Home Blog My internship at Riscure My Internship at Riscure: Yuezhou Lyu

My Internship at Riscure: Yuezhou Lyu

Author: Yuezhou Lyu, Valeria Vatolina

Meet Yuezhou Lyu, who has recently completed his internship at Riscure. Yuezhou’s passion for cryptographic security has led him to join Riscure to complete research for his Master’s thesis. Read on to discover what he worked on and his impression of the Riscure team and culture.

Which study did you follow?

I pursued a joint master’s degree in Cybersecurity through the EIT Digital program. My entry year was spent at Eötvös Loránd University in Budapest, and my exit year at the University of Twente in Enschede. My studies focused on cryptography, complemented by courses in penetration testing and network security. I explored both theoretical and applied topics in cryptography, including classical and post-quantum cryptography, as well as secure protocols for networking, cloud computing, and data management.

How did Riscure support you in carrying out the research?

During my thesis-based internship at Riscure, I focused on power side-channel analysis of the Number Theoretic Transform (NTT) component in Dilithium, a lattice-based post-quantum signature algorithm selected by NIST for standardization. NTT is crucial for accelerating polynomial computations in such algorithms. I developed algorithms to craft test vectors for Dilithium NTT. Using the Test Vector Leakage Assessment (TVLA) methodology, these vectors helped us determine if an embedded device running Dilithium NTT was leaking side-channel information. I validated my test vectors on the Riscure Piñata board and delved deeper into exploitation.

Despite the complexity of my research, my mentors at Riscure, experts in cryptography and side-channel analysis, guided me effectively, pointing me to the right materials and directions. I learned immensely from everyone. Prior to my internship, I had no experience with hardware devices like oscilloscopes, current probes, or microcontrollers. Riscure provided all these devices and the opportunities for hands-on experience. The encouragement from colleagues was also a great mental boost, especially when my research hit roadblocks.

What is your impression of the Riscure team and culture?

Riscure’s culture is supportive and inclusive, embodying the hacker ethos. Everyone is friendly, approachable, and eager to share knowledge. The flat organizational structure fosters flexibility and efficiency, allowing you to be your true self. The diversity is evident, with colleagues bringing specialties from around the world, from churchkhela to gâteau breton, from HBAF nuts to tsoureki.

What made you choose Riscure for your internship assignment?

I sought practical, real-world applications for my cryptography knowledge, but opportunities were scarce. Riscure’s stellar reputation in device security and cryptography perfectly aligned with my interests. My master’s program required the thesis assignment to be completed in a company, making a thesis-based internship at Riscure ideal.

What do you like the most about working at Riscure?

As someone who easily gets stressed, I appreciated the low-stress environment at Riscure. I never felt pressured. Additionally, the food and snacks were delightful. Occasionally, I witnessed brilliant designs and ideas from my colleagues that made me exclaim, “Eureka!”

What inspires you in your work?

Curiosity drives me. I am constantly seeking to understand how things work and whether they can be improved. The instant gratification of successful attacks and the delayed gratification of defence are compelling motivators. Ultimately, the goal is always to “make Mallory go elsewhere.”

Looking for an internship in the device security domain? At Riscure, we’re always on the lookout for new interns! Read more and apply here.

Share This