That's supposed to be very difficult to do.
The recently discovered bootrom exploits break that chain of trust, allowing unsigned code to execute.
That's supposed to be very difficult to do.