A low overhead DPA countermeasure circuit based on ring oscillators

Po Chun Liu*, Hsie-Chia Chang, Chen-Yi Lee

*Corresponding author for this work

    Research output: Contribution to journalArticlepeer-review

    40 Scopus citations


    Side-channel attacks, particularly differential power analysis (DPA) attacks, are efficient ways to extract secret keys of the attacked devices by leaked physical information. To resist DPA attacks, hiding and masking methods are commonly used, but it usually resulted in high area overhead and performance degradation. In this brief, a DPA countermeasure circuit based on digital controlled ring oscillators is presented to efficiently resist the first-order DPA attack. The implementation of the critical S-box of the advanced encryption standard (AES) algorithm shows that the area overhead of a single S-box is about 19% without any extra delay in the critical path. Moreover, the countermeasure circuit can be mounted onto different S-box implementations based on composite field or look-up table (LUT). Based on our approach, a DPA-resistant AES chip can be proposed to maintain the same throughput with less than 2K extra gates.

    Original languageEnglish
    Article number5477174
    Pages (from-to)546-550
    Number of pages5
    JournalIEEE Transactions on Circuits and Systems I: Regular Papers
    Issue number7
    StatePublished - Jul 2010


    • Advanced encryption standard (AES)
    • S-box
    • differential power analysis (DPA)
    • hiding
    • masking
    • ring oscillator


    Dive into the research topics of 'A low overhead DPA countermeasure circuit based on ring oscillators'. Together they form a unique fingerprint.

    Cite this