Targeted Wearout Attacks in Microprocessor Cores

Targeted Wearout Attacks in Microprocessor Cores
Originally published on ArXiv - Hardware Architecture

Computer Science > Cryptography and Security

arXiv:2508.16868v1 (cs)

[Submitted on 23 Aug 2025]

Title:Targeted Wearout Attacks in Microprocessor Cores

Authors:Joshua Mashburn, Johann Knechtel, Florian Klemme, Hussam Amrouch, Ozgur Sinanoglu, Paul V. Gratz

View a PDF of the paper titled Targeted Wearout Attacks in Microprocessor Cores, by Joshua Mashburn and 5 other authors

View PDF HTML (experimental)

Abstract:Negative-Bias Temperature Instability is a dominant aging mechanism in nanoscale CMOS circuits such as microprocessors. With this aging mechanism, the rate of device aging is dependent not only on overall operating conditions, such as heat, but also on user controllable inputs to the transistors. This dependence on input implies a possible timing fault-injection attack wherein a targeted path of logic is intentionally degraded through the purposeful, software-driven actions of an attacker, rendering a targeted bit effectively stuck.
In this work, we describe such an attack mechanism, which we dub a "$\textbf{Targeted Wearout Attack}$", wherein an attacker with sufficient knowledge of the processor core, executing a carefully crafted software program with only user privilege, is able to degrade a functional unit within the processor with the aim of eliciting a particular desired incorrect calculation in a victim application. Here we give a general methodology for the attack. We then demonstrate a case study where a targeted path within the fused multiply-add pipeline in a RISC-V CPU sees a $>7x$ increase in wear over time than would be experienced under typical workloads. We show that an attacker could leverage such an attack, leading to targeted and silent data corruption in a co-running victim application using the same unit.

Comments:

Subjects:

Cryptography and Security (cs.CR); Hardware Architecture (cs.AR)

Cite as:

arXiv:2508.16868 [cs.CR]

 

(or arXiv:2508.16868v1 [cs.CR] for this version)

 

https://doi.org/10.48550/arXiv.2508.16868

Focus to learn more

arXiv-issued DOI via DataCite

Submission history

From: Joshua Mashburn [view email]
[v1] Sat, 23 Aug 2025 01:54:21 UTC (620 KB)

Full-text links:

Access Paper:

View a PDF of the paper titled Targeted Wearout Attacks in Microprocessor Cores, by Joshua Mashburn and 5 other authors

Current browse context:

cs.CR

< prev   |   next >

new | recent | 2025-08

Change to browse by:

cs
cs.AR

References & Citations

export BibTeX citation Loading…

BibTeX formatted citation

×

loading…

Data provided by:

Bookmark

[

BibSonomy logo

](http://www.bibsonomy.org/BibtexHandler?requTask=upload&url=https://arxiv.org/abs/2508.16868&description=Targeted Wearout Attacks in Microprocessor Cores "Bookmark on BibSonomy")[

Reddit logo

](https://reddit.com/submit?url=https://arxiv.org/abs/2508.16868&title=Targeted Wearout Attacks in Microprocessor Cores "Bookmark on Reddit")

Bibliographic Tools

Bibliographic and Citation Tools

Bibliographic Explorer Toggle

Bibliographic Explorer (What is the Explorer?)

Connected Papers Toggle

Connected Papers (What is Connected Papers?)

Litmaps Toggle

Litmaps (What is Litmaps?)

scite.ai Toggle

scite Smart Citations (What are Smart Citations?)

Code, Data, Media

Code, Data and Media Associated with this Article

alphaXiv Toggle

alphaXiv (What is alphaXiv?)

Links to Code Toggle

CatalyzeX Code Finder for Papers (What is CatalyzeX?)

DagsHub Toggle

DagsHub (What is DagsHub?)

GotitPub Toggle

Gotit.pub (What is GotitPub?)

Huggingface Toggle

Hugging Face (What is Huggingface?)

Links to Code Toggle

Papers with Code (What is Papers with Code?)

ScienceCast Toggle

ScienceCast (What is ScienceCast?)

Demos

Demos

Replicate Toggle

Replicate (What is Replicate?)

Spaces Toggle

Hugging Face Spaces (What is Spaces?)

Spaces Toggle

TXYZ.AI (What is TXYZ.AI?)

Related Papers

Recommenders and Search Tools

Link to Influence Flower

Influence Flower (What are Influence Flowers?)

Core recommender toggle

CORE Recommender (What is CORE?)

  • Author
  • Venue
  • Institution
  • TopicAbout arXivLabs

arXivLabs: experimental projects with community collaborators

arXivLabs is a framework that allows collaborators to develop and share new arXiv features directly on our website.

Both individuals and organizations that work with arXivLabs have embraced and accepted our values of openness, community, excellence, and user data privacy. arXiv is committed to these values and only works with partners that adhere to them.

Have an idea for a project that will add value for arXiv's community? Learn more about arXivLabs.

Which authors of this paper are endorsers? | Disable MathJax (What is MathJax?)