eShard
French security testing vendor whose esDynamic platform finds side-channel, fault-injection, and software vulnerabilities in chips, embedded systems, and mobile apps.
Visit Website ↗ + Add to CompareOverview
eShard builds testing tools that answer a question most application security scanners never touch: can this chip, embedded device, or mobile app be broken by someone with physical or low-level access to it? Its esDynamic platform performs side-channel analysis and fault-injection testing against integrated circuits, alongside binary code analysis, vulnerability research, and mobile app security testing, giving semiconductor makers, device manufacturers, and testing labs a way to validate resistance to physical and embedded attacks before products ship.
Founded in 2015 in Bordeaux, France, by Hugues Thiebeauld and Georges Gagnerot, eShard grew out of a team of specialists in physical attacks on integrated circuits and has since added offices in Marseille and Singapore. The company reports around 48 employees and roughly $5.3 million in 2025 revenue, and serves customers across semiconductor, automotive, government, defense, healthcare, and energy sectors. eShard also operates a joint application laboratory with ALPhANOV for laser fault-injection testing, and has sold portions of its patent portfolio to Secure-IC.
Hardware and embedded security testing is a narrow, technically demanding niche with few dedicated vendors, and eShard’s decade of focus on physical-attack resistance for chips and embedded software gives it real specialist credibility, even though its overall market visibility remains small relative to mainstream application security testing vendors.
Innovation Matrix Assessment
Joint lab work with ALPhANOV on laser fault-injection and a continued release cadence for the esDynamic platform indicate active, ongoing R&D investment in a narrow technical niche.
A decade of operating history, three office locations (Bordeaux, Marseille, Singapore), and roughly 48 employees serving semiconductor, automotive, defense, and government customers indicate a functioning, moderately scaled operation.
Reported 2025 revenue of $5.3M reflects real growth for a bootstrapped specialist, though the sale of part of its patent portfolio to Secure-IC could also read as a signal of portfolio consolidation rather than pure expansion.
Side-channel and fault-injection testing for chips is a long-established discipline; eShard's contribution is consolidating these capabilities into a single commercial platform rather than introducing a fundamentally new testing method.
A decade-plus of serving semiconductor and government customers in a technically demanding niche, plus a dedicated joint lab with ALPhANOV, are meaningful indirect efficacy signals, though no public third-party benchmark of esDynamic's detection performance was found.
Physical and embedded attack resistance matters for a growing set of connected devices, payment hardware, and automotive systems, though it remains a specialized concern relative to mainstream enterprise software security.
Why CISOs Should Care
Relevant primarily to product security and hardware engineering teams who need to validate that chips, embedded firmware, or mobile apps resist physical and side-channel attacks before shipping, a gap most conventional application security tools don't cover.
What Makes It Different
Focuses specifically on physical and side-channel attack surfaces, hardware fault injection, chip-level vulnerabilities, that fall outside the scope of typical SAST/DAST application security tooling.
The Matrix Verdict
57/100 — INCREMENTAL INNOVATOR
A credible, specialist hardware and embedded security testing vendor with genuine technical depth and a decade of niche focus; its narrow market means broad visibility and independent validation remain limited outside its specific customer sectors.
Editorial Note: Claims vs. Verified Findings
Revenue and funding figures ($5.3M 2025 revenue, bootstrapped status) come from third-party aggregators (Latka, Crunchbase) that report conflicting investor information and were not independently audited. eShard's customer sectors, office locations, and the ALPhANOV joint lab are independently confirmed via the company's own site and partner announcements.
Sources
Alternatives to eShard
Endor Labs
Reachability-based software composition analysis that filters open-source dependency risk down to what code paths are actually exploitable.
ThreatLocker
CISO ReviewedZero Trust endpoint protection platform that blocks unknown applications by default through allowlisting, ringfencing, and storage control.
Socket
A software supply chain security platform that combines automated dependency analysis with human verification to catch malicious and…
JFrog
Public software supply chain security platform (Xray plus Advanced Security) that scans binaries and artifacts end-to-end from the…
Apiiro
Builds a continuous 'code risk graph' that maps code, developers, and cloud deployment to prioritize AppSec findings by…
ArmorCode
Tool-agnostic ASPM layer that correlates findings from 300+ existing security tools into one prioritized backlog, without running its…