NewE Technology NewE Technology Inc. newae.com hipwhisperer Embedded Security nalysis Tools Stand-lone Targets W0 UFO Target oard Product atasheet Get probing! The hipwhisperer W0 UFO board is the ultimate starting point for side-channel power analysis attacks when combined with a hipwhisperer apture solution. The W0 puts all the standard requirements onto one board (such as power supplies, oscillators, filters) allowing you to make super-simple target victim boards. large variety of available target examples provides all levels of architectures for you to test against including -bit microcontrollers, -bit microcontrollers, and FPGs. Product Highlights.V,.V,.V,.V, and V-J (.V -.V range) power supplies. Oscillator driver with crystal socket to allow use of most or -pin crystals to drive target device or hipwhisperer. On-board L low-pass filter to provide clean power supply for resistive shunt measurement. iode protection on I/O lines to allow voltage glitch insertion on target with less risk to connected devices. Soft-start on input power to avoid disconnecting hipwhisperer-lite US when switching power on/off. Includes -bit tmel XMEG and -bit STMF (ortex M) target devices. Ordering Summary NE-W0 Includes base-board, two targets, and additional accessories (see detailed ordering description). NE-W0-KIT Includes.0V power supply & SM- cable. onnects board to regular oscilloscope (not used with hipwhisperer-apture). Product Links Full ocumentation http://cwdocs.com/cw0 W0 atasheet Last Update: 0-FE-0
NewE Technology Inc. Your friendly embedded security arsonist. newae.com etailed Ordering Options NE-W0 The W0 comes with the following parts (shown above) W0 Main oard W0T-XMEG Target oard (tmel -bit microcontroller) W0T-STMF Target oard (RM ortex M) W0T Prototyping oards (.mm prototyping board) NP-W0T-STMF lank P (Fits STMF0, F, F, F, F) Target Removal Tool. MHz crystal x jumper wires 0 cm SM cable SM Tee NE-W0-KIT The accessory kit includes the additional required parts for powering the board stand-alone. The kit consists of the following items: inch SM to able, Johnson P/N -00-0.0 V Power Supply, XP Power P/N VERUS00-J W0 atasheet Last Update: 0-FE-0
NewE Technology Inc. Your friendly embedded security arsonist. newae.com hipwhisperer apture The W0 seamlessly connects to the W and W00 capture hardware. The capture hardware provides power, serial communication, clock, shunt resistor monitoring, and power and voltage fault injection capability. Select devices (including the VR, XMEG, and ST- MFx) targets can be programmed from the hipwhisperer, avoiding the need for an external programmer. Stand lone Usage Stand alone usage is possible by connecting the SM measurement port to an oscilloscope input, recommended with the SM to cable (available option). The W0T targets implement the Simple-Serial protocol (see http://wiki.newae. com), and will require a suitable.v serial interface to send and receive data. External programmers will be needed for all targets. Full ocumentation See http://cwdocs.com/cw0 for the UFO board documentation hosted at hipwhisperer.com. W0 atasheet Last Update: 0-FE-0
