#faultinjection

Gabriel GonzalezGabrielGonzalez
2025-03-14

Following up on my previous blogpost, I got some people asking to clarify how to connect the Analog CMOS to the ESP32 glitcher so I listened to them. I hope this helps everyone trying to reproduce the results!

gabrielcybersecurity.com/fault

2025-02-12

Oops..! I Glitched It Again! How to Multi-Glitch the Glitching-Protections on ARM TrustZone-M

Xhani Marvin Saß ,Richard Mitev, Ahmad-Reza Sadegh

arxiv.org/pdf/2302.06932

#hardwarehacking #glitch #faultinjection

eShardeshard
2025-02-10

Starting the week by shipping out some Hardware Benches to our customers 🚛

hardware bench for side-channel analysis and electromagnetic fault injection
kriware :verified:kriware@infosec.exchange
2025-02-07

Laser Fault Injection on a Budget: RP2350 Edition

This article details the development of a custom laser fault injection platform to bypass the Secure Boot feature of the RP2350 microcontroller.

courk.cc/rp2350-challenge-laser

#hardware #faultinjection

2025-01-10

Currently trying to solder probes to a mainboard's RAM DIMM connectors to try memory fault injection. Soldering 100+ wires is a huge pain, would anyone know of an existing interface/PCB with pogo pins/something that could make my life simpler?

Or are there tricks to batch-solder such a quantity of small wires?

#hardware #soldering #faultinjection

Backside of a computer Mainboard with some wires soldered to its ram connector pins
Torsten :verified: :verified:tor@norden.social
2025-01-01

Ich denke noch über den #BitLocker Talk nach und die Hacks mit #FaultInjection.

Vielleicht ist die Variante mit #TPM + PIN auch keine Alternative. Bleiben noch USB-Stick oder ein Passwort zur #Verschlüsselung.

#38C3
tomshardware.com/news/amd-tpm-

2024-12-28

Great talk by Aedan Cullen (@aedancullen) at #38c3 on breaking security on the #RP2350 by glitching the OTP VDD.

streaming.media.ccc.de/38c3/re

I expect the bus between the state machine and OTP is like Wishbone or M68K and has a request and an acknowledge, and the data is latched on the ACK. No ACK? Guard word stays in the latch.

#ICRE #ICReverseEngineering #FaultInjection

kriware :verified:kriware@infosec.exchange
2024-12-20

SIFA-based attacks on AES

This repository contains scripts designed to experiment with SIFA-based attacks on symmetric cryptography implementations, specifically AES.

github.com/jogolden/sifatools

#crypto #faultinjection

2024-12-03

In my recent post gabrielcybersecurity.com/fault I describe my last experiments on the known vulnerability of the nRF52 family. I ended up using an analog CMOS switch (MAXIM4619) which yielded surprising results!

#faultinjection #embedded #cybersecurity

Troed Sångbergtroed@ioc.exchange
2024-09-27

The fault injection library (PicoGlitcher, Chipwhisper etc) was just updated with the results of me playing around with my PicoGlitcher yesterday evening. This info comes from actual glitches against a so-far unnamed IoT device based on the STM32F412.

github.com/MKesenheimer/fault-

Summary:

1) No, it's not realistic to glitch ReadMemory to read out the internal flash from these devices with the known methods.

2) Still fun though and why not study the v3.1 bootloader intensely?

#ReverseEngineering #FaultInjection

2024-09-06

PicoEMP died, had this gifted a while back. Does a good job with the printed mount.

#faultinjection #hardwarehacking #InTheLabDoingStuff

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst