A missing immutable root of trust in the hardware results in the ability to bypass secure boot or execute untrusted or adversarial boot code.
When architecting the system, the RoT should be designated for storage in a memory that does not allow further programming/writes.
During implementation and test, the RoT memory location should be demonstrated to not allow further programming/writes.
Our security experts can help you identify and remediate CWE-1326 vulnerabilities in your codebase.
Get Security Assessment