This essay investigates the role of cost in the development and production of secure integrated circuits. Initially, I make a small introduction on hardware attacks on smart cards and some of the reasons behind them. Subsequently, I introduce the production phases of chips that are integrated to smart cards and try to identify the costs affecting each one of them. I proceed to identify how adding security features on such integrated circuits may affect the costs of their development and production. I then make a more thorough investigation on the costs of developing a hardware attack for such chips and try to estimate the potential damages and losses of such an attack. I also go on to examine potential ways of reducing the cost of production for secure chips, while identifying the difficulties in adopting them. This essay ends with the conclusion that adding security features to chips meant to be used for secure applications is well worth it, because the costs of developing attacks are of comparable amounts to the costs of developing and producing a chip and the potential damages and losses caused by such attacks can be way higher than these costs. Therefore, although the production and development of integrated circuits come at a certain cost and security introduces further additional costs, security is inherently unavoidable in such chips. Finally, I additionally identify that security is an evolving concept and does not aim to make a chip totally impenetrable, as this may be impossible, but to lower the potential risks, including that of being compromised, to acceptable levels. Thus, a balance needs be found between the level of security and the levels of cost and risk.
翻译:这篇论文调查了在开发和生产安全集成电路方面成本的作用。最初,我对智能卡的硬件攻击进行了小介绍,并介绍了其中的一些原因。随后,我介绍了集成成智能卡的芯片的生产阶段,并试图确定其中每个集成成的芯片的成本。我着手确定在这种集成电路上增加安全特征会如何影响其开发和生产的成本。然后,我更彻底地调查为这种芯片开发硬件攻击的成本,并试图估计这种攻击的潜在损害和损失。我还继续研究降低安全芯片生产成本的潜在方法,同时查明采用这些芯片的困难。最后,我得出的结论是,在用于安全应用程序的芯片上增加安全特性是十分值得的,因为发展这种集成电路袭击的成本与开发和生产芯片的成本相当,以及这种袭击可能造成的潜在损害和损失可能远远高于这些费用。因此,尽管集成电路的生产和开发成本和安全需求带来更多的成本,但安全在这种芯片中是不可避免的,安全是不可避免的。最后,我确定一个安全水平是潜在的,这一安全水平是无法避免的,因为安全水平是危险的,因此,这一安全水平是危险的,这一危险是危险的,因为安全水平是潜在的,是危险的是危险的,是危险的,是危险的,因此是危险的是危险的,因此是危险的水平是危险的,是危险的,是危险的是危险的,是危险的是,是危险的是,是危险的是危险的,是,是,是危险的是,是,是危险的是危险的是,是,是,是,是,是,是,是危险的是危险的是危险的是危险的是危险的是危险的是,是,因为安全水平是危险的是,是,是,是,是,是,是,是,是危险的是危险的是危险的是危险的是,是,是,是危险的是危险的是危险的是,是危险的是,是,是,是,是危险的是,是,是危险的是,是,是,是,是,是危险的是,是,是,是,是,是,是,是,是,是,是,是,是,是,是危险的是,是,是,是,是,是,是,是危险的是,是,是,是,是危险的是,是,是,是,是,是,是安全的是安全的是,是,是,是,是,是,是,是,是,