Back to news

June 1, 2020 | International, C4ISR

DARPA Seeks Secure Microchip Supply Chain

"Once a chip is designed, adding security after the fact or making changes to address newly discovered threats is nearly impossible," explains a DARPA spokesperson.

By on May 29, 2020 at 2:46 PM

WASHINGTON: DARPA has launched a four-year project to find ways to design security features into microchips as they are being made to help ensure the future supply chain.

While the name of the project is daunting — Automatic Implementation of Secure Silicon (AISS) — and the technical requirements are a serious challenge, the concept is pretty simple.

“AISS aims to automate the process of incorporating security into chip designs, making it easier and potentially more cost effective for any organization with even a small design team (start-ups, mid-size companies, etc.) to build security measures into their designs,” a DARPA spokesperson told Breaking D today.

“Overall, with AISS DARPA aims to bring greater automation to the chip design process to profoundly decrease the burden of including security measures,” the spokesperson said.

The two winning teams, according to a May 27 DARPA press release, are:

The two AISS research teams are:

  • Synopsys, Arm, Boeing, Florida Institute for Cybersecurity Research at the University of Florida, Texas A&M University, UltraSoC, and the University of California, San Diego
  • Northrop Grumman, IBM, University of Arkansas, and University of Florida

“Research and development on the $75 million program was commenced two weeks ago and incremental capabilities are expected to roll out to the chip design community over the next four years,” the spokesperson said in an email. “Our hope is that many of the capabilities will start appearing as features in commercial design automation software before the program completion.”

Digital integrated circuits are the engines that drive modern computers, and everyday digital devices such as smart phones. They are critical to the evolution of the Internet of Things (IoT). As such, they increasingly have become a key target of hacking by US adversaries and cyber criminals alike, DARPA explains.

“Threats to IC chips are well known, and despite various measures designed to mitigate them, hardware developers have largely been slow to implement security solutions due to limited expertise, high cost and complexity,” the DARPA release says. “Further, when unsecure circuits are used in critical systems, the lack of embedded countermeasures exposes them to exploitation.”

Indeed, the Department of Commerce on May 15 took another swipe at Chinese telecoms behemoth Huawei and tightened its earlier efforts to block it from exporting its semiconductors and products to the US and allies. The Trump administration alleges that Huawei's hardware and software, in particular that related to 5G wireless technology, are full of deliberate security holes in order to enable Chinese government spying. The ruling by Commerce's Bureau of Industry and Security, which will take effect in September, seeks to prevent companies around the world from using American-made software and machinery develop chips for Huawei or its subsidiary firms.

The problem for device-makers, particularly in the IoT world where the market is largely for commercial products (think smart refrigerators), is that fixing potential security holes often isn't seen as worth the time, effort and most importantly, money.

“The inclusion of security also often requires certain trade-offs with the typical design objectives, such as size, performance, and power dissipation,” the DARPA spokesperson said. “For example, something like a sprinkler isn't likely to require the highest level of security protections. Investing in security mechanisms that take up a lot of space on the underlying chip, or significantly impact chip performance likely doesn't make sense based on the sprinkler's expected use and application.”

And yet, that future IoT sprinkler also will be other IoT devices and computer networks in operation by an individual, a company or a facility, such as a weapons depot.

Even more unfortunately, the spokesperson explained, “modern chip design methods are unforgiving – once a chip is designed, adding security after the fact or making changes to address newly discovered threats is nearly impossible.”

Thus, the AISS program is aimed at spurring research into two areas that can address four types of microchip vulnerability, the release says: “side channel attacks, hardware Trojans, reverse engineering, and supply chain attacks, such as counterfeiting, recycling, re-marking, cloning, and over-production.”

The first area of research will be focusing on “development of a ‘security engine' that combines the latest academic research and commercial technology into an upgradable platform that can be used to defend chips against attacks, and provide an infrastructure to manage these hardened chips as they progress through their lifecycle,” DARPA said.

The second area, led by software specialists Synopsys, “involves integrating the security engine technology developed in the first research area into system-on-chip (SOC) platforms in a highly automated way,” the DARPA release said. The Synopsys team also will be working on how to integrate new security designs and manufacturing tools with currently available off-the-shelf products.

