the derivation chain reduces to its own input, and no fitted parameter is renamed as a prediction. Accordingly, the circularity score is 0.
Assumptions & free parameters
free parameters (3)
- Acceptance window width =
100-1600 ps tested; <=400 ps required for all 12 glitch types at 250 MHz
- Configurable delay line skip steps =
1 medium + 9 fine steps skipped per coarse step; 6 fine steps per medium step
- Fine-stage coverage margin =
50% margin
assumptions (4)
- ad hoc to paper The twelve clock-glitch waveforms T1-T12 exhaust all possible clock glitches.
- domain assumption A timing FIA either changes the clock pulse width or changes the replica delay line's delay relative to the clock.
- domain assumption Clock jitter is smaller than the acceptance window, and false alarms can be avoided by choosing the window.
- domain assumption Standard-cell-only delay lines with programmable skips remain monotonic after automatic place and route across PVT.
Cite this review
Pith. "Pith review of Design-Agnostic Distributed Timing Fault Injection Monitor With End-to-End Design Automation." pith.science (2026). https://pith.science/paper/LS47SB4D
@misc{pith2026250109665,
author = {Pith},
title = {Pith review of: Design-Agnostic Distributed Timing Fault Injection Monitor With End-to-End Design Automation},
year = {2026},
howpublished = {\url{https://pith.science/paper/LS47SB4D}},
note = {Machine review of arXiv:2501.09665}
}
read the original abstract
Fault injection attacks induce hardware failures in circuits and exploit these faults to compromise the security of the system. It has been demonstrated that FIAs can bypass system security mechanisms, cause faulty outputs, and gain access to secret information. Certain types of FIAs can be mounted with little effort by tampering with clock signals and or the chip operating conditions. To mitigate such low cost, yet powerful attacks, we propose a fully synthesizable and distributable in situ fault injection monitor that employs a delay locked loop to track the pulsewidth of the clock. We further develop a fully automated design framework to optimize and implement the FIA monitors at any process node. Our design is fabricated and verified in 65 nm CMOS technology with a small footprint of 1500 um2. It can lock to clock frequencies from 2 MHz to 1.26 GHz while detecting all 12 types of possible clock glitches, as well as timing FIA injections via the supply voltage, electromagnetic signals, and chip temperature.
Figures
Figures from the paper (15 more)
Reference graph
Works this paper leans on
-
[9]
Y . He and K. Yang, “A Synthesizable Design-Agnostic Timing Fault Injection Monitor Covering 2MHz to 1.26GHz Clocks in 65nm CMOS,” in 2024 IEEE International Solid-State Circuits Conference (ISSCC) , vol. 67, Feb. 2024, pp. 304–306
work page 2024
-
[1]
Implementing practical electrical glitching attacks,
B. Giller, “Implementing practical electrical glitching attacks,” presented at Black Hat Europe , Amsterdam, Netherlands, Nov. 2015. [Online]. Available: https://www .blackhat.com/eu-15/ briefings.html#implementing-practical-electrical-glitching-attacks
work page 2015
-
[2]
Injecting Software Vulnerabilities with V oltage Glitching,
Y . Lu, “Injecting Software Vulnerabilities with V oltage Glitching,” Feb
-
[3]
Drone Security and Fault Injection Attacks,
G. Gonzalez, “Drone Security and Fault Injection Attacks,” IOActive, Tech. Rep., Jun. 2023. [Online]. Available: https://ioactive .com/drone- security-fault-injection-attacks-gabriel-gonzalez/
work page 2023
-
[4]
Plundervolt: Software-based Fault Injection Attacks against Intel SGX,
K. Murdock, D. Oswald, F. D. Garcia, J. Van Bulck, D. Gruss, and F. Piessens, “Plundervolt: Software-based Fault Injection Attacks against Intel SGX,” in 2020 IEEE Symposium on Security and Privacy (S&P) , May 2020, pp. 1466–1482
work page 2020
-
[5]
P. Qiu, D. Wang, Y . Lyu, and G. Qu, “V oltJockey: Breaching TrustZone by Software-Controlled V oltage Manipulation over Multi-core Frequen- cies,” in Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security , Nov. 2019, pp. 195–209
