Perform invasive and non-invasive hardware attacks against flight hardware: side-channel analysis, fault injection (voltage, clock, EM), chip desoldering and rework, decapping, and exploitation of embedded debug and bus interfaces (JTAG, SWD, UART, SPI, I2C). Experience building your own tooling rather than only running off-the-shelf tools: coverage-guided or protocol fuzzing harnesses (AFL++, libFuzzer), emulation-based rigs (QEMU, Unicorn), test fixtures, and bench instrumentation.