Paper 2024/1322

Revisiting a Realistic EM Side-Channel Attack on a Complex Modern SoC

Debao Wang, Nanjing University of Science and Technology
Yiwen Gao, Nanjing University of Science and Technology
Yongbin Zhou, Nanjing University of Science and Technology
Xian Huang, Open Security Research

Side-channel analysis on complex SoC devices with high-frequency microprocessors and multitasking operating systems presents significant challenges in practice due to the high costs of trace acquisition and analysis, generally involving tens of thousands to millions of traces. This work uses a cryptographic execution process on a Broadcom 2837 SoC as a case study to explore ways to reduce costs in electromagnetic side-channel analysis. In the data acquisition phase, we propose an efficient electromagnetic probe positioning strategy that does not require additional tool assistance, significantly accelerating the collection of effective electromagnetic traces. In the side-channel analysis phase, we investigate the combined use of preprocessing techniques, where the optimal preprocessing approach successfully reduces the number of required electromagnetic traces by 12 times, significantly improving the success rate of attacks. Additionally, we implement profiling attacks on such devices, including traditional template attacks, MLP-based, and CNN-based side-channel analysis, demonstrating that even minimal modeling costs can yield excellent analysis performance. Our study confirms the feasibility of low-cost side-channel analysis on complex SoCs and indicates that the sensitive applications running on these devices still require protection.

Attacks and cryptanalysis
System-on-ChipCorrelation AnalysisProfiling AttacksProbing Techniques
Contact author(s)
wangdebao @ njust edu cn
gaoywin @ gmail com
zhouyongbin @ njust edu cn
384811151 @ qq com
2024-08-26: approved
2024-08-23: received
Creative Commons Attribution


      author = {Debao Wang and Yiwen Gao and Yongbin Zhou and Xian Huang},
      title = {Revisiting a Realistic {EM} Side-Channel Attack on a Complex Modern {SoC}},
      howpublished = {Cryptology {ePrint} Archive, Paper 2024/1322},
      year = {2024},
      url = {}