work page 2019
-
[6]
K. Matsuda, T. Fujii, N. Shoji, T. Sugawara, K. Sakiyama, Y .-I. Hayashi, M. Nagata, and N. Miura, “A 286 F2/Cell Distributed Bulk-Current Sensor and Secure Flush Code Eraser Against Laser Fault Injection At- tack on Cryptographic Processor,” IEEE Journal of Solid-State Circuits , vol. 53, no. 11, pp. 3174–3182, Nov. 2018
work page 2018
-
[7]
H. Zhang, L. Lin, Q. Fang, and M. Alioto, “Laser V oltage Probing Attack Detection With 100% Area/Time Coverage at Above/Below the Bandgap Wavelength and Fully-Automated Design,” IEEE Journal of Solid-State Circuits, vol. 58, no. 10, pp. 2919–2930, Oct. 2023
work page 2023
Show all 34 references
-
[8]
A 100Gbps Fault-Injection Attack Resistant AES-256 Engine with 99.1-to- 99.99% Error Coverage in Intel 4 CMOS,
R. Kumar, A. Varna, C. Tokunaga, S. Taneja, V . De, and S. Mathew, “A 100Gbps Fault-Injection Attack Resistant AES-256 Engine with 99.1-to- 99.99% Error Coverage in Intel 4 CMOS,” in 2023 IEEE International Solid-State Circuits Conference (ISSCC) , Feb. 2023, pp. 1–3
2023
-
[10]
Design and Analysis of Clock Fault Injection for AES,
P. Yang, F. Luo, Q. Ou, and D. Zhou, “Design and Analysis of Clock Fault Injection for AES,” in 2020 International Conference on Computer Communication and Network Security (CCNS) , Aug. 2020, pp. 87–91
2020
-
[11]
A DFA on AES Based on the Entropy of Error Distributions,
R. Lashermes, G. Reymond, J.-M. Dutertre, J. Fournier, B. Robisson, and A. Tria, “A DFA on AES Based on the Entropy of Error Distributions,” in 2012 Workshop on Fault Diagnosis and Tolerance in Cryptography , Sep. 2012, pp. 34–43
2012
-
[12]
Modeling and Efficiency Analysis of Clock Glitch Fault Injection Attack,
B. Ning and Q. Liu, “Modeling and Efficiency Analysis of Clock Glitch Fault Injection Attack,” in 2018 Asian Hardware Oriented Security and Trust Symposium (AsianHOST) , Dec. 2018, pp. 13–18
2018
-
[13]
Clock glitch generator on SAKURA-G for fault injection attack against a cryptographic circuit,
M. Matsubayashi, A. Satoh, and J. Ishii, “Clock glitch generator on SAKURA-G for fault injection attack against a cryptographic circuit,” in 2016 IEEE 5th Global Conference on Consumer Electronics , Oct. 2016, pp. 1–4
2016
-
[14]
Lightning: Leveraging DVFS-induced Transient Fault Injection to At- tack Deep Learning Accelerator of GPUs,
R. Sun, P. Qiu, Y . Lyu, J. Dong, H. Wang, D. Wang, and G. Qu, “Lightning: Leveraging DVFS-induced Transient Fault Injection to At- tack Deep Learning Accelerator of GPUs,” ACM Transactions on Design Automation of Electronic Systems , vol. 29, no. 1, pp. 14:1–14:22, Nov. 2023
2023
-
[15]
ChipWhisperer - the complete open-source toolchain for side- channel power analysis and glitching attacks
“ChipWhisperer - the complete open-source toolchain for side- channel power analysis and glitching attacks.” [Online]. Available: https://github.com/newaetech/chipwhisperer IEEE JOURNAL OF SOLID-STATE CIRCUITS 12
-
[16]
Electromagnetic Transient Faults Injection on a Hardware and a Software Implementa- tions of AES,
A. Dehbaoui, J.-M. Dutertre, B. Robisson, and A. Tria, “Electromagnetic Transient Faults Injection on a Hardware and a Software Implementa- tions of AES,” in 2012 Workshop on Fault Diagnosis and Tolerance in Cryptography, Sep. 2012, pp. 7–15
2012
-
[17]
Transient IEMI Threats for Cryptographic Devices,
Y .-i. Hayashi, N. Homma, T. Mizuki, T. Aoki, and H. Sone, “Transient IEMI Threats for Cryptographic Devices,” IEEE Transactions on Elec- tromagnetic Compatibility, vol. 55, no. 1, pp. 140–148, Feb. 2013
2013
-
[18]
Detection of IEMI fault injection using voltage moni- tor constructed with fully digital circuit,
D. Fujimoto, Y .-i. Hayashi, A. Beckers, J. Balasch, B. Gierlichs, and I. Verbauwhede, “Detection of IEMI fault injection using voltage moni- tor constructed with fully digital circuit,” in 2018 IEEE International Symposium on Electromagnetic Compatibility and 2018 IEEE Asia- ...
