Advanced DPA- and FIA-Resistant Software Library
The AES-SW library delivers high-performance protection against side-channel (SCA) and fault injection attacks (FIA) through OTA …
Overview
The AES-SW library delivers high-performance protection against side-channel (SCA) and fault injection attacks (FIA) through OTA deployment, enabling compliance with FIPS 140-3, Common Criteria AVA_VAN.5, and SESIP.
It secures both new and already-deployed devices, including those without hardware countermeasures, and is proven in millions of systems.
AES-SW achieves outstanding performance even on low-end processors, 100 Mbps on a 1.2 GHz ARM and 900 Mbps on a 3.4 GHz laptop, while supporting all AES chaining modes. The library integrates STORM, FortifyIQ’s advanced protection scheme, to block DPA, SIFA, cache, and other advanced attacks.
Portable and processor-agnostic, AES-SW provides consistent, high-assurance security across MPUs and MCUs. Validation includes no TVLA leakage in 100K noiseless traces and proven resistance at Common Criteria AVA_VAN.5 and FIPS 140-3 Levels 3–4.
A command-line interface is included for rapid encryption and decryption tasks.
Key features
- Ultra-strong side-channel and SIFA protection at high performance
- NIST FIPS-197 compliant
- AES-128/192/256 encryption and decryption
- Tunable protection level
- Supports all chaining modes: ECB, CBC, CFB, OFB, CTR, XTS, CCM, GCM
- Portable to any CPU/MCU/MPU
Applications
- Legacy and cost-constrained devices without hardware security
- IoT and embedded devices with OTA updates
- Automotive systems and long-lifecycle ECUs
- Content protection (Set-Top Boxes, SoCs, UHD streaming)
- Government and critical infrastructure systems
- Medical devices and healthcare systems
- Secure internet protocols (SSL/TLS, IPsec, VPNs) for embedded devices, legacy systems, and moderate-throughput applications.
What’s Included?
- The folder with the public header files of the library
- The folder with the library with which to link
- The folder with the command-line application (optional)
- The folder with the integration rules for the CMake build system
- Technical support and assistance
- Security documentation
Files
Note: some files may require an NDA depending on provider policy.
Specifications
Identity
Provider
Learn more about DPA Countermeasures IP core
Protecting FPGAs from power analysis security vulnerabilities
Evaluating the Side Channel Security of Post-Quantum Hardware IP
Nine Compelling Reasons Why Menta eFPGA Is Essential for Achieving True Crypto Agility in Your ASIC or SoC
How to design secure SoCs, Part II: Key Management
Rambus CryptoManager Root of Trust Solutions Tailor Security Capabilities to Specific Customer Needs with New Three-Tier Architecture
Frequently asked questions about DPA Countermeasures IP cores
What is Advanced DPA- and FIA-Resistant Software Library?
Advanced DPA- and FIA-Resistant Software Library is a DPA Countermeasures IP core from FortifyIQ, Inc. listed on Semi IP Hub.
How should engineers evaluate this DPA Countermeasures?
Engineers should review the overview, key features, supported foundries and nodes, maturity, deliverables, and provider information before shortlisting this DPA Countermeasures IP.
Can this semiconductor IP be compared with similar products?
Yes. Buyers can compare this product with similar semiconductor IP cores or IP families based on category, provider, process options, and structured technical specifications.