{"id":"https://openalex.org/W4412151835","doi":"https://doi.org/10.1007/s10207-025-01092-2","title":"CARNYX: A framework for vulnerability detection via power consumption analysis in embedded systems","display_name":"CARNYX: A framework for vulnerability detection via power consumption analysis in embedded systems","publication_year":2025,"publication_date":"2025-07-08","ids":{"openalex":"https://openalex.org/W4412151835","doi":"https://doi.org/10.1007/s10207-025-01092-2"},"language":"en","primary_location":{"id":"doi:10.1007/s10207-025-01092-2","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01092-2","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01092-2.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01092-2.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5041264455","display_name":"Jorge Barredo","orcid":"https://orcid.org/0000-0001-5552-6825"},"institutions":[{"id":"https://openalex.org/I162361429","display_name":"Mondragon Unibertsitatea","ror":"https://ror.org/00wvqgd19","country_code":"ES","type":"education","lineage":["https://openalex.org/I162361429"]},{"id":"https://openalex.org/I4210140267","display_name":"Ikerlan","ror":"https://ror.org/03hp1m080","country_code":"ES","type":"company","lineage":["https://openalex.org/I4210140267"]}],"countries":["ES"],"is_corresponding":true,"raw_author_name":"Jorge Barredo","raw_affiliation_strings":["IKERLAN Technology Research Centre, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain","IKERLAN Technology Research Centre, Mondragon Unibertsitatea, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain"],"affiliations":[{"raw_affiliation_string":"IKERLAN Technology Research Centre, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain","institution_ids":["https://openalex.org/I4210140267"]},{"raw_affiliation_string":"IKERLAN Technology Research Centre, Mondragon Unibertsitatea, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain","institution_ids":["https://openalex.org/I162361429"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076216328","display_name":"Maialen Eceiza","orcid":"https://orcid.org/0000-0001-7755-2848"},"institutions":[{"id":"https://openalex.org/I162361429","display_name":"Mondragon Unibertsitatea","ror":"https://ror.org/00wvqgd19","country_code":"ES","type":"education","lineage":["https://openalex.org/I162361429"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Maialen Eceiza","raw_affiliation_strings":["IKERLAN Technology Research Centre, Mondragon Unibertsitatea, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain"],"affiliations":[{"raw_affiliation_string":"IKERLAN Technology Research Centre, Mondragon Unibertsitatea, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain","institution_ids":["https://openalex.org/I162361429"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5035500193","display_name":"Jos\u00e9 Luis Flores","orcid":"https://orcid.org/0000-0002-5555-9712"},"institutions":[{"id":"https://openalex.org/I169108374","display_name":"University of the Basque Country","ror":"https://ror.org/000xsnr85","country_code":"ES","type":"education","lineage":["https://openalex.org/I169108374"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Jose Luis Flores","raw_affiliation_strings":["University of the Basque Country UPV/EHU, Donostia-San Sebasti\u00e1n, Gipuzkoa, Spain"],"affiliations":[{"raw_affiliation_string":"University of the Basque Country UPV/EHU, Donostia-San Sebasti\u00e1n, Gipuzkoa, Spain","institution_ids":["https://openalex.org/I169108374"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5050357792","display_name":"Mikel Iturbe","orcid":"https://orcid.org/0000-0001-9641-5646"},"institutions":[{"id":"https://openalex.org/I4210140267","display_name":"Ikerlan","ror":"https://ror.org/03hp1m080","country_code":"ES","type":"company","lineage":["https://openalex.org/I4210140267"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Mikel Iturbe","raw_affiliation_strings":["IKERLAN Technology Research Centre, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain"],"affiliations":[{"raw_affiliation_string":"IKERLAN Technology Research Centre, Arrasate/Mondrag\u00f3n, Gipuzkoa, Spain","institution_ids":["https://openalex.org/I4210140267"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5041264455"],"corresponding_institution_ids":["https://openalex.org/I162361429","https://openalex.org/I4210140267"],"apc_list":{"value":2590,"currency":"EUR","value_usd":3190},"apc_paid":{"value":2590,"currency":"EUR","value_usd":3190},"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.18890485,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"24","issue":"4","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9975000023841858,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7421201467514038},{"id":"https://openalex.org/keywords/power-consumption","display_name":"Power consumption","score":0.6810572147369385},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.6664741039276123},{"id":"https://openalex.org/keywords/power-analysis","display_name":"Power