kth.sePublications KTH
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Screaming Channels Revisited: Encryption Key Recovery from AES-CCM Accelerator
KTH, School of Electrical Engineering and Computer Science (EECS), Electronics and Embedded Systems.ORCID iD: 0000-0002-4973-7412
KTH, School of Electrical Engineering and Computer Science (EECS), Electronics and Embedded Systems.ORCID iD: 0000-0001-7382-9408
KTH, School of Electrical Engineering and Computer Science (EECS), Electronics and Embedded Systems.ORCID iD: 0000-0001-6281-4091
2025 (English)In: 2025 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS, ISCAS, Institute of Electrical and Electronics Engineers (IEEE) , 2025Conference paper, Published paper (Refereed)
Abstract [en]

In this paper, we demonstrate the first successful extraction of the encryption key from the hardware AES accelerator in the nRF52832 Bluetooth Low Energy system-on-chip operating in Counter with CBC-MAC (CCM) mode using side-channel information recovered from RF signals. This attack marks a significant milestone, as previous attempts to break this accelerator were unsuccessful. Our results provide a critical insight into the proprietary hardware AES-CCM accelerator in the nRF52832, paving the way for future enhancements to its resistance to side-channel attacks. All the related data are made available to the research community to promote further analysis.

Place, publisher, year, edition, pages
Institute of Electrical and Electronics Engineers (IEEE) , 2025.
Series
IEEE International Symposium on Circuits and Systems, ISSN 0271-4302
Keywords [en]
Symmetric-key cryptography, AES, CCM, side-channel attack, CPA, hardware accelerator, screaming channels
National Category
Communication Systems
Identifiers
URN: urn:nbn:se:kth:diva-378639DOI: 10.1109/ISCAS56072.2025.11044226ISI: 001537918205087Scopus ID: 2-s2.0-105010604453OAI: oai:DiVA.org:kth-378639DiVA, id: diva2:2049230
Conference
2025 International Symposium on Circuits and Systems-ISCAS-Annual, MAY 25-28, 2025, ENGLAND
Note

Part of ISBN 979-8-3503-5684-7; 979-8-3503-5683-0

QC 20260327

Available from: 2026-03-27 Created: 2026-03-27 Last updated: 2026-03-27Bibliographically approved

Open Access in DiVA

No full text in DiVA

Other links

Publisher's full textScopus

Authority records

Ji, YanningDubrova, ElenaWang, Ruize

Search in DiVA

By author/editor
Ji, YanningDubrova, ElenaWang, Ruize
By organisation
Electronics and Embedded Systems
Communication Systems

Search outside of DiVA

GoogleGoogle Scholar

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 29 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf