pw_boot threat model#
This document supplements the general threat model to provide a threat model specific to pw_boot.
Scope#
Software-level bypasses of integrity checks (such as signature verification bypasses in the
pw_bootmodule) are fully in-scope, regardless of how the payload is delivered to flash.