2018
-
[19]
The Temperature Side Channel and Heat- ing Fault Attacks,
M. Hutter and J.-M. Schmidt, “The Temperature Side Channel and Heat- ing Fault Attacks,” in Smart Card Research and Advanced Applications: 12th International Conference (CARDIS) , Jun. 2014, pp. 219–235
2014
-
[20]
SYNFI: Pre-Silicon Fault Analysis of an Open-Source Secure Element,
P. Nasahl, M. Osorio, P. V ogel, M. Schaffner, T. Trippel, D. Rizzo, and S. Mangard, “SYNFI: Pre-Silicon Fault Analysis of an Open-Source Secure Element,” IACR Transactions on Cryptographic Hardware and Embedded Systems, pp. 56–87, Aug. 2022
2022
-
[21]
LDTFI: Layout-aware Timing Fault-Injection Attack Assess- ment Against Differential Fault Analysis,
A. M. Shuvo, N. Pundir, J. Park, F. Farahmandi, and M. Tehra- nipoor, “LDTFI: Layout-aware Timing Fault-Injection Attack Assess- ment Against Differential Fault Analysis,” in 2022 IEEE Computer Society Annual Symposium on VLSI (ISVLSI) , Jul. 2022, pp. 134–139
2022
-
[22]
Razor: a low-power pipeline based on circuit-level timing speculation,
D. Ernst, N. S. Kim, S. Das, S. Pant, R. Rao, T. Pham, C. Ziesler, D. Blaauw, T. Austin, K. Flautner, and T. Mudge, “Razor: a low-power pipeline based on circuit-level timing speculation,” in Proceedings. 36th Annual IEEE/ACM International Symposium on Microarchitecture,
-
[23]
RazorII: In Situ Error Detection and Correction for PVT and SER Tolerance,
S. Das, C. Tokunaga, S. Pant, W.-H. Ma, S. Kalaiselvan, K. Lai, D. M. Bull, and D. T. Blaauw, “RazorII: In Situ Error Detection and Correction for PVT and SER Tolerance,” IEEE Journal of Solid-State Circuits , vol. 44, no. 1, pp. 32–48, Jan. 2009
2009
-
[24]
Razor- Lite: A Light-Weight Register for Error Detection by Observing Virtual Supply Rails,
I. Kwon, S. Kim, D. Fick, M. Kim, Y .-P. Chen, and D. Sylvester, “Razor- Lite: A Light-Weight Register for Error Detection by Observing Virtual Supply Rails,” IEEE Journal of Solid-State Circuits , vol. 49, no. 9, pp. 2054–2066, Sep. 2014
2014
-
[25]
iRazor: Current-Based Error Detection and Correction Scheme for PVT Variation in 40-nm ARM Cortex-R4 Processor,
Y . Zhang, M. Khayatzadeh, K. Yang, M. Saligane, N. Pinckney, M. Alioto, D. Blaauw, and D. Sylvester, “iRazor: Current-Based Error Detection and Correction Scheme for PVT Variation in 40-nm ARM Cortex-R4 Processor,” IEEE Journal of Solid-State Circuits , vol. 53, no. 2, pp. 61...
