{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,1]],"date-time":"2026-04-01T18:33:18Z","timestamp":1775068398064,"version":"3.50.1"},"reference-count":50,"publisher":"Springer Science and Business Media LLC","issue":"5","license":[{"start":{"date-parts":[[2021,7,9]],"date-time":"2021-07-09T00:00:00Z","timestamp":1625788800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2021,7,9]],"date-time":"2021-07-09T00:00:00Z","timestamp":1625788800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/501100004270","name":"Royal Institute of Technology","doi-asserted-by":"crossref","id":[{"id":"10.13039\/501100004270","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["SN COMPUT. SCI."],"published-print":{"date-parts":[[2021,9]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>Side-channel attacks have become a realistic threat to implementations of cryptographic algorithms, especially with the help of deep-learning techniques. The majority of recently demonstrated deep-learning side-channel attacks use a single neural network classifier to extract the secret from implementations of cryptographic algorithms. The potential benefits of combining multiple classifiers using the ensemble learning method have not been fully explored in the side-channel attack\u2019s context. In this paper, we propose a tandem approach for the attack in which multiple models are trained on different attack points but are used in parallel to recover the key. Such an approach allows us to considerably reduce (33.5% on average) the number of traces required to recover the key from an FPGA implementation of AES by power analysis. We also show that not all combinations of classifiers improve the attack efficiency.<\/jats:p>","DOI":"10.1007\/s42979-021-00755-w","type":"journal-article","created":{"date-parts":[[2021,7,9]],"date-time":"2021-07-09T15:02:46Z","timestamp":1625842966000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":19,"title":["Tandem Deep Learning Side-Channel Attack on FPGA Implementation of AES"],"prefix":"10.1007","volume":"2","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-9630-5869","authenticated-orcid":false,"given":"Huanyu","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Elena","family":"Dubrova","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2021,7,9]]},"reference":[{"key":"755_CR1","unstructured":"Benadjila R, Prouff E, Strullu R, Cagli E, Dumas C. Study of deep learning techniques for side-channel analysis and introduction to ASCAD database. In: ANSSI, France & CEA, LETI, MINATEC Campus. Online verf\u00fcgbar unter, 2018 https:\/\/eprint.iacr.org\/2018\/053.pdf. Accessed 13 Apr 2021."},{"key":"755_CR2","unstructured":"Maghrebi H. Deep learning based side channel attacks in practice. Tech. rep., IACR Cryptology ePrint Archive 2019;578: 2019."},{"key":"755_CR3","doi-asserted-by":"crossref","unstructured":"Weissbart L. Performance analysis of multilayer perceptron in profiling side-channel analysis. In: International Conference on applied cryptography and network security, 2020; p.\u00a0198\u2013216, Springer.","DOI":"10.1007\/978-3-030-61638-0_12"},{"key":"755_CR4","unstructured":"Wu L, Perin G, Picek S. I choose you: automated hyperparameter tuning for deep learning-based side-channel analysis. Cryptology ePrint Archive, Report 2020\/1293, 2020."