A low overhead DPA countermeasure circuit based on ring oscillators

Po Chun Liu*, Hsie-Chia Chang, Chen-Yi Lee

*Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

27 Scopus citations


Side-channel attacks, particularly differential power analysis (DPA) attacks, are efficient ways to extract secret keys of the attacked devices by leaked physical information. To resist DPA attacks, hiding and masking methods are commonly used, but it usually resulted in high area overhead and performance degradation. In this brief, a DPA countermeasure circuit based on digital controlled ring oscillators is presented to efficiently resist the first-order DPA attack. The implementation of the critical S-box of the advanced encryption standard (AES) algorithm shows that the area overhead of a single S-box is about 19% without any extra delay in the critical path. Moreover, the countermeasure circuit can be mounted onto different S-box implementations based on composite field or look-up table (LUT). Based on our approach, a DPA-resistant AES chip can be proposed to maintain the same throughput with less than 2K extra gates.

Original languageEnglish
Article number5477174
Pages (from-to)546-550
Number of pages5
JournalIEEE Transactions on Circuits and Systems I: Regular Papers
Issue number7
StatePublished - 1 Jul 2010


  • Advanced encryption standard (AES)
  • differential power analysis (DPA)
  • hiding
  • masking
  • ring oscillator
  • S-box

Fingerprint Dive into the research topics of 'A low overhead DPA countermeasure circuit based on ring oscillators'. Together they form a unique fingerprint.

Cite this