CWE•Base•Stable•7 recent CVEs
CWE-1300Improper Protection of Physical Side Channels
Description
The device does not contain sufficient protection mechanisms to prevent physical side channels from exposing sensitive information due to patterns in physically observable phenomena such as variations in power consumption, electromagnetic emissions (EME), or acoustic emissions.
[object Object]
Common consequences
- Confidentiality→Read Memory,Read Application Data
Potential mitigations
- Architecture and DesignApply blinding or masking techniques to implementations of cryptographic algorithms.
- ImplementationAdd shielding or tamper-resistant protections to the device to increase the difficulty of obtaining measurements of the side-channel.