{"id":"https://openalex.org/W2789208486","doi":"https://doi.org/10.1109/hst.2018.8383918","title":"SAT-based reverse engineering of gate-level schematics using fault injection and probing","display_name":"SAT-based reverse engineering of gate-level schematics using fault injection and probing","publication_year":2018,"publication_date":"2018-04-01","ids":{"openalex":"https://openalex.org/W2789208486","doi":"https://doi.org/10.1109/hst.2018.8383918","mag":"2789208486"},"language":"en","primary_location":{"id":"doi:10.1109/hst.2018.8383918","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hst.2018.8383918","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1802.08916","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5009359224","display_name":"Shahrzad Keshavarz","orcid":"https://orcid.org/0000-0002-1473-510X"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Shahrzad Keshavarz","raw_affiliation_strings":["University of Massachusetts, Amherst, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts, Amherst, USA","institution_ids":["https://openalex.org/I24603500"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088701632","display_name":"Falk Schellenberg","orcid":"https://orcid.org/0000-0001-8353-7564"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Falk Schellenberg","raw_affiliation_strings":["Horst G\u00f6rtz Institute for IT Security, Ruhr-Universit\u00e4t Bochum, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"Horst G\u00f6rtz Institute for IT Security, Ruhr-Universit\u00e4t Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010771653","display_name":"Bastian Richter","orcid":"https://orcid.org/0000-0001-9661-5453"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Bastian Richte","raw_affiliation_strings":["Ruhr-Universitat Bochum, Bochum, Nordrhein-Westfalen, DE"],"affiliations":[{"raw_affiliation_string":"Ruhr-Universitat Bochum, Bochum, Nordrhein-Westfalen, DE","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041748332","display_name":"Christof Paar","orcid":"https://orcid.org/0000-0001-8681-2277"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Christof Paar","raw_affiliation_strings":["University of Massachusetts, Amherst, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts, Amherst, USA","institution_ids":["https://openalex.org/I24603500"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5052791292","display_name":"Daniel Holcomb","orcid":"https://orcid.org/0000-0002-2052-9820"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Daniel Holcomb","raw_affiliation_strings":["University of Massachusetts, Amherst, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts, Amherst, USA","institution_ids":["https://openalex.org/I24603500"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5009359224"],"corresponding_institution_ids":["https://openalex.org/I24603500"],"apc_list":null,"apc_paid":null,"fwci":0.2632,"has_fulltext":true,"cited_by_count":1,"citation_normalized_percentile":{"value":0.48006973,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":"4727","issue":null,"first_page":"215","last_page":"220"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/reverse-engineering","display_name":"Reverse engineering","score":0.8131401538848877},{"id":"https://openalex.org/keywords/schematic","display_name":"Schematic","score":0.806991696357727},{"id":"https://openalex.org/keywords/combinational-logic","display_name":"Combinational logic","score":0.6121002435684204},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5644776225090027},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.44744473695755005},{"id":"https://openalex.org/keywords/fault","display_name":"Fault (geology)","score":0.43480533361434937},{"id":"https://openalex.org/keywords/electronic-circuit","display_name":"Electronic circuit","score":0.4265352785587311},{"id":"https://openalex.org/keywords/logic-gate","display_name":"Logic gate","score":0.3952009677886963},{"id":"https://openalex.org/keywords/electronic-engineering","display_name":"Electronic engineering","score":0.34911614656448364},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.29463618993759155},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.286155641078949},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.2770976424217224}],"concepts":[{"id":"https://openalex.org/C207850805","wikidata":"https://www.wikidata.org/wiki/Q269608","display_name":"Reverse engineering","level":2,"score":0.8131401538848877},{"id":"https://openalex.org/C192328126","wikidata":"https://www.wikidata.org/wiki/Q4514647","display_name":"Schematic","level":2,"score":0.806991696357727},{"id":"https://openalex.org/C81409106","wikidata":"https://www.wikidata.org/wiki/Q76505","display_name":"Combinational logic","level":3,"score":0.6121002435684204},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5644776225090027},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.44744473695755005},{"id":"https://openalex.org/C175551986","wikidata":"https://www.wikidata.org/wiki/Q47089","display_name":"Fault (geology)","level":2,"score":0.43480533361434937},{"id":"https://openalex.org/C134146338","wikidata":"https://www.wikidata.org/wiki/Q1815901","display_name":"Electronic