},{"key":"755_CR5","doi-asserted-by":"crossref","unstructured":"Rijsdijk J, Wu L, Perin G, Picek S. Reinforcement learning for hyperparameter tuning in deep learning-based side-channel analysis. Cryptology ePrint Archive, Report 2021\/071, 2021.","DOI":"10.46586\/tches.v2021.i3.677-707"},{"issue":"6","key":"755_CR6","doi-asserted-by":"publisher","first-page":"1207","DOI":"10.1109\/TCAD.2020.3033495","volume":"40","author":"L Zhang","year":"2020","unstructured":"Zhang L, Xing X, Fan J, et al. Multilabel deep learning-based side-channel attack. In: IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems, 2020;40(6):1207\u20131216.","journal-title":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems"},{"key":"755_CR7","doi-asserted-by":"crossref","unstructured":"Wang H, Brisfors M, Forsmark S, Dubrova E. How diversity affects deep-learning side-channel attacks. In: 2019 IEEE Nordic Circuits and Systems Conf. (NORCAS), 2019; p.\u00a01\u20137.","DOI":"10.1109\/NORCHIP.2019.8906945"},{"key":"755_CR8","doi-asserted-by":"crossref","unstructured":"Das D, Golder A, Danial J, Ghosh S, Raychowdhury A, Sen S. X-DeepSCA: cross-device deep learning side channel attack. In: Proc. of the 56th Annual Design Automation Conf. 2019, 2019; p.\u00a0134, ACM.","DOI":"10.1145\/3316781.3317934"},{"key":"755_CR9","doi-asserted-by":"crossref","unstructured":"Wang H, Forsmark S, Brisfors M, et al. Multi-Source Training Deep-Learning Side-Channel Attacks. In: 2020 IEEE 50th International Symposium on Multiple-Valued Logic (ISMVL). IEEE, 2020:58\u201363.","DOI":"10.1109\/ISMVL49045.2020.00-29"},{"issue":"12","key":"755_CR10","doi-asserted-by":"publisher","first-page":"2720","DOI":"10.1109\/TVLSI.2019.2926324","volume":"27","author":"A Golder","year":"2019","unstructured":"Golder A, Das D, Danial J, et al. Practical approaches toward deep-learning-based cross-device power side-channel attack. In: IEEE Transactions on Very Large Scale Integration (VLSI) Systems, 2019;27(12): 2720\u20132733.","journal-title":"IEEE Transactions on Very Large Scale Integration (VLSI) Systems"},{"key":"755_CR11","doi-asserted-by":"crossref","unstructured":"Wang H, Dubrova E. Federated learning in side-channel analysis. In International Conference on Information Security and Cryptology. Springer, Cham, 2020:257\u2013272.","DOI":"10.1007\/978-3-030-68890-5_14"},{"issue":"3","key":"755_CR12","first-page":"1","volume":"13","author":"Q Yang","year":"2019","unstructured":"Yang Q, Liu Y, Cheng Y, Kang Y, Chen T, Yu H. Federated learning. Synth Lect Artif Intell Mach Learn. 2019;13(3):1\u2013207.","journal-title":"Synth Lect Artif Intell Mach Learn."},{"key":"755_CR13","first-page":"18","volume":"13","author":"N Sklavos","year":"2006","unstructured":"Sklavos N, Touliou K, Efstathiou C. Exploiting cryptographic architectures over hardware vs. software implementations: advantages and trade-offs. In: Memory, 2006;13: 18.","journal-title":"Memory"},{"key":"755_CR14","unstructured":"TELECOM T. ParisTech SEN\u00a0research group. DPA contest v2. 2010. http:\/\/www.dpacontest.org\/v2\/. Accessed 13 Apr 2021."},{"issue":"1","key":"755_CR15","first-page":"1","volume":"2019","author":"S Picek","year":"2018","unstructured":"Picek S, Heuser A, Jovic A, Bhasin S, Regazzoni F. The curse of class imbalance and conflicting metrics with machine learning for side-channel evaluations. IACR Trans Cryptogr Hardw Embed Syst. 2018;2019(1):1\u201329.","journal-title":"IACR Trans Cryptogr Hardw Embed Syst."},{"key":"755_CR16","doi-asserted-by":"crossref","unstructured":"Masure L, Dumas C, Prouff E A comprehensive study of deep learning for side-channel analysis. In: IACR Transactions on Cryptographic Hardware and Embedded Systems, 2020(1):348\u2013375.","DOI":"10.46586\/tches.v2020.i1.348-375"},{"key":"755_CR17","doi-asserted-by":"crossref","unstructured":"Kim J, Picek S, Heuser A, Bhasin S, Hanjalic A. Make Some Noise. Unleashing the Power of Convolutional Neural Networks for Profiled Side-channel Analysis. In: IACR Transactions on Cryptographic Hardware and Embedded Systems, 