INTERNSHIP - Fuzzing embedded security software M/F
Capijobnew
Domaine: Toutes nos offres
Région: Alpes (Hautes), Alpes de Haute Provence, Alpes Maritimes, Bouches du Rhône, Var, Vaucluse
Contrat: NC
Expérience: NC
Niveau d'étude: NC
Salaire: NC
Permis demandé: Permis NC
Niveau de qualification: NC
Description: Job descriptionWHY JOIN USAt ST, we are 46,000 men and women designers and manufacturers of microelectronic technologies. We collaborate with 100,000 customers and thousands of partners. With them, we design and create products, solutions and ecosystems that address their challenges and opportunities and the need to contribute to a more sustainable world. Our advanced technologies enable smarter mobility, more efficient energy and power management, and large-scale deployment of the Internet of Things (IoT) and 5G. ST is certified Top Employers France 2021. This certification recognizes our commitment to integration and professional insertion, equal opportunities, employability and quality of life at work. OUR FUTURE COLLABORATIONWith the pervasion of electronics in applications such as Internet of Things (IoT), industrial or automotive electronics, embedded security is a key element to ensure trust and to protect the devices and the user privacy.On one hand, such programmable devices embed a significant amount of software that plays a key role in initializing and maintaining the device in a secure state all along its life cycle (provisioning, deployment, activation, secure boot, etc). On the other hand, they interact with the outside world through a number of I/Os and more or less complex protocols (wired or wireless) allowing potential attackers to uncover and exploit latent bugs in the software.The objective of fuzzing is to stimulate the software with inputs that will uncover bugs by running huge number of tests to explore all possible code paths. Compared to classical PCs or servers, embedded devices pose additional challenges to fuzzing: hardware diversity, OS diversity (or no OS), lower performance for execution of test campaigns.Within an R&D team specializing in embedded systems security, the objective of this internship is to identify a fuzzing approach that is viable and efficient in the context of STM32 microcontrollers.The internship will consist in:Studying the state of the art for fuzzers, especially in the embedded contextSelecting the most promising approach(es)Performing an evaluation on production software on STM32Documenting the evaluation and its resultsA potential starting point could be HALucinator described here: Profile YOUR PROFIL4th or 5th year of Master's Degree in Computer ScienceSoftware skills: high-level (Python, ...) and low-level (embedded C)Basic knowledge in cryptography is a plusAbstract thinking and objective outlookProactivity, autonomy and teamworkGood level of written and spoken English (part of the team is based in Italy)Fluency in FrenchOUR SITEIn Rousset, we are more than 2700 employees with 30 different nationalities. Our site offers a wide range of professions, thus offering many prospects for internal development. At the foot of the Sainte Victoire, 20kms from Aix-en-Provence and 40kms from Marseille, the Rousset site combines technological excellence, respect for the environment and quality of life.Position location Job locationEurope, France, RoussetCandidate criteria Education level required5 - Master degree Experience level requiredLess than 2 years LanguagesFrench (2- Business fluent)English (2- Business fluent)

Connexion avec Google