conduct side-channel power analysis and fault injection attacks
in your own
for your own and your vendors' products
side-channel power analysis
Single Board Solutions
The original ChipWhisperer-Lite is a single board that integrates high-speed power measurement (replacing your oscilloscope), a target device, programmer for the target device, a platform for performing fault injection, and much more.
These boards are perfect if you want to teach yourself (or your class) all about side-channel power analysis & fault injection with minimal fuss.
These kits contain the capture hardware (ChipWhisperer device) along with various targets and tools. You can perform almost all of the tutorials with these kits, and then extend them to start looking at real devices with the included connectivity tools.
Our most advanced capture hardware lets you trigger on analog waveforms, and capture long power traces such as the ones asymmetric algorithms generate.
105 MS/s (10 MS/s streaming)
96000 (unlimited in streaming)
Crowbar, < 1nS resolution
Waveform, SPI, UART, Rising/Falling Edge, Level
The newest and most robust addition to the line of ChipWhisperer capture hardware for working with side-channel power analysis and fault injection. Feature upgrades include high-speed logic analyzers (to visualize glitches), real-time data streaming for attacking asymmetric algorithms, support for JTAG/SWD programming with an FTDI-compatible mode, and additional I/O expansion pins.
200 MS/s (20 MS/s streaming)
Crowbar, 833ps resolution
Rising/Falling Edge, Level, Waveform, Threshold, UART. Edge Count, Arm Trace
These targets were designed to be used with the ChipWhisperer capture platform, but they are flexible enough to be used with a standard oscilloscope and computer to drive the target.
These target boards require the CW308 UFO base board to function. They have a variety of processor architectures to allow you to easily experiment with different devices under a (fairly) standard environment. Note that some boards may need external programmers (such as Segger J-Link or OpenOCD) to reflash the chip. Check the datasheet and documentation before purchasing if you are unsure!
Filter UFO Targets:
CW308 UFO Targets
ATSAML11 Target for CW308
Arm Cortex-M23 core with hardware AES, includes DPA countermeasures outside the AES core such as Hamming-Weight balanced RAM and FLASH access modes.
MPC5748G Target for CW308
Triple-core PowerPC target for automotive environments, with separate Hardware Security Module (HSM) core.
Spartan S6LX9 Target for CW308
Small FPGA target, Xilinx Spartan 6 LX9. Example AES implementation available.
LPC55S69 Target for CW308
Dual-Core Cortex-M33 core with PUF, AES hardware, and PRINCE memory encryption options. Supports special AES mode that reduces AES power signature.
K82F Target for CW308
Arm Cortex-M4 core with two AES peripherals - one includes hardware masking DPA countermeasures.
STM32F2 w/ Hardware Crypto Target
STM32F2 series high-performance Arm Cortex-M3 device with hardware AES.
STM32F1 Target for CW308
STM32F1 series Arm Cortex-M3 device. Relatively old device, but still popular in long-tail products due to low cost.
STM32L56 Target for CW308
Arm Cortex-M33 core with hardware cryptographic accelerators including AES and ECC.
XMEGA Target for CW308
An 8-bit XMEGA target, which uses the same chip as the original ChipWhisperer-Lite.
STM32F3 Target for CW308
STM32F3 series Arm Cortex-M4 device. Popular "mainstream" device with reasonable performance.
STM32F4 Target for CW308
STM32F4 high-performance series Arm Cortex-M4 device.
PSOC62 Target for CW308
Arm Cortex-M4/M0 dual-core device, with security features allowing Cortex M0 core to be used as boot device. Hardware AES peripheral.
MPC5676R Target for CW308
PowerPC target for automotive environments.
EFR32MG21A Target for CW308
The EFR32MG21A board features the EFR32MG21A010F1024 from Silicon Labs. This device features a number of security features, including a dedicated “Secure Element” core that performs a secure boot operation, and DPA countermeasures on cryptographic primitives. Note: this board requires an external JTAG/SWD programmer (such as OpenOCD or J-Link) for use, as it does not include a bootloader.
STM32L4 Target for CW308
STM32L4 high-performance series Arm Cortex-M4 device, includes hardware AES implementation peripheral.
D2000 Target for CW308
Intel Quark D2000 is a microcontroller using the x86 instruction set.
ATSAM4L Target for CW308
Arm Cortex-M4 core with hardware AES that has four selectable DPA countermeasures.
EFR32MG21 with 32QFN Socket Target for CW308
UFO Target PCB with 32QFN Socket for EFR32MG21. A low-cost target for experimenting with power analysis and glitch attacks. See Artix Target (CW305) for a more advanced board. NOTE: An external programmer is REQUIRED for this target. The ChipWhisperer platform does not currently support programming this target.
MPC5777C Target for CW308
Dual-Core PowerPC target for automotive environments, with SHE.
STM32F0 Target for CW308
STM32F0 series Arm Cortex-M0 device. Very low-cost and low-power device with limited performance.
STM32F4 Target w/ Hardware Crypto Target for CW08
STM32F4 high-performance series Arm Cortex-M4 device, includes hardware AES implementation peripheral.
STM32L4 Target for CW308
Arm Cortex-M4 core with hardware AES.
STM32F4HWC Target w/ CANoodler bundle. Allows building demos using CAN peripheral of STM32F4 and hardware crypto.
CANoodler bundle with STM32F4HWC Target (which has CAN peripherals).
87C51 Target for CW308
87C51 target allows experimentation with 8051 features including XOR encryption of FLASH.
CEC1702 Target for CW308
Arm Cortex-M4 core with many cryptographic accelerators including AES, RSA, and ECC. No internal memory (uses SPI flash) makes development somewhat harder.
STM32F3 Target for CW308 with CANOODLER
CANoodler bundle with STM32F3 Target (which has CAN peripherals).