2019(3):148\u2013179.","DOI":"10.46586\/tches.v2019.i3.148-179"},{"key":"755_CR18","doi-asserted-by":"crossref","unstructured":"Maghrebi H, Portigliatti T, Prouff E. Breaking cryptographic implementations using deep learning techniques. In: International Conference on Security, Privacy, and Applied Cryptography Engineering. Springer, Cham, 2016:3\u201326.","DOI":"10.1007\/978-3-319-49445-6_1"},{"key":"755_CR19","doi-asserted-by":"crossref","unstructured":"Picek S, Samiotis IP, Kim J, Heuser A, Bhasin S, Legay A. On the performance of convolutional neural networks for side-channel analysis. In: Int. Conf. on security, privacy, and applied crypt. engineering, 2018; p.\u00a0157\u2013176, Springer.","DOI":"10.1007\/978-3-030-05072-6_10"},{"key":"755_CR20","doi-asserted-by":"crossref","unstructured":"Ramezanpour K, Ampadu P, Diehl W. SCAUL: Power side-channel analysis with unsupervised learning. 2020. arXiv preprint arXiv:2001.05951.","DOI":"10.1109\/TC.2020.3013196"},{"key":"755_CR21","doi-asserted-by":"crossref","unstructured":"Kubota T, Yoshida K, Shiozaki M, Fujino T. Deep learning side-channel attack against hardware implementations of AES. In: 2019 22nd Euromicro Conf. on digital system design, 2019; p.\u00a0261\u2013268, IEEE.","DOI":"10.1109\/DSD.2019.00046"},{"issue":"771\u2013780","key":"755_CR22","first-page":"1612","volume":"14","author":"Y Freund","year":"1999","unstructured":"Freund Y, Schapire R, Abe N. A short introduction to boosting. J-Jpn Soc Artif Intell. 1999;14(771\u2013780):1612.","journal-title":"J-Jpn Soc Artif Intell."},{"key":"755_CR23","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1613\/jair.614","volume":"11","author":"D Opitz","year":"1999","unstructured":"Opitz D, Maclin R. Popular ensemble methods: an empirical study. J Artif Intell Res. 1999;11:169\u201398.","journal-title":"J Artif Intell Res."},{"key":"755_CR24","unstructured":"Goodfellow I, Bengio Y, Courville A. Deep learning. MIT Press, 2016. http:\/\/www.deeplearningbook.org. Accessed 13 April 2021."},{"key":"755_CR25","doi-asserted-by":"crossref","unstructured":"Wang H, Dubrova E. Tandem deep learning side-channel attack against FPGA implementation of AES. In: 2020 IEEE International Symposium on Smart Electronic Systems (iSES)(Formerly iNiS). IEEE, 2020:147\u2013150.","DOI":"10.1109\/iSES50453.2020.00041"},{"key":"755_CR26","doi-asserted-by":"crossref","unstructured":"Wang R, Wang H, Dubrova E. Far field EM side-channel attack on AES using deep learning. In: Proceedings of the 4th ACM Workshop on attacks and solutions in hardware security, 2020; p.\u00a035\u201344.","DOI":"10.1145\/3411504.3421214"},{"key":"755_CR27","volume-title":"The design of Rijndael: AES-the advanced encryption standard","author":"J Daemen","year":"2013","unstructured":"Daemen J, Rijmen V. The design of Rijndael: AES-the advanced encryption standard. Berlin: Springer Science & Business Media; 2013."},{"key":"755_CR28","doi-asserted-by":"crossref","unstructured":"Wu Y, Shen K, Chen Z, Wu J. Automatic measurement of fetal cavum septum Pellucidum from ultrasound images using deep attention network. In: 2020 IEEE International Conference on image processing (ICIP), 2020; p.\u00a02511\u2013515.","DOI":"10.1109\/ICIP40778.2020.9191002"},{"issue":"11","key":"755_CR29","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"LeCun Y, Bottou L, Bengio Y, Haffner P, et al. Gradient-based learning applied to document recognition. Proc IEEE. 1998;86(11):2278\u2013324.","journal-title":"Proc IEEE."