analysis","score":0.6603345274925232},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.5415980219841003},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.517667829990387},{"id":"https://openalex.org/keywords/vulnerability-assessment","display_name":"Vulnerability assessment","score":0.4849981963634491},{"id":"https://openalex.org/keywords/consumption","display_name":"Consumption (sociology)","score":0.4610869288444519},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.44728559255599976},{"id":"https://openalex.org/keywords/power","display_name":"Power (physics)","score":0.38190144300460815},{"id":"https://openalex.org/keywords/sociology","display_name":"Sociology","score":0.07669728994369507},{"id":"https://openalex.org/keywords/medicine","display_name":"Medicine","score":0.06647941470146179}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7421201467514038},{"id":"https://openalex.org/C2984118289","wikidata":"https://www.wikidata.org/wiki/Q29954","display_name":"Power consumption","level":3,"score":0.6810572147369385},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.6664741039276123},{"id":"https://openalex.org/C71743495","wikidata":"https://www.wikidata.org/wiki/Q2845210","display_name":"Power analysis","level":3,"score":0.6603345274925232},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.5415980219841003},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.517667829990387},{"id":"https://openalex.org/C167063184","wikidata":"https://www.wikidata.org/wiki/Q1400839","display_name":"Vulnerability assessment","level":3,"score":0.4849981963634491},{"id":"https://openalex.org/C30772137","wikidata":"https://www.wikidata.org/wiki/Q5164762","display_name":"Consumption (sociology)","level":2,"score":0.4610869288444519},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.44728559255599976},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.38190144300460815},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.07669728994369507},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.06647941470146179},{"id":"https://openalex.org/C118552586","wikidata":"https://www.wikidata.org/wiki/Q7867","display_name":"Psychiatry","level":1,"score":0.0},{"id":"https://openalex.org/C27415008","wikidata":"https://www.wikidata.org/wiki/Q7256382","display_name":"Psychological intervention","level":2,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/s10207-025-01092-2","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01092-2","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01092-2.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1007/s10207-025-01092-2","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s10207-025-01092-2","pdf_url":"https://link.springer.com/content/pdf/10.1007/s10207-025-01092-2.pdf","source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/7","display_name":"Affordable and clean energy","score":0.7400000095367432}],"awards":[{"id":"https://openalex.org/G1643949827","display_name":null,"funder_award_id":"AEI/10.13039/501100011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G2262748287","display_name":null,"funder_award_id":"501100011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G300979063","display_name":null,"funder_award_id":"10.13039/501100011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G3480869486","display_name":null,"funder_award_id":"13039","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G4126322094","display_name":null,"funder_award_id":"01100011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G4816244515","display_name":null,"funder_award_id":"FEDER","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G5080475149","display_name":null,"funder_award_id":"10.13039","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G661330594","display_name":null,"funder_award_id":"00110","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G6685425346","display_name":null,"funder_award_id":"0011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G7084143925","display_name":null,"funder_award_id":"AEI/10","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G7115649624","display_name":null,"funder_award_id":"FEDER, UE","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G7266728691","display_name":null,"funder_award_id":"13039/501100011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G7535663061","display_name":null,"funder_award_id":"AEI/10.","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G8260616629","display_name":null,"funder_award_id":"011033","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"},{"id":"https://openalex.org/G8638682022","display_name":null,"funder_award_id":"10.13039/50110001103","funder_id":"https://openalex.org/F4320335598","funder_display_name":"Agencia Estatal de Investigaci\u00f3n"}],"funders":[{"id":"https://openalex.org/F4320321705","display_name":"Eusko Jaurlaritza","ror":"https://ror.org/00pz2fp31"},{"id":"https://openalex.org/F4320335598","display_name":"Agencia Estatal de