logo

Is secure boot on the main application processor enough?

ID: 7edd5b10-f71c-56f4-a22c-0ab1e68f98b4

STIX ID: report--7edd5b10-f71c-56f4-a22c-0ab1e68f98b4

Feed Name: Pen Test Partners Blog

Date Published: 2024-12-05

Date Updated: 2026-03-26

Author: Andrew Tierney

...
...

This report explains how secure boot and firmware signing provide authenticity and defense-in-depth for embedded devices with multiple processors, noting that not all sub-systems support secure boot and that physical attacks can still bypass protections. It recommends prioritizing secure boot on the main application processor, handling sub-system updates securely, and using safety case methodologies to justify exceptions for lower-risk components while documenting and accepting residual risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.