Breakthrough silicon scanning discovers backdoor in military chip
cl.cam.ac.uk
cl.cam.ac.uk
It's still interesting reading. Maybe Microsemi will finally listen to these guys and stop using the same password for the backdoor in _all_ of the following chips: "all ProASIC3, Igloo, Fusion and SmartFusion FPGAs" [1]
Ok and PEA is just their patented method of automating differential power analysis using a test jig - it does the repetitive process using a microcontroller and some sensors instead of doing it after sampling everything with an o-scope. It's a good idea and they have worked out the fiddly little details... but a pretty simple concept.
This parent post looks like a much more thorough threat to me, depending on where the chips are used...
http://erratasec.blogspot.com/2012/05/bogus-story-no-chinese...
The more a company touts their product is "secure" the less it is
As much as "we use military-grade encryption" means a 16 year old can break it.
Here is one example:
http://download.intel.com/design/processor/specupdt/313279.p...
Low cost ICs are incredibly complex nowadays, to the point defending even the most integrated, self-contained of parts is near impossible. I've been doing security analysis for manufacturers of high end microcontrollers and these parts are packed with features to the point they are just hard to seal. It's common to have a debugging/manufacturing/update/boot mechanism that can be used for attacks even when things are supposedly locked down.