ChipWhisperer

The ChipWhisperer® ecosystem presents the first open-source, low-cost solution to expose weaknesses that exist in embedded systems all around us.

ChipWhisperer tools are designed to teach you and your team how to:

conduct side-channel power analysis and fault injection attacks

Computer Processor

uncover vulnerabilities

in your own

embedded systems

Computer Processor

implement

robust security

countermeasures

for your own and your vendors' products

 

side-channel power analysis

MSRP

$250 US

ChipWhisperer-Lite 32-Bit

NAE-CWLITE.jpg

The ChipWhisperer-Lite, changed to use a 32-bit Cortex-M4 target.

Sample Rate

105 MS/s

VCC Glitching

Crowbar, < 1 nS resolution

Gain Setting

Programmable

Clock Glitching

Yes

Buffer Size

24000

Target

Cortex-M4 32-bit

Triggering

Rising/Falling Edge, Level

MSRP

$250 US

ChipWhisperer-Lite XMEGA

NAE-CWLITE.jpg

The original ChipWhisperer-Lite, with 8-bit XMEGA target.

Sample Rate

105 MS/s

VCC Glitching

Crowbar, < 1nS resolution

Gain Setting

Programmable

Clock Glitching

Yes

Buffer Size

24000

Target

XMEGA 8-Bit

Triggering

Rising/Falling Edge, Level

MSRP

$50 US

ChipWhisperer-Nano

NAE-CWLITE.jpg

Low cost solution for simple training & demo setups.

Sample Rate

20 MS/s

VCC Glitching

Crowbar

Gain Setting

Fixed

Clock Glitching

No

Buffer Size

50000

Target

Cortex-M0 32-bit

Triggering

Rising Edge

Single Board Solutions

The original ChipWhisperer-Lite is a single board that integrates high-speed power measurement (replacing your oscilloscope), a target device, programmer for the target device, a platform for performing fault injection, and much more.

 

These boards are perfect if you want to teach yourself (or your class) all about side-channel power analysis & fault injection with minimal fuss.

Starter Kits

These kits contain the capture hardware (ChipWhisperer device) along with various targets and tools. You can perform almost all of the tutorials with these kits, and then extend them to start looking at real devices with the included connectivity tools.

 
NAE-CWLITE.jpg

ChipWhisperer-Pro Kit

MSRP

$3800 US

Our most advanced capture hardware lets you trigger on analog waveforms, and capture long power traces such as the ones asymmetric algorithms generate.

Sample Rate

105 MS/s (10 MS/s streaming)

Buffer Size

96000 (unlimited in streaming)

Targets

targets

VCC Glitching

Crowbar, < 1nS resolution

Clock Glitching

Yes

Triggering

Waveform, SPI, UART, Rising/Falling Edge, Level

NAE-CWLITE.jpg

ChipWhisperer Level 2 Kit

MSRP

$912 US

Extend your work with probes & level shifters!

Sample Rate

105 MS/s

Buffer Size

24000

Targets

targets

VCC Glitching

Crowbar, < 1nS resolution

Clock Glitching

Yes

Triggering

Rising/Falling Edge, Level

NAE-CWLITE.jpg

ChipWhisperer Level 1 Kit

MSRP

$552 US

Go beyond the basics with switchable target boards, see CW308 UFO Targets for all the options!

Sample Rate

105 MS/s

Buffer Size

24000

Targets

targets

VCC Glitching

Crowbar, < 1nS resolution

Clock Glitching

Yes

Triggering

Rising/Falling Edge, Level

Target Boards

These targets were designed to be used with the ChipWhisperer capture platform, but they are flexible enough to be used with a standard oscilloscope and computer to drive the target.

NAE-CW305-7A100_web.jpg

CW305 Artix FPGA Target

MSRP

$800 - $3000 US

FPGA target for implementing custom cryptographic algorithms, includes a powerful address/data interface to FPGA, with demonstration AES core. Also possible to run soft-core processors, including Arm DesignStart Cortex-M1 & Cortex-M3 releases.

NAE-CW305-7A100_web.jpg

CW308 UFO Target Board

MSRP

$240 US

Our universal base-board that fits a variety of microcontroller targets, includes STM32F3 and XMEGA targets.