2018
-
[26]
Postsilicon V oltage Guard-Band Reduction in a 22 nm Graphics Execution Core Using Adaptive V oltage Scaling and Dynamic Power Gating,
M. Cho, S. T. Kim, C. Tokunaga, C. Augustine, J. P. Kulkarni, K. Ravichandran, J. W. Tschanz, M. M. Khellah, and V . De, “Postsilicon V oltage Guard-Band Reduction in a 22 nm Graphics Execution Core Using Adaptive V oltage Scaling and Dynamic Power Gating,” IEEE Journal of Sol...
2017
-
[27]
A 22 nm All-Digital Dynamically Adaptive Clock Distribution for Supply V oltage Droop Tolerance,
K. A. Bowman, C. Tokunaga, T. Karnik, V . K. De, and J. W. Tschanz, “A 22 nm All-Digital Dynamically Adaptive Clock Distribution for Supply V oltage Droop Tolerance,”IEEE Journal of Solid-State Circuits, vol. 48, no. 4, pp. 907–916, Apr. 2013
2013
-
[28]
Fault-Injection Detection Circuits: Design, Calibration, Validation and Tuning,
D. Nemiroff and C. Tokunaga, “Fault-Injection Detection Circuits: Design, Calibration, Validation and Tuning,” presented at Black Hat USA , Las Vegas, NV , USA, Aug. 2022. [Online]. Available: https:// www.blackhat.com/us-22/briefings/schedule/index.html#fault-injection- detec...
2022
-
[29]
An FLL-Based Clock Glitch Detector for Security Circuits in a 5nm FINFET Process,
S. Song, S. G. Tell, B. Zimmer, S. S. Kudva, N. Nedovic, and C. T. Gray, “An FLL-Based Clock Glitch Detector for Security Circuits in a 5nm FINFET Process,” in 2022 IEEE Symposium on VLSI Technology and Circuits (VLSI Technology and Circuits) , Jun. 2022, pp. 146–147
2022
-
[30]
A local EM-analysis attack resistant cryptographic engine with fully-digital oscillator-based tamper-access sensor,
N. Miura, D. Fujimoto, D. Tanaka, Y .-I. Hayashi, N. Homma, T. Aoki, and M. Nagata, “A local EM-analysis attack resistant cryptographic engine with fully-digital oscillator-based tamper-access sensor,” in 2014 Symposium on VLSI Circuits Digest of Technical Papers , Jun. 2014
2014
-
[31]
PG- CAS: Patterned-Ground Co-Planar Capacitive Asymmetry Sensing for mm-Range EM Side-Channel Attack Probe Detection,
D.-H. Seo, M. Nath, D. Das, B. Chatterjee, S. Ghosh, and S. Sen, “PG- CAS: Patterned-Ground Co-Planar Capacitive Asymmetry Sensing for mm-Range EM Side-Channel Attack Probe Detection,” in 2021 IEEE International Symposium on Circuits and Systems (ISCAS) , May 2021, pp. 1–5
2021
-
[32]
A Fully Synthesizable Fractional-N MDLL With Zero- Order Interpolation-Based DTC Nonlinearity Calibration and Two-Step Hybrid Phase Offset Calibration,
B. Liu, Y . Zhang, J. Qiu, H. C. Ngo, W. Deng, K. Nakata, T. Yoshioka, J. Emmei, J. Pang, A. T. Narayanan, H. Zhang, T. Someya, A. Shirane, and K. Okada, “A Fully Synthesizable Fractional-N MDLL With Zero- Order Interpolation-Based DTC Nonlinearity Calibration and Two-Step Hyb...
2021
-
[2003]
2003, pp
MICRO-36., Dec. 2003, pp. 7–18
2003
-
[2019]
Available: http://arxiv .org/abs/1903.08102
[Online]. Available: http://arxiv .org/abs/1903.08102
1903 arXiv
Reviewed August 10, 2026 · model on record in the stance chip above.
Discussion (0). Continue with ORCID to comment.