Typical severity: Very High. Likelihood of attack: Medium. An adversary takes advantage of missing or incorrectly configured security identifiers (e.g., tokens), which are used for access control within a System-on-Chip (SoC), to read/write data or execute a given action.
Review generation of security identifiers for design inconsistencies and common weaknesses. | Review security identifier decoders for design inconsistencies and common weaknesses. | Test security identifier definition, access, and programming flow in both pre-silicon and post-silicon environments.