Versatile Crypto Box IP Core with Robust SCA/FI Protections for Balanced Embedded Systems
FortifyIQ’s Crypto Box IP core is a high-efficiency cryptographic solution that combines RSA, ECC, AES, and a SHA-2/HMAC engine, all with advanced protections against side-channel and fault injection attacks. Designed for devices with balanced budgets for performance, area, and power, it enables secure key exchange, digital signatures, data encryption, and message authentication in a unified, compact architecture. The AES and SHA-2/HMAC cores feature algorithmic, RTL-level protections that are implementation-agnostic, ensuring consistent resistance to physical attacks across platforms. With support for secure boot, authenticated firmware updates, and compliance with FIPS 140-3 and Common Criteria, this Crypto Box is ideal for embedded applications requiring scalable, long-term security.
FortifyIQ’s Crypto Box IP core is a highly integrated cryptographic engine tailored for embedded systems that require a balanced trade-off between performance, power, and area efficiency. It consolidates essential cryptographic primitives: RSA, ECC, AES, and SHA-2/HMAC into a unified hardware block with advanced physical attack protections.
The asymmetric cryptography module supports RSA-2048/3072/4096 and ECC operations (ECDH/ECDSA over NIST P-192 to P-521), enabling digital signatures, certificate validation, and secure key establishment. The symmetric engine includes AES-128/192/256 supporting ECB, CBC, CTR, and GCM modes for fast and authenticated data encryption.
In addition, the Crypto Box integrates a dedicated SHA-2/HMAC engine (supporting SHA-224, SHA-256, SHA-384, and SHA-512) for message hashing and MAC generation, commonly used in secure communication protocols, firmware authentication, and integrity validation.
All security-sensitive cores, such as AES, SHA-2/HMAC, and asymmetric cryptography, are protected against side-channel analysis (SCA) and fault injection (FI) attacks. These protections are optimized for efficiency, adding minimal area and power overhead while preserving high throughput. The Crypto Box includes support for secure boot and authenticated firmware updates. Firmware update flows include cryptographic authentication and integrity validation, preventing unauthorized or malicious code from being executed.
With its modular architecture, scalable protections, and support for modern cryptographic protocols, FortifyIQ’s Crypto Box IP is ideal for secure embedded applications such as industrial IoT, automotive, edge devices, and connected medical systems. It is engineered to meet the requirements of FIPS 140-3, Common Criteria, and other high-assurance security standards.