circuit","level":2,"score":0.4265352785587311},{"id":"https://openalex.org/C131017901","wikidata":"https://www.wikidata.org/wiki/Q170451","display_name":"Logic gate","level":2,"score":0.3952009677886963},{"id":"https://openalex.org/C24326235","wikidata":"https://www.wikidata.org/wiki/Q126095","display_name":"Electronic engineering","level":1,"score":0.34911614656448364},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.29463618993759155},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.286155641078949},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.2770976424217224},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C165205528","wikidata":"https://www.wikidata.org/wiki/Q83371","display_name":"Seismology","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C78458016","wikidata":"https://www.wikidata.org/wiki/Q840400","display_name":"Evolutionary biology","level":1,"score":0.0},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/hst.2018.8383918","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hst.2018.8383918","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:1802.08916","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1802.08916","pdf_url":"https://arxiv.org/pdf/1802.08916","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"mag:2789208486","is_oa":true,"landing_page_url":"https://arxiv.org/pdf/1802.08916.pdf","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"arXiv (Cornell University)","raw_type":null},{"id":"doi:10.48550/arxiv.1802.08916","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.1802.08916","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:1802.08916","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1802.08916","pdf_url":"https://arxiv.org/pdf/1802.08916","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2789208486.pdf","grobid_xml":"https://content.openalex.org/works/W2789208486.grobid-xml"},"referenced_works_count":22,"referenced_works":["https://openalex.org/W76123274","https://openalex.org/W1524250393","https://openalex.org/W1894646615","https://openalex.org/W1898234120","https://openalex.org/W1904766697","https://openalex.org/W2038631119","https://openalex.org/W2063615695","https://openalex.org/W2081739945","https://openalex.org/W2112965713","https://openalex.org/W2127867711","https://openalex.org/W2134734244","https://openalex.org/W2135211381","https://openalex.org/W2423338439","https://openalex.org/W2579874865","https://openalex.org/W2615010670","https://openalex.org/W2738836551","https://openalex.org/W2745646674","https://openalex.org/W2963360895","https://openalex.org/W6639565960","https://openalex.org/W6663877825","https://openalex.org/W6720908527","https://openalex.org/W6746609838"],"related_works":["https://openalex.org/W2592134250","https://openalex.org/W2782942735","https://openalex.org/W2519077604","https://openalex.org/W2010454440","https://openalex.org/W849967617","https://openalex.org/W3119594623","https://openalex.org/W2768285668","https://openalex.org/W2875186057","https://openalex.org/W2210494647","https://openalex.org/W2615371769","https://openalex.org/W2089515451","https://openalex.org/W2569582003","https://openalex.org/W2539225134","https://openalex.org/W2002777301","https://openalex.org/W2907036582","https://openalex.org/W2822064291","https://openalex.org/W2514266578","https://openalex.org/W2282749847","https://openalex.org/W1567289442","https://openalex.org/W2375149732"],"abstract_inverted_index":{"Gate":[0],"camouflaging":[1],"is":[2,36,68,92],"a":[3,42,47,89,142],"known":[4],"security":[5],"enhancement":[6],"technique":[7],"that":[8,34,91,104,145],"tries":[9],"to":[10,39,54,58,70,95,128,153,157],"thwart":[11],"reverse":[12,40,71,81,148,166],"engineering":[13,82,149,167],"by":[14,45],"hiding":[15],"the":[16,21,52,59,73,96,121,137,159],"functions":[17,111],"of":[18,27,87,114,136],"gates":[19],"or":[20,112],"connections":[22,113],"between":[23],"them.":[24],"A":[25],"number":[26],"works":[28],"on":[29,169],"SAT-based":[30,80,147],"attacks":[31],"have":[32,55],"shown":[33],"it":[35,67],"often":[37],"possible":[38],"engineer":[41,72],"circuit":[43,49,74,90,118],"function":[44,75],"combining":[46],"camouflaged":[48,117],"model":[50],"and":[51,131],"ability":[53],"oracle":[56],"access":[57],"obfuscated":[60],"combinational":[61,134],"circuit.":[62,138,172],"Especially":[63],"in":[64,76],"small":[65],"circuits":[66],"easy":[69],"this":[77,100],"way,":[78],"but":[79],"techniques":[83],"provide":[84],"no":[85],"guarantees":[86],"recovering":[88],"gate-by-gate":[93],"equivalent":[94],"original":[97],"design.":[98],"In":[99],"work":[101],"we":[102],"show":[103],"an":[105,115,155,170],"attacker":[106,156],"who":[107],"doesn't":[108],"know":[109],"gate":[110],"aggressively":[116],"cannot":[119],"learn":[120],"correct":[122,160],"gate-level":[123,161],"schematic":[124],"even":[125],"if":[126],"able":[127],"control":[129],"inputs":[130],"probe":[132],"all":[133],"nodes":[135],"We":[139,163],"then":[140],"present":[141],"stronger":[143],"attack":[144],"extends":[146],"with":[150],"fault":[151],"analysis":[152],"allow":[154],"recover":[158],"schematic.":[162],"analyze":[164],"our":[165],"approach":[168],"S-Box":[171]},"counts_by_year":[{"year":2018,"cited_by_count":1}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
