CRFeb 14, 2019
Injecting Software Vulnerabilities with Voltage Glitching
arXiv:1903.08102v111 citations
Originality Synthesis-oriented
AI Analysis
This addresses security vulnerabilities in consumer devices, potentially impacting manufacturers and users, but appears incremental as it applies known glitching techniques to a new target.
The paper tackled the problem of exploiting voltage glitching to induce timing violations in CMOS behavior, resulting in a successful attack on a real, security-hardened consumer device that gained code execution and dumped the secure boot ROM.
We show how voltage glitching can cause timing violations in CMOS behavior. Then we attack a real, security hardened, consumer device to gain code execution and dump the secure boot ROM.