Nicholas Paraskevopoulous, sector VP for emerging capabilities development at Northrop Grumman, said in a May 27 press release that the firm's “design tools will enable the development of secure and trusted integrated circuits with reduced costs.” Northrop Grumman is involved in the first AISS research area.

Synopsis could not be reached for comment by press time.

https://breakingdefense.com/2020/05/darpa-seeks-secure-microchip-supply-chain/

On the same subject

  • France, Germany, UK condemn Iran over ballistic missiles, target new sanctions
  • Contract Awards by US Department of Defense - June 11, 2020

    June 12, 2020 | International, Aerospace, Naval, Land, C4ISR, Security

    Contract Awards by US Department of Defense - June 11, 2020

    DEFENSE MICROELECTRONICS ACTIVITY Lockheed Martin Corp., Owego, New York (HQ0727-16-D-0001); BAE Systems Information and Electronics, Nashua, New Hampshire (HQ0727-16-D-0002); General Dynamics Mission Systems, Bloomington, Minnesota (HQ0727-16-D-0003); Northrop Grumman Systems Corp., Linthicum Heights, Maryland (HQ0727-16-D-0004); Cobham Advanced Electronics Solutions Inc., Lansdale, Pennsylvania (HQ0727-16-D-0005); Raytheon Co., El Segundo, California (HQ0727-16-D-0006); The Boeing Co., Hazelwood, Missouri (HQ0727-16-D-0007); and Honeywell International Inc., Albuquerque, New Mexico (HQ0727-16-D-0008), are being awarded a maximum $10,271,000,000 modification on existing indefinite-delivery/indefinite-quantity, Advanced Technology Support Program IV (ATSP4) contracts. The modification raises the ceiling on the current ATSP4 contracts from $7,200,000,000 to $17,471,000,000. ATSP4 are multiple-award, indefinite delivery/indefinite quantity contracts for engineering services designed to resolve problems with obsolete, unreliable, unmaintainable, underperforming, or incapable electronics hardware and software through development of advanced technology insertions and applications to meet the requirements of the Department of Defense for a quick reaction capability. With all options exercised, the ordering period goes until March 31, 2026. The contracts were competitively procured via a February 2015 solicitation resulting in nine proposals and eight awards. No funds are being obligated on award. Funding will occur through individual task orders. The Defense Microelectronics Activity, McClellan, California, is the contracting activity. NAVY Lockheed Martin Corp., Lockheed Martin Aeronautics Co., Fort Worth, Texas, is awarded a $368,194,942 not-to-exceed, undefinitized contract modification (P00036) to previously awarded fixed-price-incentive-firm-target, firm-fixed-price, cost-plus-fixed-fee contract N00019-17-C-0001. This modification provides for the procurement of five F-35A Lightning II lot 14 aircraft, one F-35B lot 14 combat aircrafts and associated red gear for the government of Italy. It also authorizes the common capability scope of work at the Final Assembly and Checkout Facility in Cameri, Italy. Work will be performed in Fort Worth, Texas (35%); Cameri, Italy (28%); El Segundo, California (15%); Warton, United Kingdom (8%); Orlando, Florida (4%); Nashua, New Hampshire (3%); Baltimore, Maryland (3%); San Diego, California (2%); various locations within the continental U.S. (1.3%) and various locations outside the continental U.S. (0.7%). Work is expected to be complete by June 2023. Non-Department of Defense funds for $184,429,857 will be obligated at time of award, none of which will expire at the end of the current fiscal year. The Naval Air Systems Command, Patuxent River, Maryland, is the contracting activity. DRS Systems Inc., Melbourne, Florida, is awarded a $120,009,046 not-to-exceed, cost-plus-incentive-fee, firm-fixed-price, cost undefinitized contract to provide non-recurring engineering to design, develop, integrate and test engineering development models and production representative models of weapons replaceable assemblies for the AN/AAQ-45 Distributed Aperture Infrared Countermeasure system. Work will be performed in Dallas, Texas (61%); San Diego, California (31%); Fort Walton Beach, Florida (7%); and Melbourne, Florida (1%), and is expected to be complete by June 2024. Fiscal 2020 research, development, test and evaluation (Navy) funds in the amount of $23,497,884 will be obligated at time of award, none of which will expire at the end of the current fiscal year. This contract was not competitively procured pursuant to Federal Acquisition Regulation 6.302-1. The Naval Air Systems Command, Patuxent River, Maryland, is the contracting activity (N00019-20-C-0041). Harper Construction Co. Inc., San Diego, California, is awarded a $65,165,290 firm-fixed-price contract for the design and construction of a high-bay maintenance hangar for the Bell Boeing V-22 aircraft at Naval Base Coronado. The contract also contains one unexercised option and two planned modifications, which will increase the cumulative contract