I have already posted on other threads in this forum last year (in the dongle section I think) that with the use of Differential Frequency Analysis (DFA) its possible to get the AES key in
some cases.
Of course it may not be possible in ALL the cases, especially if the key length is very long etc..
But we should remeber that these are mainly experimental approaches to what was once thought of as an impossible task !
Cheers