IP Library Granted Patent US 10,607,030
Granted Patent B2
US 10,607,030 · App. 15/980,179 · Granted Mar 31, 2020

Cryptographic ASIC with onboard permanent context storage and exchange

Inventor: Edward L. Rodriguez De Castro (San Francisco, CA)
Assignee: Blockchain ASICs LLC
G06F21/72G06F3/0622G06F7/588G06F12/1408G06F21/73G06F21/78H04L9/0637H04L9/0643H04L9/0836H04L9/0863H04L9/0877H04L9/0894H04L9/3226H04L9/3239H04L63/10H04L2209/12H04L2209/38
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,607,030
App. No.
15/980,179
Granted
Mar 31, 2020
Kind
B2
Abstract

A cryptographic application-specific integrated circuit (ASIC) and method for autonomously storing context data into a one-time programmable memory in isolation are presented. The stored data describes product environmental history following manufacture, which may assist in assessing of a request for a refund or replacement of a defective product, such as an ASIC. The data may be cryptographically protected for retrieval and validation only by a manufacturer or authorized vendor. In another embodiment, communications between individual integrated circuits in a product may be secured by storing encryption keys as the context data, and exchanging the context data. The context data may be stored during manufacture, or thereafter. Such integrated circuits may be secured against replay attacks that capitalize on loss of context data that occurs when volatile memory is reset through power cycling, and enable inter-chip communications to be managed as are communications between unknown parties in an untrusted network.

Claims (33)

1. An integrated circuit for autonomously storing context data relating to cryptographic security, comprising:

a one-time programmable memory circuit block configured to be programmed by internal programming circuitry to store the context data in isolation;

a secure communications circuit block configured to control retrieval of the context data; and

a processor configured to selectively perform operations relating to cryptographic security based on the retrieved context data,

wherein the context data describes historical events related to integrated circuit reliability, including excessive pin voltages and maximum operating temperatures, and indications of damage related to hacking attempts, that occur after integrated circuit manufacture, and the operations comprise selectively denying at least one of a refund and a replacement of the integrated circuit based on the context data.

2. The integrated circuit of claim 1 , wherein the context data comprises at least one random number generated internally within the integrated circuit based on electronic noise, and the operations comprise preventing loss of cryptographic security via a reset replay attack.

3. The integrated circuit of claim 2 , wherein the context data enables cryptographically secure processing of an information stream by denoting hacking attempts that would otherwise not be denoted when power is cycled, and responsively triggering defensive countermeasures.

4. The integrated circuit of claim 3 , wherein the information stream relates to a blockchain.

5. The integrated circuit of claim 2 , wherein the integrated circuit transmits the context data to a second integrated circuit having a second one-time programmable memory circuit block and a second secure communications circuit block.

6. The integrated circuit of claim 5 , wherein the at least one random number is a symmetric cryptographic key configured to secure a subsequent data exchange between the integrated circuit and the second integrated circuit.

7. The integrated circuit of claim 5 , wherein a set of the random numbers comprise a set of public-private cryptographic keys configured to secure a subsequent data exchange between the integrated circuit and the second integrated circuit.

8. The integrated circuit of claim 5 , wherein the at least one random number is a nonce that is transmitted to the second integrated circuit, and wherein the second integrated circuit responds with the nonce, a hash of the nonce generated by a transform-enabled hashing circuit block, and a second nonce, and receives a transform-enabled hash of the second nonce from the integrated circuit to establish a secure communications session for a subsequent data exchange between the integrated circuit and the second integrated circuit.

9. The integrated circuit of claim 5 , wherein at least one of the integrated circuit and the second integrated circuit perform a secure data exchange with an associated non-volatile memory.

10. A cryptographic method for autonomously storing context data relating to cryptographic security in an integrated circuit, the method comprising:

storing the context data in isolation in a one-time programmable memory circuit block configured to be programmed by internal programming circuitry;

controlling retrieval of the context data with a secure communications circuit block; and

selectively performing operations relating to cryptographic security based on the retrieved context data,

wherein the context data describes historical events related to integrated circuit reliability including excessive pin voltages and maximum operating temperatures, and indications of damage related to hacking attempts, that occur after integrated circuit manufacture, and the operations comprise selectively denying at least one of a refund and a replacement of the integrated circuit based on the context data.

11. The method of claim 10 , further comprising generating the context data internally within the secure communications circuit block as at least one random number based on electronic noise, and preventing loss of cryptographic security via a reset replay attack.

12. The method of claim 11 , further comprising enabling the cryptographically secure processing of an information stream with the context data by denoting hacking attempts that would otherwise not be denoted when power is cycled, and responsively triggering defensive countermeasures, and wherein the information stream relates to a blockchain.

13. The method of claim 11 , wherein the integrated circuit transmits the context data to a second integrated circuit having a second one-time programmable memory circuit block and a second secure communications circuit block.

14. The method of claim 13 , wherein the at least one random number is a symmetric cryptographic key configured to secure a subsequent data exchange between the integrated circuit and the second integrated circuit.

15. The method of claim 13 , wherein a set of the random numbers comprise a set of public-private cryptographic keys configured to secure a subsequent data exchange between the integrated circuit and a second integrated circuit.

16. The method of claim 13 , further comprising:

establishing a secure communications session for a subsequent data exchange between the integrated circuit and a second integrated circuit by transmitting the at least one random number as a nonce to the second integrated circuit;

responding with the second integrated circuit with the nonce, a hash of the nonce generated by a transform-enabled hashing circuit block, and a second nonce; and

receiving a transform-enabled hash of the second nonce from the integrated circuit.

17. The method of claim 13 , further comprising performing a secure data exchange with an associated non-volatile memory, with at least one of the integrated circuit and a second integrated circuit.

18. A system for autonomously storing context data relating to cryptographic security, the system comprising:

means for storing the context data in isolation in a one-time programmable memory circuit block configured to be programmed by internal programming circuitry;

means for controlling retrieval of the context data with a secure communications circuit block; and

means for selectively performing operations relating to cryptographic security based on the retrieved context data,

wherein the context data describes historical events related to integrated circuit reliability including excessive pin voltages and maximum operating temperatures, and indications of damage related to hacking attempts, that occur after integrated circuit manufacture, and the operations comprise selectively denying at least one of a refund and a replacement of the integrated circuit based on the context data.

Assignments (3)
CHANGE OF NAME Recorded Jul 17, 2020
From: BLOCKCHAIN ASICS, LLC
To: BLOCKCHAIN ASICS, INC.
Reel/Frame 053238/0324 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE'S ADDRESS PREVIOUSLY RECORDED AT REEL: 045810 FRAME: 0280. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 15, 2018
From: RODRIGUEZ DE CASTRO, EDWARD L.
To: BLOCKCHAIN ASICS LLC
Reel/Frame 046373/0692 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 15, 2018
From: RODRIGUEZ DE CASTRO, EDWARD L.
To: BLOCKCHAIN ASICS LLC
Reel/Frame 045810/0280 →
Continuity (2)
Provisional Application 62662544 · Apr 25, 2018
Related Publication 20190332552A1 · Oct 31, 2019