<div class="csl-bib-body">
<div class="csl-entry">Maragkou, S., Rappel, L., Dettmer, H., Sauter, T., & Jantsch, A. (2025). The Pains of Hardware Security: An Assessment Model of Real-World Hardware Security Attacks. <i>IEEE Open Journal of the Industrial Electronics Society</i>, <i>6</i>, 603–617. https://doi.org/10.1109/OJIES.2025.3561675</div>
</div>
-
dc.identifier.uri
http://hdl.handle.net/20.500.12708/217087
-
dc.description.abstract
From military applications to everyday devices, hardware (HW) security is more relevant than ever before. The supply chain of integrated circuits is global and involves multiple actors, which facilitate the implementation of various attacks. Its complexity increases the attack surfaces, violating not only the privacy of the users or even national security but also endangering human life. We review some of the publicly known HW attacks that have occurred and propose an assessment scheme for the attacks and the defense on hardware. Using this scheme, we relate the costs of attacks and defense and provide a structured landscape of HW attacks. To illustrate the utility of our assessment scheme, we apply it to a number of real-world and synthetic research cases. We observe a gap between the research use cases and the real-world attacks and envision that the comprehensive assessment of the attacks will enable the development of more suitable countermeasures. In addition, we revised the security policies for HW devices, and we conclude that the complexity and obscurity of the supply chain are key parameters impacting HW security, providing attack surfaces. Finally, we identify the demystification of the supply chain as the main strategy to mitigate this problem.
en
dc.language.iso
en
-
dc.publisher
Institute of Electrical and Electronics Engineers (IEEE)
-
dc.relation.ispartof
IEEE Open Journal of the Industrial Electronics Society
-
dc.subject
Hardware
en
dc.subject
Supply chains
en
dc.subject
Security
en
dc.subject
Hardware security
en
dc.subject
Fabrication
en
dc.subject
Field programmable gate arrays
en
dc.subject
Software
en
dc.subject
Microprogramming
en
dc.subject
Costs
en
dc.subject
Complexity theory
en
dc.title
The Pains of Hardware Security: An Assessment Model of Real-World Hardware Security Attacks
en
dc.type
Article
en
dc.type
Artikel
de
dc.contributor.affiliation
TÜV (Austria), Austria
-
dc.contributor.affiliation
TÜV (Austria), Austria
-
dc.description.startpage
603
-
dc.description.endpage
617
-
dc.type.category
Original Research Article
-
tuw.container.volume
6
-
tuw.journal.peerreviewed
true
-
tuw.peerreviewed
true
-
tuw.researchTopic.id
I2
-
tuw.researchTopic.name
Computer Engineering and Software-Intensive Systems
-
tuw.researchTopic.value
100
-
dcterms.isPartOf.title
IEEE Open Journal of the Industrial Electronics Society
-
tuw.publication.orgunit
E384-02 - Forschungsbereich Systems on Chip
-
tuw.publication.orgunit
E384-01 - Forschungsbereich Software-intensive Systems
-
tuw.publisher.doi
10.1109/OJIES.2025.3561675
-
dc.date.onlinefirst
2025-04-16
-
dc.identifier.eissn
2644-1284
-
dc.description.numberOfPages
15
-
tuw.author.orcid
0000-0001-6823-4223
-
tuw.author.orcid
0000-0003-1559-8394
-
tuw.author.orcid
0000-0003-2251-0004
-
wb.sciencebranch
Elektrotechnik, Elektronik, Informationstechnik
-
wb.sciencebranch.oefos
2020
-
wb.sciencebranch.value
100
-
item.openairecristype
http://purl.org/coar/resource_type/c_2df8fbb1
-
item.grantfulltext
none
-
item.cerifentitytype
Publications
-
item.languageiso639-1
en
-
item.fulltext
no Fulltext
-
item.openairetype
research article
-
crisitem.author.dept
E384-01 - Forschungsbereich Software-intensive Systems
-
crisitem.author.dept
TÜV (Austria)
-
crisitem.author.dept
TÜV (Austria)
-
crisitem.author.dept
E384 - Institut für Computertechnik
-
crisitem.author.dept
E384-02 - Forschungsbereich Systems on Chip
-
crisitem.author.orcid
0000-0001-6823-4223
-
crisitem.author.orcid
0000-0003-1559-8394
-
crisitem.author.orcid
0000-0003-2251-0004
-
crisitem.author.parentorg
E384 - Institut für Computertechnik
-
crisitem.author.parentorg
E350 - Fakultät für Elektrotechnik und Informationstechnik