STM32 SECURE DFU Bootloader
Publicada el 2026-07-21
Descripción de la oferta
I have a custom board using an STM32U5 MCU and need a production-ready secure USB/DFU bootloader, tested on physical hardware. Firmware updates must be digitally signed and encrypted. The MCU must verify authenticity, product compatibility and authorisation before activating an update. The system must support device-bound authorisation, anti-rollback protection and a power-loss-safe update or recovery process. The secure bootloader and root of trust must use appropriate STM32U5 security features, including TrustZone, protected key storage, flash protection and ST-LINK readout/debug protection. The final protection level and recovery strategy must be documented and approved before irreversible option bytes are enabled. Deliverables: Complete secure-bootloader source and build project. PC-side signing, encryption and USB update tools. Secure device-provisioning procedure. Memory layout, TrustZone and protection configuration. Build, installation, update and recovery instructions. Hardware test evidence covering modified firmware, unauthorised devices, anti-rollback, interrupted updates and ST-LINK protection. The developer must already possess compatible STM32U5 hardware, perform testing on real hardware and communicate with me during important testing stages. When applying, specify your STM32U5 hardware, relevant secure-boot experience, proposed security architecture and testing method. Password-only protection and untested code are unacceptable.
Skills
Fuente original: freelancer