value to $66,148,955, if exercised. Work will be performed in San Diego, California. The work to be performed provides for the design and construction of a steel-framed and high-bay maintenance hangar for aircraft, to include one and a half modules of hangar space and associated airfield pavement for aircraft ingress and egress to hangars. The new facility will contain high-bay space, shops and maintenance space, operation, training, administrative space and supporting site infrastructure improvements. The project also includes construction of a hangar access apron. The option, if exercised, provides for reconstruction of the existing north parking lot. The planned modifications, if issued, provide for furniture, fixtures and audiovisual equipment. Work is expected to be complete by January 2023. Fiscal 2019 military construction (Navy) contract funds in the amount of $644,756 and fiscal 2020 military construction (Navy) contract funds in the amount of $64,520,534 are obligated on this award and will not expire at the end of the current fiscal year. This contract was competitively procured via the Federal Business Opportunities website and seven proposals were received. The Naval Facilities Engineering Command Southwest, San Diego, California, is the contracting activity (N62473-20-C-0553). Lockheed Martin Corp., Lockheed Martin Aeronautics Co., Fort Worth, Texas, is awarded $31,065,000 for a not-to-exceed, undefinitized contract modification (P00006) to previously issued order 0097 against basic ordering agreement N00019-14-G-0020. This modification provides supplier non-recurring engineering, development of design documentation and the creation of modification instructions for the developmental test fleet in support of the Joint Strike Fighter aircraft for the Navy, Air Force, Marine Corps and non-Department of Defense (DOD) participants. Work will be performed in El Segundo, California (85%); and Fort Worth, Texas (15%). These efforts will support service life extensions and enable the developmental test fleet to maintain currency with delivered technology. Work is expected to be complete by February 2022. Fiscal 2020 research, development, test and evaluation (Navy) funds in the amount of $3,698,820; fiscal 2020 research, development, test and evaluation (Air Force) funds in the amount of $3,698,820 and non-DOD participant funds in the amount of $1,602,360 will be obligated at time of award, none of which will expire at the end of the current fiscal year. The Naval Air Systems Command, Patuxent River, Maryland, is the contracting activity. Fukunaga & Associates Inc.,* Honolulu, Hawaii, is awarded a $30,000,000 indefinite-delivery/indefinite-quantity, architect-engineering contract with a maximum amount of $30,000,000 for architect-engineer services for various utility projects and other projects primarily under the cognizance of Naval Facilities Engineering Command, Hawaii. The initial task order is being awarded at $929,417 for the replacement of a 24-inch waterline at Joint Base Pearl Harbor-Hickam, Hawaii. The work to be performed provides for architect-engineer services for utility projects with associated multi-discipline architect-engineer support services. The type of design and engineering services expected to be performed under this contract are primarily for request for proposal (RFP) documentation for the design-bid-build utility projects with associated multi-discipline architect-engineering support services for new construction, alteration, repair and installation of mechanical systems and associated facilities. Other design and engineering services may include, but are not limited to, design-build RFP documentation, engineering investigations/concept studies, functional analysis concept development/charrettes and post construction award services. Work for this task order is expected to be complete by March 2021. Fiscal 2020 operations and maintenance (Navy) (O&M,N) contract funds in the amount of $929,417 are obligated on this award and will expire at the end of the current fiscal year. The term of the contract is not to exceed 60 months with an expected completion date of June 2025. Future task orders will be primarily funded by O&M,N funds. This contract was competitively procured via the beta.SAM website and two proposals were received. The Naval Facilities Engineering Command, Hawaii, is the contracting activity (N62478-20-D-5037). Leidos Inc., Reston, Virginia, is awarded a $7,456,371 firm-fixed-price and cost reimbursement task order under the General Services Administration One Acquisition Solution for Integrated Services (GSA OASIS). This indefinite-delivery/indefinite-quantity contract is also for a wide range of operational, analytical and management support services in support of the U.S. Marine Corps Central Command. Work will be performed in Tampa, Florida (90%); and Bahrain (10%). Work is expected to be complete by June 2021. If all options are