Physical Fault Injection and Side-Channel Attacks on Mobile Devices: A Comprehensive Survey

05/10/2021
by   Carlton Shepherd, et al.
0

Today's mobile devices contain densely packaged system-on-chips (SoCs) with multi-core, high-frequency CPUs and complex pipelines. In parallel, sophisticated SoC-assisted security mechanisms have become commonplace for protecting device data, such as trusted execution environments (TEEs), full-disk and file-based encryption. Both advancements have dramatically complicated the use of conventional physical attacks, which has required the development of specialised attacks. In this survey, we consolidate recent developments in physical fault injections (FIAs) and side-channel attacks (SCAs) on modern mobile devices. In total, we comprehensively survey over 50 fault injection and side-channel attack papers published between 2009–2021. We evaluate the prevailing methods, compare existing attacks using a common framework, identify several challenges and shortcomings, and suggest future directions of research.

READ FULL TEXT

page 9

page 11

page 15

page 16

page 17

page 20

page 21

page 29

research
03/27/2018

Authentication schemes for Smart Mobile Devices: Threat Models, Countermeasures, and Open Research Issues

This paper presents a comprehensive investigation of authentication sche...
research
03/23/2021

Metal Fillers as Potential Low Cost Countermeasure against Optical Fault Injection Attacks

Physically accessible devices such as sensor nodes in Wireless Sensor Ne...
research
12/07/2019

Dependability Assessment of the Android OS through Fault Injection

The reliability of mobile devices is a challenge for vendors, since the ...
research
01/21/2019

SoK: Taxonomy and Challenges of Out-of-Band Signal Injection Attacks and Defenses

Research on how hardware imperfections impact security has primarily foc...
research
02/23/2022

BYOD Security: A Study of Human Dimensions

The prevalence and maturity of Bring Your Own Device (BYOD) security alo...
research
07/17/2022

Mobile Security for the modern CEO: Attacks, Mitigations, and Future Trends

Todays world is digital, global, and interconnected and mobile devices a...
research
03/30/2022

The Block-based Mobile PDE Systems Are Not Secure – Experimental Attacks

Nowadays, mobile devices have been used broadly to store and process sen...

Please sign up or login with your details

Forgot password? Click here to reset