Design of Fault Injection Models Within Pre-silicon Security Methodologies
il y a 1 semaine
Position description
**Category**:
- Information system
**Contract**:
- Internship
**Job title**:
- Design of Fault Injection Models Within Pre-silicon Security Methodologies H/F
**Subject**:
- Fault-injection attacks exploit hardware perturbations to drive a processor into unexpected states or execution paths, which can leak secrets or enable privilege escalation. Fault-injection attacks are taken into account in the design of high-security products (e.g. debit / credit cards, recent smartphones, etc.). The open-source community is now developing new tools and attack approaches, thus widening the importance of is threat in the cybersecurity community. Recent work has emphasized the importance of accounting for the microarchitectural consequences of such injections. In this context, CEA List have developed pre-silicon tools [1] that have proven effective at discovering microarchitectural vulnerabilities or, for a given fault injection model, formally proving the robustness of several RISC-V processors.
**Contract duration (months)**:
- 6
**Job description**:
- µArchiFI [2,3] is one of these pre-silicon tools, it constructs a formal transition system from a Verilog processor description, a binary program, and an attacker model that encodes the fault model. However, the fault models used by µArchiFI do not incorporate layout information. Analyses are performed at the Register Transfer Level (RTL) and can evaluate a wide range of fault models (bit/word set, reset, flip, and symbolic behaviors) on signals selected individually. In a real fault attack scenario, for instance, using a laser source as the fault injection tool, it may hit different bits of the same signal or of different signals.
**Goals**
The internship objective is to enhance µArchiFI with new fault models so that signals that are affected by the laser beam are selected according to laser-spot location regarding the circuit layout. This requires: 1) integrating layout information and location constraints into the fault models, 2) modelling the laser beam’s Gaussian profile to select signals that fall within the beam surface as studied in [4] and illustrated in the Figures at the end of the document. These enhanced fault models will be used to rerun security verifications over processor designs already analyzed by µArchiFI. The obtained results will be compared with state-of-the-art experimental characterizations and against previous results produced by µArchiFI, in particular to benchmark the time it take to perform verification. Additional fault models exploring whether other types of information, such as circuit timing, can be leveraged to capture specific injection means such as clock glitching.
**References**
[3] Simon Tollec et al. : μArchiFI: Formal Modeling and Verification Strategies for Microarchitectural Fault Injections. FMCAD 2023.
- #CEA-List_
**Applicant Profile**:
**Profile.** This position is aimed at students seeking an ambitious technical internship, eager to gain significant experience in industry-related technological research. It is particularly well-suited to students considering a doctorate, with new funded positions offered each year within the department. The internship is aimed at students in their final year of engineering school (or Master 2) in computer science or microelectronics, or equivalent levels, preferably with a specialization in processor systems/architecture or formal methods.
- Knowledge of micro-architecture or cybersecurity is an asset, but not a prerequisite.
- A strong capacity for personal work, ability to work in a team and motivation to take on technical challenges are essential.
- Programming capabilities, in particular in C++ and Object-Oriented Programming (OPP)
**Opportunities.**
- Technical skills: develop expertise in formal analysis, security verification, and hardware synthesis flows, design of secured processor micro-architectures.
- Publication: potential to publish results in workshop/conferences on hardware security;
- Collaboration: work alongside experienced researchers and engineers from CEA
- Resources: access to state-of-the-art facilities and infrastructure.
Position location
**Site**:
- Saclay
**Job location**:
- France, Ile-de-France, Essonne (91)
**Location**:
- Saclay
**Prepared diploma**:
- Bac+5 - Master 2
Requester
**Position start date**:
- 01/03/2026
General information
**Organisation**:
The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas:
- defence and security,
- nuclear energy (fission and fusion),
- technological research for industry,
- fundamental research in the physical sciences and life sciences.
Drawing on its widely acknowledged expertise, and thanks to its 16000 technicians, engineers, researchers and staff, the CEA actively participates in collaborative projects with a large number of academic and industrial partners.
The CEA is establish
-
Saclay, Île-de-France CEA Temps pleinGeneral information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...
-
Saclay, Île-de-France CEA Temps pleinGeneral information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...
-
Formal Modeling of Microarchitectures
il y a 1 semaine
Saclay, France CEA Temps pleinLe CEA est un acteur majeur de la recherche, au service des citoyens, de l'économie et de l'Etat. Your main responsibilities will include: - Proposing and developing an approach to generate formal models of processor pipelines. This involves utilizing a cycle-accurate intermediate representation of pipelines incorporating their micro-architecture...
-
Research Engineer in AI-Driven Modeling
il y a 2 semaines
Saclay, Île-de-France CEA Temps pleinGeneral information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...
-
Research Engineer in AI-Driven Modeling
il y a 2 semaines
Saclay, Île-de-France CEA Temps pleinGeneral information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...
-
Research Engineer in AI-Driven Modeling
il y a 2 semaines
Saclay, France CEA Temps pleinResearch Engineer in AI-Driven Modeling & Simulation for RISC-V Platforms H/F General information The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas: defence and security nuclear energy (fission and fusion) technological research for industry fundamental research in...
-
Saclay, Île-de-France CEA Temps pleinGeneral information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...
-
Saclay, France CEA Laboratoire de Chimie Moléculaire et de Catalyse pour l’Energie Temps pleinTopic description L'accès facilité à l'énergie et aux matières premières carbonées offert par les ressources fossiles a permis une croissance rapide de la société. Néanmoins, l'épuisement attendu des ressources fossiles et le changement climatique exigent de se tourner vers un modèle plus durable. Les matières premières biosourcées sont une...
-
Post-doc Researcher Timing Analysis of Embedded Real-time Systems
il y a 1 semaine
Saclay, France CEA Temps pleinDescription du poste **Domaine**: - Composants et équipements électroniques **Contrat**: - Post-doctorat **Intitulé de l'offre**: - Post-doc Researcher timing analysis of embedded real-time systems H/F **Sujet de stage**: **Durée du contrat (en mois)**: - 24 **Description de l'offre**: - Your main responsibilities will include: - Proposing and...
-
Camera-radar 3D perception model for autonomous driving H/F
il y a 5 jours
Saclay, Île-de-France CEA Temps pleinPosition descriptionCategoryMathematics, information, scientific, softwareContractInternshipJob titleCamera-radar 3D perception model for autonomous driving H/FSubjectCamera-radar 3D perception model for autonomous drivingContract duration (months)6Job DescriptionThe goal of this internship is to investigate advanced methods for fusing complementary...