Investigaci\u00f3n","ror":null}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4412151835.pdf","grobid_xml":"https://content.openalex.org/works/W4412151835.grobid-xml"},"referenced_works_count":53,"referenced_works":["https://openalex.org/W201766245","https://openalex.org/W1529728259","https://openalex.org/W1862426464","https://openalex.org/W1966143594","https://openalex.org/W1970246007","https://openalex.org/W1987111416","https://openalex.org/W2008071701","https://openalex.org/W2010468809","https://openalex.org/W2043118292","https://openalex.org/W2045251625","https://openalex.org/W2072757195","https://openalex.org/W2087346698","https://openalex.org/W2089468765","https://openalex.org/W2099738102","https://openalex.org/W2105077410","https://openalex.org/W2120562931","https://openalex.org/W2122587458","https://openalex.org/W2158196600","https://openalex.org/W2519252889","https://openalex.org/W2560839994","https://openalex.org/W2601243251","https://openalex.org/W2734509410","https://openalex.org/W2766295581","https://openalex.org/W2771563010","https://openalex.org/W2782780792","https://openalex.org/W2796878504","https://openalex.org/W2803720591","https://openalex.org/W2946388572","https://openalex.org/W2963174546","https://openalex.org/W2968774960","https://openalex.org/W2979963465","https://openalex.org/W2999309192","https://openalex.org/W2999472659","https://openalex.org/W3023274248","https://openalex.org/W3037751757","https://openalex.org/W3091876964","https://openalex.org/W3097819802","https://openalex.org/W3127883531","https://openalex.org/W3128203310","https://openalex.org/W3157340262","https://openalex.org/W3179601963","https://openalex.org/W3202843319","https://openalex.org/W3206700599","https://openalex.org/W4200518437","https://openalex.org/W4220848189","https://openalex.org/W4229062618","https://openalex.org/W4240560709","https://openalex.org/W4285309821","https://openalex.org/W4289351980","https://openalex.org/W4294151777","https://openalex.org/W4323842583","https://openalex.org/W4324144553","https://openalex.org/W4389331428"],"related_works":["https://openalex.org/W1883246888","https://openalex.org/W2370114625","https://openalex.org/W1756374135","https://openalex.org/W2062873522","https://openalex.org/W2947584067","https://openalex.org/W2280562859","https://openalex.org/W230721595","https://openalex.org/W3157230915","https://openalex.org/W1496728123","https://openalex.org/W2789975780"],"abstract_inverted_index":{"The":[0],"widespread":[1],"use":[2],"of":[3,6,69,141,163],"the":[4,81,124,161],"Internet":[5],"Things":[7],"(IoT)":[8],"has":[9],"led":[10],"to":[11,24,43,90,182,211,218],"a":[12,32,77],"surge":[13],"in":[14,39,46,100,172,185,190],"interconnected,":[15],"resource-constrained":[16,101],"embedded":[17,47],"systems,":[18,95,216],"which":[19],"are":[20],"inherently":[21],"vulnerable":[22],"due":[23],"limited":[25,198],"security":[26,184],"mechanisms.":[27],"This":[28],"paper":[29],"presents":[30],"CARNYX,":[31],"framework":[33],"leveraging":[34],"power":[35,104],"consumption":[36],"analysis,":[37],"rooted":[38],"Side-Channel":[40],"Analysis":[41],"(SCA),":[42],"detect":[44],"vulnerabilities":[45],"systems":[48],"with":[49,87,146,151,157],"high":[50,158],"accuracy.":[51],"Designed":[52],"for":[53],"pre-deployment":[54],"vulnerability":[55,71,174],"detection,":[56,75],"it":[57],"offers":[58],"three":[59,112],"key":[60],"advantages":[61],"over":[62],"existing":[63],"SCA":[64],"solutions:":[65],"(1)":[66],"detailed":[67],"categorisation":[68],"specific":[70],"types":[72],"beyond":[73],"binary":[74,194],"(2)":[76],"methodology":[78],"validated":[79,201],"on":[80,111,166,202],"STM32F4":[82,203],"architecture":[83],"and":[84,93,96,120,123,133,153,204,214],"ARM":[85,126,205],"Cortex-A8":[86],"potential":[88,181],"applicability":[89],"similar":[91],"low-":[92,213],"medium-end":[94,125,215],"(3)":[97],"reliable":[98],"detection":[99,175,195],"devices":[102],"where":[103,193],"monitoring":[105],"is":[106],"practical.":[107],"We":[108],"evaluate":[109],"CARNYX":[110],"platforms:":[113],"two":[114],"low-end":[115],"STM32F4-based":[116],"platforms":[117],"(Riscure":[118],"Pi\u00f1ata":[119],"STM":[121],"NUCLEO-144)":[122],"Cortex-A8-based":[127],"BeagleBone":[128],"Black,":[129],"analysing":[130],"16":[131],"arithmetic":[132],"memory-related":[134],"software":[135],"flaws.":[136],"Results":[137],"demonstrate":[138],"recall":[139],"rates":[140],"99.69%":[142],"(Pi\u00f1ata),":[143],"86.88%":[144],"(NUCLEO-144":[145,150],"serial":[147],"interface),":[148],"51.25%":[149],"Ethernet),":[152],"53.67%":[154],"(BeagleBone":[155],"Black)-all":[156],"precision-while":[159],"measuring":[160],"effect":[162],"communication":[164],"peripherals":[165],"side-channel":[167],"leakage,":[168],"an":[169],"aspect":[170],"underexplored":[171],"prior":[173],"studies.":[176],"These":[177],"results":[178],"highlight":[179],"CARNYX\u2019s":[180],"enhance":[183],"constrained":[186],"IoT":[187],"devices,":[188],"even":[189],"noisy":[191],"environments":[192],"methods":[196],"offer":[197],"value.":[199],"While":[200],"Cortex-A8,":[206],"its":[207],"principles":[208],"may":[209],"extend":[210],"other":[212],"subject":[217],"further":[219],"validation.":[220]},"counts_by_year":[],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
