Knowledge Base

Research & Insights Library

Curated collection of original embedded security whitepapers, hardware glitching experiments, reverse engineering tool scripts, and executive briefings on hardware risk.

QRNG Systems: Physical Measurement Nuances & Mathematical Post-Processing

Understanding the two fundamental pillars of physical Quantum RNGs: sensor measurement nuances in Radon-222 alpha-decay chambers and mathematical debiasing algorithms.

Summer Bundle 2026

Curated research papers for the summer break focusing on physical entropy, silicon analysis, hardware fault injection, and embedded system reverse engineering.

Randomness Extraction in Quantum and Physical RNGs

Deep dive into physical entropy sources, statistical bias, min-entropy characterization, and the Trevisan / 2-universal hashing extractors used in cryptographic hardware.

QRNGabri – Quantum RNG Live Platform

Announcing the live launch of QRNGabri: an authentic quantum random number generator leveraging nuclear alpha-decay intervals from Radon-222 with real-time entropy streaming.

Reverse Engineering Mask ROM

Silicon-level reverse engineering: Analyzing manufacturing structures of mask ROM, optical microscopy patterns, and bit extraction from silicon die imagery.

Exploring USB Commands

Techniques for exploring and reversing opaque, undocumented USB interfaces and control transfers on embedded target devices.

IDA Pro String Heuristics

Developing heuristics and automation scripts in IDA Pro to eliminate noise and extract high-value debug strings and commands during binary reverse engineering.

Filtering strings output

A lightweight CLI filtering pipeline to cut through garbage output when running strings on unknown binaries during rapid initial firmware triage.

Converting code in IDA with a simple script

An efficient IDAPython script for rapidly converting large chunks of raw bytes to executable code across unknown alignment boundaries.

How Attackers Can Target Your VSAT from Any Ground-Level Angle

Comprehensive analysis of satellite dish antenna radiation sidelobes, physical-layer RF interception, and ground-level attack surfaces threatening enterprise VSAT deployments.

Fault Injection III: Connecting the MAXIM4619

Wiring schematics, decoupling capacitor management, and practical breadboard integration for the MAXIM4619 high-speed triple SPDT analog switch.

Fault Injection II: Does glitch width really matter?

Experimental characterization of nanosecond pulse width sensitivity on target instruction skipping, register corruption, and reset thresholds.

Fault Injection I: Crowbar Circuit vs Analog CMOS Switch

Comparing power rail crowbar circuits with high-speed analog multiplexers for precision voltage glitching against secure microcontrollers.

Why “Physical Access Required” Is No Longer a Valid Mitigation

Why dismissing hardware vulnerabilities with "an attacker needs physical access" creates systemic business risk in supply chains and remote enterprise deployments.

Hardware Security Fails in Meetings, Not in Exploits

How cost-cutting trade-offs, hurried tape-out deadlines, and uncoordinated engineering decisions create multi-million dollar product recall liabilities.

Applying Fault Injection to the Firmware Update Process of a Drone

Vulnerability research: Bypassing digital signature verification routines during in-field drone firmware flashing using sub-microsecond power glitch pulses.

Owning a Bitcoin ATM: Hardware & Logical Exploitation

Hardware audit exposing how physical bus interception, unauthenticated debug interfaces, and logical firmware flaws allow complete machine compromise.

Integer Overflow Exploits Across Architectures: ARM, RISC-V, MIPS & PowerPC

Cross-architectural comparison of arithmetic overflow handling, condition flags, signed vs unsigned comparisons, and firmware vulnerability exploit patterns.

Stay Updated

Get New Research Directly in Your Inbox

Subscribe to receive notifications when new embedded security papers, reverse engineering tools, and U-Boot VM updates are released.