exercised, work will continue through December 2025. This task order includes a 12-month base period, four 12-month option periods and one six-month option period, which, will bring the cumulative value of this task order to $48,846,236 if exercised. Fiscal 2020 operations and maintenance (Marine Corps) funds in the amount of $7,456,371 will be obligated at the time of award and will expire at the end of the current fiscal year. This task order was competitively solicited via the GSA OASIS Pool 1 and four proposals were received. The Marine Corps Installations National Capital Region-Regional Contracting Office, Quantico, Virginia, is the contracting activity (M00264-20-F-0227). ARMY INTEC Group LLC,* Paducah, Kentucky (W912QR20D0021); Dawn Inc.,* Warren, Ohio (W912QR-20-D-0022); RJ Runge,* Port Clinton, Ohio (W912QR-20-D-0023); G.M. Hill Engineering Inc.,* Jacksonville, Florida (W912QR-20-D-0024); and Nisou LGC JV LLC,* Detroit, Michigan (W912QR-20-D-0025), will compete for each order of the $45,000,000 firm-fixed-price contract for Great Lakes and Ohio River Division mission boundaries construction services. Bids were solicited via the internet with 16 received. Work locations and funding will be determined with each order, with an estimated completion date of June 10, 2023. U.S. Army Corps of Engineers, Louisville, Kentucky, is the contracting activity. Dyncorp International LLC, Fort Worth, Texas, was awarded a $22,161,082 hybrid (cost-no-fee, cost-plus-fixed-fee, time-and-materials) contract modification (P00055) for aviation maintenance services. Bids were solicited via the internet with five received. Work will be performed Fort Bragg, North Carolina; Afghanistan; and Iraq with an estimated completion date of Nov. 30, 2020. Fiscal 2020 operations and maintenance (Army) funds in the amount of $22,161,082 were obligated at the time of the award. U.S. Army Contracting Command, Redstone Arsenal, Alabama, is the contracting activity (W58RGZ-19-C-0025). Alliant Techsystems Operations LLC, Plymouth, Minnesota, was awarded a $16,986,480 modification (P00074) to contract W15QKN-13-C-0074 for Global Positioning System receiver for precision guidance kit M1156. Work will be performed in Plymouth, Minnesota, with an estimated completion date of June 3, 2024. Fiscal 2020 procurement of ammunition (Army) funds in the amount of 16,986,480 were obligated at the time of the award. U.S. Army Contracting Command, Newark, New Jersey, is the contracting activity. U.S. SPECIAL OPERATIONS COMMAND T3i Inc., Imperial Beach, California, was awarded a $26,413,688 maximum single award “C” type contract (H92240-20-C-0003) with options included to extend services for survival, evasion, resistance, escape and personnel recovery training in support of Naval Special Warfare Command (NSWC) enterprise requirements. Fiscal 2020 operations and maintenance funds in the amount of $384,347 are being obligated at the time of award. The work will be performed in various locations in the U.S. and may continue through fiscal 2026, if all options are exercised. The contract was awarded competitively using Federal Acquisition Regulation Part 15 procedures with six proposals received. NSWC, Coronado, California, is the contracting activity. DEFENSE ADVANCED RESEARCH PROJECTS AGENCY Raytheon BBN Technologies Corp., Cambridge, Massachusetts, was awarded a $12,039,376 cost-plus-fixed-fee contract for a research project under the Fast Network Interface Cards (FastNICs) program. The FastNICs program will speed up applications such as the distributed training of machine learning classifiers by 100 times through the development, implementation, integration and validation of novel, clean-slate network subsystems. Work will be performed in Cambridge, Massachusetts, and Seattle, Washington, with an expected completion date of June 2024. Fiscal 2020 research, development, test and evaluation funds in the amount of $1,670,000 are being obligated at time of award. This contract was a competitive acquisition under an open broad agency announcement and eight offers were received. The Defense Advanced Research Projects Agency, Arlington, Virginia, is the contracting activity (HR0011-20-C-0089). DEFENSE LOGISTICS AGENCY Oshkosh Defense LLC, Oshkosh, Wisconsin, has been awarded a maximum $10,836,726 firm-fixed-price, requirements contract for pneumatic tires for palletized load system vehicle wheels. This was a competitive acquisition with one response received. This is a three-year contract with no option periods. Locations of performance are Wisconsin and New Jersey, with a June 10, 2023, performance completion date. Using military service is Army. Type of appropriation is fiscal 2020 through 2023 Army working capital funds. The contracting activity is the Defense Logistics Agency Land and Maritime, Warren, Michigan (SPRDL1-20-D0065). *Small Business https://www.defense.gov/Newsroom/Contracts/Contract/Article/2217371/source/GovDelivery/