Schematic NewE Technology Inc. Your friendly embedded security arsonist. newae.com hange Log hanges in -0: *ddition of S, R *Removed / (not used) hanges in -0: * hange clock resistor. * Move switches slightly to give clearance for lifter board. * dd adjustable regulator & jumper to select FILTIN source. hanges in -0: * dd test points for, Trig. * dd 00K pull-up on JTG, nrst. * Fixed size of holes in XTL pins. * dd pull-downs on capacitors. * LEs moved from switches to beside terminals. * ddition of V switch. TP TP TP FI MH FI MH Mounting-Hole-RN-ltium Mounting-Hole-RN-ltium Mounting-Hole-RN-ltium Mounting-Hole-RN-ltium FI MH MH FI FI FI FIU-ROUN-.0MM FIU-ROUN-.0MM FIU-ROUN-.0MM FIU-ROUN-.0MM FIU-ROUN-.0MM FIU-ROUN-.0MM Title: Mechanical & Notes Rev: 0 Project:. NP-W0 License: None ate: 0/0/0 Time: :: PM Sheet of opyright NewE Technology Inc. File: W0_Mechanical.Schoc pproved: YES NewE.com W0 atasheet Last Update: 0-FE-0
NewE Technology Inc. Your friendly embedded security arsonist. newae.com RST MISO MOSI SK PI PI R R R0 R R R W_GPIO W_PI W_GPIO W_PI W_GPIO W_SK W_GPIO W_MOSI R R R R R R IO IO IO IO IO IO IO IO V V W_RST W_MISO W_MOSI W_SK W_PI W_PI R ±% K R ±% K J V V 0 0 00n U ES 0 W_GPIO W_PI W_GPIO W_PI 00n 0 U ES W_GPIO W_SK W_GPIO W_MOSI LE LE N0-00R R ±% 00R W_MISO W_HS W_RST W_HS W_HS W_HS V V J W_GPIO W_GPIO W_GPIO W_GPIO IO IO IO IO V R R R R R R PT MF-MSMF00 TP R R R R R R TVS V 00n U ES 0 W_MISO W_HS W_RST W_HS HS HS GPIO GPIO GPIO GPIO W_V R0 ±% K R ±% 00K R ±% 00K Q FS Jumper J 000-0HLF PT MF-MSMF00 PT MF-MSMF00 UUMLGS Q IRLML0 Title: LE 0µ JK_V S IO onnectors Rev: 0 Project:. NP-W0 License: None ate: 0/0/0 Time: :: PM Sheet of opyright NewE Technology Inc. File: W0_onnectors.Schoc R ±% K R0 ±% K Soft-Start for.v (W) Q FS 0 00n Soft-Start for.0v (W) Q FS Jumper (J) must be set to provide a valid voltage on net, as net is used to power oscillator driver & set I/O clamping limits. If net is allowed to float all I/O lines will be pulled low due to diode clamps. R M 00n R M If using -power jack, S selects if external power jack is turned on/off based on.v line of W 0-pin connector. If not using W, S should always be on "ON" position. R ±% 00R R ±% 00R Soft-Start limits inrush current on hipwhisperer power supplies. To speed up turn-on times, replace resistor R and R with smaller values (00k for some soft-start, or k for very fast turn-on) 0n 0n pproved: YES 0µ 0µ W_V W_V R 0R R 0R NewE.com W0 atasheet Last Update: 0-FE-0
W0 atasheet Last Update: 0-FE-0 NewE Technology Inc. Your friendly embedded security arsonist. newae.com Target Linear Regulators. 0/0/0 :: PM W0_Power.Schoc Title: ate: File: Rev: Sheet of Time: 0 Project: NP-W0 License: None pproved: YES opyright NewE Technology Inc. NewE.com VIN U LSTR VIN U LSTR VIN U LSTR VIN U LSTR S S S S S W_V W_V VTRG_V VTRG_V VTRG_V VTRG_V 0µ 0µ 0µ 0µ 0µ 0µ 0µ 0µ 00n 0 00n 00n 00n 00n 00n 00n 00n 0 LE LE LE0 LE LE JK_V ±% K R ±% K R ±% K R ±% K R ±% K R W_V ±% 00R R0 S W_V JK_V VTRG_V ±% K R LE W 00R R P--0G VIN U LSTR ±% 00R R ±% 00R R 0µ 0µ 00n 0µ 0 00n VTRG_VJ S
