Aller au contenu principal
apple recrutement

Software Engineer - Secure Boot Security Against Electromagnetic Fault Attacks - Internship H/F apple

  • Paris - 75
  • Stage
  • Bac +2
  • Bac +3, Bac +4
  • Bac +5
  • BTP
  • Industrie high-tech • Telecom

Détail du poste

Apple System-on-Chips implement a secure boot mechanism to ensure platform integrity, which is a mandatory prerequisite for guaranteeing user data confidentiality. Fault injection is a well known technique used to break secure boot by bypassing firmware signature verification, hence allowing the execution of malicious firmware [1]. This firmware can then be used to characterize the SoC behavior and further investigate on complementary security mechanisms. Laser Fault injection (LFI) is today the most effective technique to inject faults in SoC but it requires expensive tools and eventually chip preparation that are only accessible to well equipped laboratories. Moreover, this technique can't be used in the case of stacked components. Electromagnetic Fault Injection (EMFI) technique is a cost effective alternative which already gave promising results on SoC components [2]. The objective of this internship proposal is to challenge the security of iBoot against EMFI. [1] Laser-Induced Fault Injection on Smartphone Bypassing the Secure Boot (https://ieeexplore.ieee.org/document/8167709 (https://ieeexplore.ieee.org/document/8167709)) [2] TROUCHKINE, Thomas, BOUFFARD, Guillaume, et CLÉDIÈRE, Jessy. EM Fault Model Characterization on SoCs: From Different Architectures to the Same Fault Model. In : 2021 Workshop on Fault Detection and Tolerance in Cryptography (FDTC). IEEE, 2021. p. 31-38. https://www.bouffard.info/assets/pdf/conf/fdtc/TrouchkineBC21.pdf (https://www.bouffard.info/assets/pdf/conf/fdtc/TrouchkineBC21.pdf) The internship is expected to happen in 2025/2026 in Paris, for a 6 month duration. The program will consist in the following steps: - Reproduce on an internal SoC, directly accessible from backside, the tests already done internally, using a test program. - Improve EMFI setup to increase injection probe resolution and reduce EM pulse duration. Modify progressively the test program parameters to execute it in the same conditions as iBoot. - Modify a signed Flash image and bypass the iBoot verification with EMFI. - If previous steps successfully performed, try to reproduce the fault injection with the DRAM stacked over the SoC.
- Experience in physical attacks
- Knowledge of electromagnetism fundamentals
- Knowledge and experience in analog electronic and microprocessors architecture
- Great analytical and presentation skills.

- Proficiency in switching power supply techniques
- Applied cryptography
- Experience in fault attacks

Publiée le 04/10/2025 - Réf : 40 200623632-2911

Software Engineer - Secure Boot Security Against Electromagnetic Fault Attacks - Internship H/F

apple
  • Paris - 75
  • Stage
Publiée le 04/10/2025 - Réf : 40 200623632-2911

Finalisez votre candidature

sur le site du recruteur

Créez votre compte pour postuler

sur le site du recruteur !

Ces offres pourraient aussi
vous intéresser

Safran recrutement
Voir l’offre
il y a 11 jours
MBDA recrutement
MBDA recrutement
Voir l’offre
il y a 9 jours
Voir plus d'offres
Les sites
L'emploi
  • Offres d'emploi par métier
  • Offres d'emploi par ville
  • Offres d'emploi par entreprise
  • Offres d'emploi par mots clés
L'entreprise
  • Qui sommes-nous ?
  • On recrute
  • Accès client
Les apps
Application Android (nouvelle fenêtre) Application ios (nouvelle fenêtre)
Nous suivre sur :
Informations légales CGU Politique de confidentialité Gérer les traceurs Accessibilité : non conforme Aide et contact