},{"key":"755_CR30","first-page":"45","volume-title":"International Conference on Cryptographic Hardware and Embedded Systems","author":"E Cagli","year":"2017","unstructured":"Cagli E, Dumas C, Prouff E. Convolutional neural networks with data augmentation against jitter-based countermeasures. In: International Conference on Cryptographic Hardware and Embedded Systems. Springer, Cham, 2017:45\u201368."},{"key":"755_CR31","unstructured":"Perin G, Ege B, van Woudenberg J. Lowering the bar: deep learning for side channel analysis (white-paper). In: Proc. BlackHat, 2018; p.\u00a01\u201315."},{"key":"755_CR32","doi-asserted-by":"crossref","unstructured":"Gilmore R, Hanley N, O\u2019Neill M. Neural network based attack on a masked implementation of AES. In: 2015 IEEE Int. Symp. on hardware oriented security and trust, 2015; p.\u00a0106\u2013111, IEEE.","DOI":"10.1109\/HST.2015.7140247"},{"key":"755_CR33","doi-asserted-by":"crossref","unstructured":"Martinasek Z, Dzurenda P, Malina L. Profiling power analysis attack based on MLP in DPA contest V4.2. In: 2016 39th Int. Conf. on telecom. and signal processing, 2016; p.\u00a0223\u201326, IEEE.","DOI":"10.1109\/TSP.2016.7760865"},{"key":"755_CR34","doi-asserted-by":"crossref","unstructured":"Yang G, Li H, Ming J, Zhou, Y. Cdae: towards empowering denoising in side-channel analysis. In: International Conference on information and communications security, 2019; p.\u00a0269\u201386, Springer.","DOI":"10.1007\/978-3-030-41579-2_16"},{"key":"755_CR35","doi-asserted-by":"crossref","unstructured":"Kim J, Picek S, Heuser A, Bhasin S, Hanjalic A. Make some noise. unleashing the power of convolutional neural networks for profiled side-channel analysis. IACR Trans Cryptogr Hardw Embed Syst. 2019; p. 148\u201379.","DOI":"10.46586\/tches.v2019.i3.148-179"},{"key":"755_CR36","unstructured":"Jin M, Zheng M, Hu H, Yu, N. An enhanced convolutional neural network in side-channel attacks and its visualization. 2020. arXiv preprint arXiv:2009.08898."},{"issue":"1","key":"755_CR37","first-page":"1","volume":"2020","author":"G Zaid","year":"2020","unstructured":"Zaid G, Bossuet L, Habrard A, Venelli A. Methodology for efficient CNN architectures in profiling attacks. IACR Trans Cryptogr Hardw Embed Syst. 2020;2020(1):1\u201336.","journal-title":"IACR Trans Cryptogr Hardw Embed Syst."},{"key":"755_CR38","unstructured":"Satoh A. Side-channel attack standard evaluation board, sasebo. Project of the AIST\u2013RCIS (Research Center for Information Security), 2011; p. 135, http:\/\/www.rcis.aist.go.jp\/special\/SASEBO, Accessed 9 June 2021."},{"key":"755_CR39","unstructured":"May DS, VF pgas. Virtex-5 FPGA data sheet: DC and switching characteristics. 152(2013):1\u201365."},{"issue":"2","key":"755_CR40","first-page":"586","volume":"22","author":"Z Martinasek","year":"2013","unstructured":"Martinasek Z, Zeman V. Innovative method of the power analysis. Radioengineering. 2013;22(2):586\u201394.","journal-title":"Radioengineering."},{"key":"755_CR41","volume-title":"Designing embedded systems with PIC microcontrollers: principles and applications","author":"T Wilmshurst","year":"2006","unstructured":"Wilmshurst T. Designing embedded systems with PIC microcontrollers: principles and applications. Amsterdam: Elsevier; 2006."},{"key":"755_CR42","doi-asserted-by":"crossref","unstructured":"Wong SC, Gatt A, Stamatescu V, McDonnell MD. Understanding data augmentation for classification: when to warp? In: 2016 International Conference on digital image computing: techniques and applications (DICTA), 2016; p.\u00a01\u20136, IEEE.","DOI":"10.1109\/DICTA.2016.7797091"},{"key":"755_CR43","doi-asserted-by":"publisher","first-page":"581","DOI":"10.1109\/ICPR.1992.201845","volume-title":"11th IAPR International Conference on pattern recognition, Conference B: pattern recognition methodology and systems,","author":"H Bischof","year":"1992","unstructured":"Bischof H, Pinz A, Kropatsch WG. Visualization methods for neural networks. In: Proceedings 11th IAPR International Conference on pattern recognition. Vol. II. Conference B: pattern recognition methodology and systems, 1992; p. 581\u2013585, IEEE."