5 ms·
DARPA and others are concernced about this exact scenario and are funding research into reverse-engineering chips to detect these types of backdoors. There are
by microarchitect 15y ago
DARPA and others are concernced about this exact scenario and are funding research into reverse-engineering chips to detect these types of backdoors. There are two parts this problem. One part is using electron microscopes and lasers and whatnot to go from silicon to a netlist of gates. The second part, which I'm a little more familiar with, is "decompiling" these gates into higher-level structures like ALUs and multipliers. The hope is that we can identify maybe 80% of the circuit to be good/recognized using purely algorithmic techniques and then a human can dig in and look through the remaining 20% for anything suspicious.
They do seem to be more concerned about chips the US buys from certain other countries than about the likes Intel/AMD building in backdoors.
EDIT: I should also mention that this is not just a concern of the american defence. I'm aware of the indian govt also funding this sort of research with similar motivation. However, in this instance, the professor was trying to attack the problem through the lens of formal techniques. I think the idea was to prove that if the chip interacts with the outside world through these limited set of channels then you can't sneak data out through some sort of covert channel hiding in the "regular" communication. The specific concern here was about routers/switches and the like equipment sneaking sensitive data out of a secure network.
- sliverstorm 15y agoDoesn't the government already make use of IBM's manufacturing capabilities for Top Secret+ chips to try and mitigate the risk of this scenario?
- microarchitect 15y agoI'm not sure but I think you may be right because the researchers have been granted access to some IBM cell libraries. (I was wondering why IBM agreed to this, but this probably explains it.) My understanding is that the main concern here are chips in COTS equipment bought from countries that are considered by some to be untrustworthy.
- sliverstorm 15y agoI was wondering why IBM agreed to this Allegedly the government requiring a domestic fab for some chips is one of the biggest reasons IBM's fab remains funded. All hearsay though.
- dillona 15y agoYes and no. Lots of secure labs run on the same Dells and HPs that everyone buys