NewE Technology Inc. Your friendly embedded security arsonist. newae.com X 0-0---0--0-0 X pins (for OM purpose only) X 0-0---0--0-0 X 0-0---0--0-0 p p R 0R rystal oscillator driver M R U X X V Y SNLVGX0KT 00n Oscillator supply derived from jumper (J). Oscillator should work with most or -pin parallel resonance crystals where -pf loading expected. R R Title: rystal Oscillator Rev: 0 Project:. NP-W0 License: None ate: 0/0/0 Time: :: PM Sheet of opyright NewE Technology Inc. File: W0_lock.Schoc HS HS J -0HLF pproved: YES T_LKIN T_LKOUT NewE.com W0 atasheet Last Update: 0-FE-0
NewE Technology Inc. Your friendly embedded security arsonist. newae.com T_LKIN T_LKOUT GPIO GPIO GPIO GPIO RST SK MISO MOSI PI PI R ±% 00K R ±% 00K LKIN LKOUT GPIO/TX GPIO/RX GPIO GPIO/TRIG nrst SK MISO MOSI PI PI R ±% 00K S R ±% 00K EVP-S R0 ±% 00K R ±% 00K R ±% 00K 0 0 J R ±% 00R 0 0 00n JTG_ JTG_TRST JTG_TI JTG_TMS JTG_TK JTG_TO JTG_nRST J J J JTG_TRST JTG_TI JTG_TO JTG_TMS JTG_TK JTG_ JTG_nRST RM 0-pin JTG pinout J 0 0-0HLF MH 0 0 0 0 MH MH HR HR HR HR HR HR HR HR HR HR0 J 0 0 HR HR HR HR HR HR HR HR J -0HLF HR HR HR HR -0HLF 0 0 J J -0HLF SHUNTL SHUNTH FILT_HP FILT_HP FILTIN V. V. V. V. V.0 LE LE LE LE// active HIGH Misc. Programming Headers HR HR HR HR HR HR HR J0 HR HR HR HR 0 HR0 Title: TP Target onnectors Rev: 0 Project:. NP-W0 License: None ate: 0/0/0 Time: :: PM Sheet of opyright NewE Technology Inc. File: W0_Targetoard.Schoc J SM Vert VTRG_V VTRG_V VTRG_V VTRG_V VTRG_V 00n R ±% 00K J 0µ R ±% 00K L 00 0µ J R ±% K R ±% 00K 000-0HLF 000-0HLF LE Red Q IRLML0 00n 0µ R ±% K LE Red pproved: YES SHUNTL FILTIN VTRG_VJ 0µ Q IRLML0 00n LE drivers designed to reduce any impact on target V by switching IO lines. 00n NM R ±% K LE Q IRLML0 NewE.com W0 atasheet Last Update: 0-FE-0
NewE Technology Inc. Your friendly embedded security arsonist. newae.com isclaimers ll content is opyright NewE Technology Inc., 0. hipwhisperer is a trademark of NewE Technology Inc., registered in the United States of merica, the European Union, and hina. hipshouter is a trademark of NewE Technology Inc., registered in Europe. Trademarks are claimed in all jurisdictions and may be registered in other states than specified here. NewE Technology makes no representations or warranties with respect to the accuracy or completeness of the contents of this document and reserves the right to make changes to specifications and product descriptions at any time without notice. NewE Technology does not make any commitment to update the information contained herein. NewE Technology products are not intended, authorized, or warranted for use as components in applications intended to support or sustain life. NewE Technology products are designed solely for teaching purposes. ll other product names and trademarks are the property of their respective owners, which are in no way associated or affiliated with NewE Technology Inc. Use of these names does not imply any co-operation or endorsement. VR and XMEG are registered trademarks or trademarks of tmel orporation or its subsidiaries, in the US and/or other countries. rtix and Spartan are registered trademarks or trademarks of Xilinx, Inc. or its subsidiaries, in the US and/or other countries. rm is a registered trademark of rm Limited (or its subsidiaries) in the US and/or elsewhere. W0 atasheet Last Update: 0-FE-0
Mouser Electronics uthorized istributor lick to View Pricing, Inventory, elivery & Lifecycle Information: NewE Technology: NE-W0-0