},{"key":"755_CR44","doi-asserted-by":"publisher","first-page":"145","DOI":"10.1007\/978-3-030-16350-1_9","volume-title":"International Workshop on constructive side-channel analysis and secure design","author":"L Masure","year":"2019","unstructured":"Masure L, Dumas C, Prouff E. Gradient visualization for general characterization in profiling attacks. In: International Workshop on constructive side-channel analysis and secure design, 2019; p. 145\u2013167, Springer."},{"key":"755_CR45","first-page":"818","volume-title":"European Conference on computer vision","author":"L Zeiler","year":"2014","unstructured":"Zeiler MD, Fergus R. Visualizing and understanding convolutional networks. In: European Conference on computer vision, 2014; p. 818\u2013833, Springer."},{"key":"755_CR46","doi-asserted-by":"crossref","unstructured":"O\u2019Flynn C, Chen ZD. Chipwhisperer: an open-source platform for hardware embedded security research In: Int. Work. on Constr. side-channel analysis and secure design, 2014; p.\u00a0243\u201360, Springer.","DOI":"10.1007\/978-3-319-10175-0_17"},{"key":"755_CR47","doi-asserted-by":"crossref","unstructured":"Pahlevanzadeh H, Dofe J, Yu Q. Assessing CPA resistance of AES with different fault tolerance mechanisms In: 2016 21st Asia and South Pacific Design Automation Conference (ASP-DAC), 2016; p.\u00a0661\u201366, IEEE.","DOI":"10.1109\/ASPDAC.2016.7428087"},{"key":"755_CR48","doi-asserted-by":"crossref","unstructured":"Brier E, Clavier C, Olivier F. Correlation power analysis with a leakage model In: Int. Workshop on Cryptographic Hardware and Embedded Systems, 2004; p.\u00a016\u201329, Springer.","DOI":"10.1007\/978-3-540-28632-5_2"},{"key":"755_CR49","unstructured":"Juszczak P, Tax D, Duin RP. Feature scaling in support vector data description In: Proc. asci, 2002; p.\u00a095\u2013102, Citeseer."},{"key":"755_CR50","doi-asserted-by":"crossref","unstructured":"Yu Y, Marranghello F, Teijeira VD, Dubrova E. One-sided countermeasures for side-channel attacks can backfire In: Proceedings of the 11th ACM Conference on security & privacy in wireless and mobile networks, 2018; p.\u00a0299\u2013301.","DOI":"10.1145\/3212480.3226104"}],"container-title":["SN Computer Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-021-00755-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s42979-021-00755-w\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-021-00755-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,8,30]],"date-time":"2021-08-30T17:59:17Z","timestamp":1630346357000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s42979-021-00755-w"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,7,9]]},"references-count":50,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2021,9]]}},"alternative-id":["755"],"URL":"https:\/\/doi.org\/10.1007\/s42979-021-00755-w","relation":{},"ISSN":["2662-995X","2661-8907"],"issn-type":[{"value":"2662-995X","type":"print"},{"value":"2661-8907","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,7,9]]},"assertion":[{"value":"20 April 2021","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"17 June 2021","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"9 July 2021","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"On behalf of all the authors, the corresponding author states that there is no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of Interest Statement"}}],"article-number":"373"}}