Chip Security Testingย 
Binary Security Analysisย 
Contact us
Security in Integrated Circuit
Fault Injection

What is a Hardware Fault Injection?

A hardware fault injection exploits a physical disruption, mostly ephemeral, to create a logical error. When the logical fault is exploitable, an attacker may severely harm a system. There are different ways to create such a physical disruption: laser fault injection, near field electromagnetic fault injection or power glitching.
Request a free demo
Oscilloscope Security in Chip
Laser Fault Injection Bench

What is Laser Fault Injection by eShard ?

In a close partnership with ALPhANOV, the Laser Fault Injection tool combines ALPhANOVโ€™s excellence in laser and optic systems, together with eShardโ€™s scientific platform.

The resulting solution allows the implementation of Laser Fault Injections at the state-of-the-art.

โœ… Simple or double fault injection laser. The smallest and most powerful spot of the industry.

โœ… Different laser sources, with a focus on near infrared for back-side.

โœ… Back-side imaging with a unique system allowing chip and laser observation while pulsing.

โœ… Get further with extra features, such as spot size parameter, tip tilt table, etc.

โœ… The software suite to control the equipments and manage chip characterization

โœ… The software suite to manage fault injection campaigns, process faulty behaviours and exploit them (eg: DFA)

Download our brochure
Laser & EM Fault Injection tool bench

What is EMFI Electromagnetic Fault Injection tools by eShard?

At eShard, we have developed our own technology to inject near field electromagnetic pulses. We designed dedicated EMFI probes to inject faults in modern devices, such as SoC (System on Chip) with recent technologies.

โœ… Sets of injection probes with varying size, inductance and transmittance characteristics

โœ… Adapted to commercial pulsers

โœ… Hardware bench for X, Y and Z automated translations

โœ… The software suite to control the equipments and manage chip characterization

โœ… The software suite to manage fault injection campaigns, process faulty behaviours and exploit them (eg: DFA)

Download our brochure
EM Fault Injection Kit Probres Electromagnetic

Lab equipment: EMFI probes

The set of EM injection probes has been designed by eShardโ€™s experts based on practical experimentations made on System-on-Chip devices. They have been proven efficient on different modern SoCs, including the use cases elaborated in the Starter Kit offering.

The kit includes cables and accessories needed to make a proper electromagnetic fault injection, in particular to compensate the bounce effect. It is delivered with the characteristics of the probes either in a PDF document or in a notebook.

The kit is used in our EM fault injection turnkey solution.

What is Power & Clock Glitching Fault Injection by eShard?

At eShard, we propose a ready to use glitching hardware setup that has been designed to fault devices. The hardware bench includes:

โœ… A waveform generator selected for successful glitching

โœ… The software suite to control the equipments and manage chip characterization

โœ… The software suite to manage fault injection campaigns, process faulty behaviours and exploit them (eg: DFA)

Download our brochure

Lab equipment: cold reset

In fault injection experiments (laser, electromagnetic or power glitch-based), it is likely that the device under test (DUT) encounters operational issues leading to crashes or mute mechanisms. eShard ColdReset hardware device brings the possibility for the user to manage the DUT power source (on/off) through USB and/or jack ports with timing control. The fault injection test campaign can be fully automated.

The ColdReset is used in our fault injection turnkey solutions.

Our clients



"Purchase and installation went really great. Support responds very fast and is helpful in all questions. Offers also remote sessions for troubleshooting and for practice. Before the purchase we were offered a 30 day trial version (free of charge)."




Training program

Ecosystems move fast, so do the cybersecurity challenges. Your team must remain up-to-date and master the last security threats because your business and your customers are at stake.
Differential Fault Analysis on symmetric algorithms
Coach: Guillaume Vinet
With this module, you will learn about the main Differential Fault Attacks on AES. You will get familiar with the Piret & Quisquater DFA targetting the AES final rounds and the Kim & Quisquater DFA targeting the AES key schedule. During this training, you will learn how to compute differentials, characterize faults and recover a secret key from faulty AES outputs.
See more details
Laser Fault Injection with esDynamic
Coach: Guillaume Vinet
Using the [esDynamic]( platform, you will learn how to control ALPhANOV's laser equipment and implement a fault campaign. You will learn how to perform a multi-dimensional scanning, and log results of your campaing. You will learn how to use the delay generator and setup your injection trigger to precisely inject a fault during the device execution. During the practice session, you will get the opportunity to inject a successful laser fault on a device.
Starter Kit Chip Security by eShard

Starter Kits

Fault injection may turn out to be a powerful means to compromise a device. The ability to secure a system against fault injection depends on the ability to apprehend the technique. It requires practical expertise. Starter kits have been designed to provide the knowledge of practical attacks on recent use cases. They show the complexity of identifying a weakness. Starter kits provide a set of hardware and knowledge to create an in-house reference for practical attacks. For your internal knowledge and training purposes.

  • Hardware kits on modern SoC (System on Chip)
  • Each step of the practical fault injection is described in detail
  • From the bench setup to the final exploitation exhibiting the secret
esCoaching Cybersecurity Training

Grow your Expertise

Getting up to speed in fault injection requires knowledge of the technique and practical experience. Together with ALPhANOV, a dedicated training was designed to cover all aspects of professional laser fault injections. Delivered on site in ALPhANOVโ€™s training centre, this training will cover both the theoretical and practical aspects of a successful fault injection on a real device.

  • Understanding the laser system and the related safety
  • Setting up a laser fault injection campaign to characterize a device
  • Creating a heatmap and exploiting the results
Oscilloscope Security in Chip

Our specialized lab

Our team of experts is available for specialized Fault Injection audits. They have long track records in practical Fault injection experiments with a variety of techniques : Power & Clock Glitch, Electromagnetic Fault Injection, Laser Fault Injection (in partnership with ALPhANOV).

Our experts combined with our high-end laboratory, equipped with high end Fault Injection capabilities lead to best in class Fault Injections evaluations. Our recent works included:

  • Black box security evaluation of a Secure Element chip - Glitch and SCA
  • Evaluation of the resistance of a SE chip against fault injections - LFI & EMFI
  • Detecting and exploiting HW & SW AES implementations on a modern SoC - LFI & EMFI
Know more


Contact us
CopyRights eShard 2024.
All rights reserved
Privacy policy | Legal Notice