  • En Inde, Dassault voit s’éloigner tout espoir de nouvelle commande de Rafale

    May 22, 2020 | International, Aerospace

    En Inde, Dassault voit s’éloigner tout espoir de nouvelle commande de Rafale

    Dans un contexte de crise économique aggravée par le coronavirus, une bagarre se joue au sommet de l'état-major indien à propos d'un appel d'offres lancé il y a deux ans pour l'achat de 114 avions de combat. Par Guillaume Delacroix Publié le 20 mai 2020 à 09h03 - Mis à jour le 20 mai 2020 à 12h42 L'épidémie de Covid-19 fait une victime inattendue en Inde : le groupe Dassault Aviation. Celui-ci est en train de voir s'envoler ses espoirs de fournir une bonne centaine de Rafale supplémentaires au géant d'Asie du Sud. Le constructeur aéronautique français, qui a reçu commande de 36 exemplaires biplaces de cet avion de combat pour 8 milliards d'euros en septembre 2016, vient d'apprendre de la bouche du nouveau chef d'état-major des armées indiennes que l'appel d'offres international lancé en avril 2018 pour l'achat de 114 autres appareils était en passe d'être annulé. C'est un marché évalué à 1 000 milliards de roupies (12,2 milliards d'euros) qui va vraisemblablement s'évaporer. « L'Indian Air Force est en train de se réorienter vers des avions de combat légers » produits dans le sous-continent, a déclaré le général Bipin Rawat à l'agence Bloomberg, jeudi 14 mai. En l'occurrence, des Tejas LCA (Light Combat Aircraft). C'est une énorme déconvenue pour l'avionneur français, à qui l'Inde devait initialement acheter 126 Rafale, et non pas 36. Les quatre premières livraisons devaient d'ailleurs avoir lieu ce mois-ci, mais la crise sanitaire mondiale en cours l'a contraint à les reporter à juillet. D'autres constructeurs en sont pour leurs frais, qui entendaient eux aussi remettre une offre pour les 114 nouveaux avions. Parmi eux, les américains Lockheed Martin et Boeing, le suédois Saab et le russe Soukhoï. Le Tejas, avion « made in India » Confrontée à un ralentissement économique historique en 2019, avec une croissance du produit intérieur brut (PIB) à moins de 5 % – alors qu'elle approchait 9 % il y a un peu plus de deux ans –, l'économie indienne prend de plein fouet les effets de l'épidémie liée au coronavirus et risque désormais de tomber en récession. Dans ces conditions, Delhi n'a plus les moyens de s'équiper auprès de fournisseurs étrangers, a fait comprendre dès la fin du mois d'avril le premier ministre, Narendra Modi, en affirmant que le pays ne se relèverait qu'en produisant « local ». https://www.lemonde.fr/economie/article/2020/05/20/en-inde-dassault-voit-s-eloigner-tout-espoir-de-nouvelle-commande-de-rafale_6040216_3234.html

All news