The Hardware Hacking Handbook: Breaking Embedded Security with Hardware Attacks

Authors: van Woudenberg, Jasper & O'Flynn, Colin
Publisher: No Starch Press
BISAC/Subject: COM067000, COM092000, TEC008000, COM095000, COM043050, TEC020000
ISBN: 9781593278755, Related ISBNs: 1593278748, 1593278756, 9781593278748, 9781593278755
Classification: Non-Fiction
Number of pages: 300,
Audience: General/trade
Synopsis: The Hardware Hacking Handbook takes you deep inside embedded devices to show how different kinds of attacks work, then guides you through each hack on real hardware.

Embedded devices are chip-size microcomputers small enough to be included in the structure of the object they control, and they’re everywhere—in phones, cars, credit cards, laptops, medical equipment, even critical infrastructure. This means understanding their security is critical. The Hardware Hacking Handbook takes you deep inside different types of embedded systems, revealing the designs, components, security limits, and reverse-engineering challenges you need to know for executing effective hardware attacks.

Written with wit and infused with hands-on lab experiments, this handbook puts you in the role of an attacker interested in breaking security to do good. Starting with a crash course on the architecture of embedded devices, threat modeling, and attack trees, you’ll go on to explore hardware interfaces, ports and communication protocols, electrical signaling, tips for analyzing firmware images, and more. Along the way, you’ll use a home testing lab to perform fault-injection, side-channel (SCA), and simple and differential power analysis (SPA/DPA) attacks on a variety of real devices, such as a crypto wallet. The authors also share insights into real-life attacks on embedded systems, including Sony’s PlayStation 3, the Xbox 360, and Philips Hue lights, and provide an appendix of the equipment needed for your hardware hacking lab – like a multimeter and an oscilloscope – with options for every type of budget.
 
You’ll learn:
   How to model security threats, using attacker profiles, assets, objectives, and countermeasures

   Electrical basics that will help you understand communication interfaces, signaling, and measurement 

   How to identify injection points for executing clock, voltage, electromagnetic, laser, and body-biasing fault attacks, as well as practical injection tips 

   How to use timing and power analysis attacks to extract passwords and cryptographic keys

   Techniques for leveling up both simple and differential power analysis, from practical measurement tips to filtering, processing, and visualization


Whether you’re an industry engineer tasked with understanding these attacks, a student starting out in the field, or an electronics hobbyist curious about replicating existing work, The Hardware Hacking Handbook is an indispensable resource – one you’ll always want to have onhand.
Sign up for our literacy platform for reading at home

LightSail includes up to 6,000 high interest, Lexile aligned book titles with every student subscription. Other titles are available for individual purchase.

Watch the power of

Lightsail in action

×

SUPPORT GROWING READERS

Immediately Engage Students
Immediately Engage Students
Simple intuitive design has classrooms reading within minutes.
Exponentially Grow Reading Time
Exponentially Grow Reading Time
Students love the LightSail experience and naturally spend more time reading.
Accelerate Literacy Development
Accelerate Literacy Development
Students reading 25 minutes a day on LightSail are seeing 2+ years of Lexile growth in a single year.

LightSail Education is a comprehensive Lexile and standards-aligned, literacy platform and digital e-book library. Including multimodal learning functionality and featuring books from leading publishers, LightSail holistically assesses and nurtures each student on their reading and writing-to-learn journey, throughout elementary, middle, and high school.

*LightSail offers a 2,000 or a 6,000 title bundle with its student subscriptions. Other titles are available for individual purchase.