Internship - Hack a Tooth: Proprietary Bluetooth stack analysis

il y a 2 semaines


Paris, Île-de-France Quarkslab Temps plein

About Quarkslab

Quarkslab builds cutting-edge cybersecurity solutions used by security-driven companies and institutions around the world. Our QShield product suite focuses on software protection and reverse engineering resistance across desktop, mobile, and embedded platforms.

We're not in the cloud — we build real software, tested on real systems. If you enjoy diving deep into complex technical environments, automating smart test coverage, and owning quality end-to-end, read on.

Job description

Description

A vendor released a SoCs family that support IEEE and Bluetooth 5.4 PHYs, as well as a set of proprietary stacks that can be installed on these chips to support Bluetooth Low Energy or ZigBee protocols. This SoC is used in the first version of FlipperZero, but its wireless capabilities are not fully leveraged due to limits imposed by the vendors on the RF capabilities.

The SoC provides a secure environment to run proprietary protocol stacks, combined with a pre-provisioned encryption key and a public key to authenticate any stack application pushed into its secure area. The internal RF hardware peripherals are unknown but these stacks could be extracted through a vulnerability found on the SoC family.

This internship is a journey of exploration of a proprietary stack on a wireless SOC.

What you will do

The goals of this internship are:

  • Jailbreak a SoC devkit by exploiting a documented vulnerability to allow deployment of a modified stack.
  • Reverse-engineer the SoC's RF hardware peripherals and corresponding registers through analysis of one or more stacks.
  • Document the RF-related registers and, if identified, any other registers related to different peripherals.
  • Implement basic 2.4GHz RX/TX primitives based on the reversed RF hardware peripheral using a devkit
  • Setup a FlipperZero application to automate jailbreaking and/or to provide a basic 2.4GHz GFSK scanner/sniffer

At the end of the internship you are expected to present your research project internally to peers, and to communicate it publicly in a blog post, paper or conference talk.

Profile

Required Skills

  • ARM reverse-engineering (intermediate)
  • Embedded exploit development in C/C++ (basic to intermediate)
  • Knowledge about how RF hardware peripherals are usually implemented (basic)

Assignment

Contact us to receive an internship challenge to apply.



  • Paris, Île-de-France Quarkslab Temps plein

    About QuarkslabQuarkslab builds cutting-edge cybersecurity solutions used by security-driven companies and institutions around the world. Our QShield product suite focuses on software protection and reverse engineering resistance across desktop, mobile, and embedded platforms.We're not in the cloud — we build real software, tested on real systems. If you...


  • Paris, Île-de-France Texas Instruments Temps plein

    DescriptionChange the world. Love your job. This 6-month internship focuses on analyzing the fast-growing drone ecosystem in Europe, covering both drone platforms and their associated payloads. The objective is to understand how civil and defense UAV markets are evolving—from surveillance drones to loitering munitions—and to evaluate the semiconductor...

  • FP&A Internship

    il y a 5 jours


    Paris, Île-de-France Alice & Bob Temps plein

    Alice & Bob is developing the first universal, fault-tolerant quantum computer to solve the world's hardest problems.The quantum computer we envision building is based on a new kind of superconducting qubit: the Schrödinger cat qubit . In comparison to other superconducting platforms, cat qubits have the astonishing ability to implement quantum error...


  • Paris, Île-de-France morpheus Temps plein 14 400 € - 19 200 € par an

    Hi, we're Morpheus Agency.We're an AI development studio helping SMEs enter (and win in) the AI era. From idea to impact, we build practical, revenue-driving products—like our self-completing to-do app—that turn everyday workflows into unfair advantages.How we work:Focuson what moves the company forward.Transparencythat tells the hard truth—kindly—so...


  • Paris, Île-de-France Hack The Box Temps plein

    Ready to embark on the quest to join Hack The Box?At the end of this journey, you'll become a proud member of Hack The Box, with the ultimate mission to raise cyber resilience, so that every organization can stay ahead of tomorrow's threats. The core mission of the Enterprise Account Executive Join our Europe team and help expand our enterprise client...

  • Offensive Security Internship

    il y a 2 semaines


    Paris, Île-de-France Apple Temps plein 60 000 € - 90 000 € par an

    Apple's Security Engineering & Architecture organization is responsible for the security of all Apple products. Passionate about safeguarding our users, we believe that the best defense requires a phenomenal offense. When it comes to securing more than a billion devices running the world's most sophisticated operating systems, that means finding...

  • Analyst Intern

    il y a 6 jours


    Paris, Île-de-France Analysis Group Temps plein

    OverviewAnalysis Group is one of the largest international economics consulting firms, with more than 1,500 professionals across 15 offices in North America, Europe, and Asia. Since 1981, we have provided expertise in economics, finance, health care analytics, and strategy to top law firms, Fortune Global 500 companies, and government agencies worldwide. Our...

  • M&A Internship

    il y a 6 jours


    Paris, Île-de-France Lincoln International Temps plein

    We are trusted investment banking advisors to business owners and senior executives of leading private equity firms and public and privately held companies around the world. Our services include mergers and acquisitions advisory, private funds and capital markets advisory, and valuation and fairness opinions. As one tightly integrated team of more than...


  • Paris, Île-de-France EDFT Temps plein

    When you join EDF Trading, you'll become part of a diverse international team of experts who challenge conventional ideas, test new approaches, and think outside the box.Energy markets evolve rapidly, so our team needs to remain agile, flexible, and ready to spot opportunities across all the markets we trade in power, gas, LNG, LPG, oil, and environmental...

  • growth hacker outbound

    il y a 5 jours


    Paris, Île-de-France STATION F Temps plein

    AboutGuideflowis aSaaSplatform to createinteractive demos & guides in seconds.Used by sales teams tospeed up their sales cycleby sharingpersonalizedinteractive demosin outreach campaigns. Used by marketing teams toboost conversionsbyembedding product demos into your website.Enhance satisfactionby embedding product demos into your help center.Onboard...