The device is designed with state-of-the-art security features that include the following.
- Arm® TrustZone® for memory, peripherals, GPIO pins, PPI channels, and interrupts
- Tamper controller to monitor and prevent physical attacks
- Active driven tamper switches (active shield)
- Signal protectors for critical configuration signals
- Glitch detectors to guard against fault injection attacks
- Crypto accelerator with built-in self-check and countermeasures
- Masking against simple and differential power analysis
- Protection against timing attacks
- NIST SP 800-90B random number generator
- Non-volatile memory controller with built-in secure key storage (key management unit)
- Immutable boot region for establishing root of trust
- Authenticated debug to prevent unauthorized access to the debug port