CRACEN contains security countermeasures to prevent malicious usage.
The following engines implement countermeasures:
- AES – Masking against Simple Power Analysis (SPA) and Differential Power Analysis (DPA)
- IKG/PKE – Protection against timing attacks and DPA
If CRACEN IKG/PKE is used maliciously, a TAMPC event will be generated and countermeasures executed according to the TAMPC configuration. The bits in TAMPC that control the countermeasures have lock bits, preventing further modification to the configuration.