Assessing Runtime Electromagnetic Detection of CPU Hardware Trojans Targeting Kernel Memory

arXiv:2609.23186 · cs.CR · Submitted 2026-09-19 · Read on arXiv

cs.CR

Submitted: 2026-09-19

Updated: 2026-09-19

License: http://creativecommons.org/licenses/by-nc-sa/4.0/

The gist: Side-channels are a promising approach for hardware trojan detection, as they can passively reveal malicious hardware activity without requiring additional circuitry or destructive analysis of the

Abstract

Side-channels are a promising approach for hardware trojan detection, as they can passively reveal malicious hardware activity without requiring additional circuitry or destructive analysis of the device under test. This work investigates the use of electromagnetic (EM) emanations for runtime detection of hardware trojan attacks. Using an open-source hardware trojan that implements an arbitrary memory-write primitive, we tamper with the kernel memory of a Linux system running on a RISC-V microarchitecture and perform a real-time baseline detection using the processor's EM emissions. Our results indicate that, under certain conditions, hardware trojans can be detected indirectly through the anomalous software behavior they enable.

Related papers