 

These target boards require the CW308 UFO base board to function. They have a variety of processor architectures to allow you to easily experiment with different devices under a (fairly) standard environment. Note that some boards may need external programmers (such as Segger J-Link or OpenOCD) to reflash the chip. Check the datasheet and documentation before purchasing if you are unsure!

training-chipwhisperer_edited.jpg

Filter UFO Targets:

Chip Architecture
Hardware Cryptography

CW308 UFO Targets

 

Results

SKU
Short Name
Short Desc
Main Photo
MSRP
ATSAML11 Target for CW308
Arm Cortex-M23 core with hardware AES, includes DPA countermeasures outside the AES core such as Hamming-Weight balanced RAM and FLASH access modes.
MPC5748G Target for CW308
Triple-core PowerPC target for automotive environments, with separate Hardware Security Module (HSM) core.
Spartan S6LX9 Target for CW308
Small FPGA target, Xilinx Spartan 6 LX9. Example AES implementation available.
LPC55S69 Target for CW308
Dual-Core Cortex-M33 core with PUF, AES hardware, and PRINCE memory encryption options. Supports special AES mode that reduces AES power signature.
K82F Target for CW308
Arm Cortex-M4 core with two AES peripherals - one includes hardware masking DPA countermeasures.
STM32L4 Target for CW308
Arm Cortex-M4 core with hardware AES.
EFR32MG21 with 32QFN Socket Target for CW308
UFO Target PCB with 32QFN Socket for EFR32MG21. A low-cost target for experimenting with power analysis and glitch attacks. See Artix Target (CW305) for a more advanced board. NOTE: An external programmer is REQUIRED for this target. The ChipWhisperer platform does not currently support programming this target.
$140 USD
EFR32MG21A Target for CW308
The EFR32MG21A board features the EFR32MG21A010F1024 from Silicon Labs. This device features a number of security features, including a dedicated “Secure Element” core that performs a secure boot operation, and DPA countermeasures on cryptographic primitives. Note: this board requires an external JTAG/SWD programmer (such as OpenOCD or J-Link) for use, as it does not include a bootloader.
$22 USD
STM32F4HWC Target w/ CANoodler bundle. Allows building demos using CAN peripheral of STM32F4 and hardware crypto.
CANoodler bundle with STM32F4HWC Target (which has CAN peripherals).
STM32L4 Target for CW308
STM32L4 high-performance series Arm Cortex-M4 device, includes hardware AES implementation peripheral.
PSOC62 Target for CW308
Arm Cortex-M4/M0 dual-core device, with security features allowing Cortex M0 core to be used as boot device. Hardware AES peripheral.
STM32F3 Target for CW308 with CANOODLER
CANoodler bundle with STM32F3 Target (which has CAN peripherals).
ATSAM4L Target for CW308
Arm Cortex-M4 core with hardware AES that has four selectable DPA countermeasures.
XMEGA Target for CW308
An 8-bit XMEGA target, which uses the same chip as the original ChipWhisperer-Lite.
MPC5777C Target for CW308
Dual-Core PowerPC target for automotive environments, with SHE.
STM32F0 Target for CW308
STM32F0 series Arm Cortex-M0 device. Very low-cost and low-power device with limited performance.
87C51 Target for CW308
87C51 target allows experimentation with 8051 features including XOR encryption of FLASH.
STM32F3 Target for CW308
STM32F3 series Arm Cortex-M4 device. Popular "mainstream" device with reasonable performance.
STM32L4 Target for CW308
STM32L4 high-performance series Arm Cortex-M4 device, includes hardware AES implementation peripheral.
STM32F4 Target w/ Hardware Crypto Target for CW08
STM32F4 high-performance series Arm Cortex-M4 device, includes hardware AES implementation peripheral.
PSOC62 Target for CW308
Arm Cortex-M4/M0 dual-core device, with security features allowing Cortex M0 core to be used as boot device. Hardware AES peripheral.
STM32L56 Target for CW308
Arm Cortex-M33 core with hardware cryptographic accelerators including AES and ECC.
D2000 Target for CW308
Intel Quark D2000 is a microcontroller using the x86 instruction set.
MPC5676R Target for CW308
PowerPC target for automotive environments.
CEC1702 Target for CW308
Arm Cortex-M4 core with many cryptographic accelerators including AES, RSA, and ECC. No internal memory (uses SPI flash) makes development somewhat harder.
STM32F2 w/ Hardware Crypto Target
STM32F2 series high-performance Arm Cortex-M3 device with hardware AES.