security researcher | speaker | trainer | lockpicking | evil maid attacks | maker | threema.id/MPK39EB8 | infosec.exchange/@evilmaid

127.0.0.1
🧠 BREAKING BITLOCKER — Early Bird ends Nov 3! 🔥 Our seasoned Black Hat training (3 years at BHUSA) returns to the classroom in Zurich — battle-tested in countless LEA cases. Learn real BitLocker bypasses hands-on: TPM sniffing • DMA attacks • bootloader patching. Practice micro-soldering, attach probes to internal buses, and extract BitLocker keys from RAM and elsewhere — everything you need to go beyond standard interfaces. 🛠️ Includes full hardware kit & prepped test laptop 💰 Early Bird CHF 2999 (regular CHF 3499) — until Nov 3 📍 Zürich · 📅 29–30 Jan 2026 · 🔗 hos.direct/jan26training #BitLocker #DigitalForensics #LEA #Cybersecurity #RedTeam #TPM #DMA #HandsOnSecurity
3
6
513
🔓 Your first hardware hack might end with a BitLocker key. For many students, Breaking BitLocker is their first time: → opening a laptop to find attack points → microsoldering onto a PCB → connecting a logic analyzer → watching TPM traffic on a real hardware bus → extracting the key that actually unlocks the disk That moment when random electrical signals suddenly become understandable data — and then a BitLocker key — never gets old. 🔬⚡ This December we’re bringing the latest Breaking BitLocker to Black Hat Europe 2026 in London 🇬🇧 And we’ve made the hardware side even more accessible. We built our own LPC + SPI decoders for PulseView, so instead of treating the logic analyzer as a magic box, you can actually SEE the communication, understand it and watch the attack unfold on the bus. Over two very hands-on days: ⚡ TPM Bus Sniffing ⚡ LPC/SPI logic analysis ⚡ BitLocker key extraction ⚡ DMA attacks ⚡ Bootloader-based attacks ⚡ Current BitLocker research & mitigations ⚡ Most importantly: understanding why an attack works - and when it doesn’t No previous hardware-hacking experience required. 🧰 All attack hardware + adapters included 💻 Prepared target laptop included 🔬 You perform the attacks yourself 🎒 And the equipment is yours to keep afterwards One important thing: we still need additional Early Bird registrations for the Black Hat class to go ahead. So if Breaking BitLocker has been sitting on your training wish list, don’t wait for regular registration - there may not be one. 👉 hos.direct/bheu26 Know a forensic practitioner, pentester, security researcher or LEA colleague who should finally cross the software/hardware boundary? Send this their way. Let’s get another group around the workbench at #BHEU. 🔓🔬 #BlackHat #BitLocker #HardwareSecurity #DFIR #TPM #InfoSec
3
6
616
🚨 Plot twist in digital forensics: The CEO of Oxygen Forensics and a Russian national have been arrested after allegedly hiding Russian ownership - while selling forensic software to the U.S. government. The DOJ says the same Russian owners also sold the software to customers including the FSB. 👀 57 domains seized. Extradition pending. This one is wild. 🍿 🔗 DOJ: justice.gov/usao-cdca/pr/tec…
2
145
Pascal Gujer  retweeted
I'm sorry 7z can do WHAT
153
843
14,680
833,205
When will this be for sale? Where can I enter the waiting list? :D

ALT Season 2 Money GIF by SpongeBob SquarePants

Just get some #DGX Spark sample~ We're putting it head-to-head with our upcoming product, ours should beat DGX Spark and much more cooler and cheaper! Able to run LLM from 27B to 2T ! Stay tuned. 😆
1
4
1,615
🔓 BitLocker enabled. ❌ No recovery key. Now what? On 22-23 October, Breaking BitLocker returns to Zürich 🇨🇭 for two days of getting our hands dirty: ⚡ TPM Bus Sniffing ⚡ DMA attacks with PCILeech ⚡ BitPixie + newer BitLocker attack techniques ⚡ Extracting actual key material ⚡ Understanding why attacks work - and when they don’t ⚡ Secure vs. vulnerable BitLocker configurations This isn't a “watch the trainer hack something” course. You perform the attacks yourself. On real hardware. And you leave with: 🧰 Comprehensive hardware attack kit 💻 Prepared test device 🧠 The knowledge to reproduce and adapt the techniques afterwards We've been teaching Breaking BitLocker for years, continuously updating it as the BitLocker attack landscape evolves. 100+ participants from security, DFIR and international law enforcement have gone through it so far. 📍 Zürich, Switzerland 📅 22–23 October 2026 🗣 English 🎓 Max. 20 participants 💰 CHF 2'999 Early Bird until 18 September 👉 hos.direct/oct26training Can't make Zürich? We'll also be teaching the latest edition at Black Hat Europe 2026 in London 🇬🇧 👉 hos.direct/bheu26 #BHEU #BlackHat #BitLocker #DFIR #HardwareSecurity #InfoSec #CyberSecurity
2
2
218
A quick note on who this training is for 👇 It’s not only for digital forensics. If you work in DFIR, penetration testing, red teaming, security consulting or endpoint security, understanding why a BitLocker configuration is secure - or why it isn’t - is just as valuable as knowing how to attack it. And yes: this is genuinely hands-on. You’ll be soldering, sniffing TPM traffic, and attacking real systems yourself. 🔬 Questions about the content or whether it fits your use case? Drop them here or send us a message!
77
Can only confirm! Even when providing tools or assistance exclusively to legitimate law enforcement, verifying eligibility can be surprisingly difficult. Some countries don’t use .gov domains or any other easily verifiable channels. You want to help legitimate LE — while making absolutely sure the same capabilities don’t end up in the wrong hands. Verification is often the hardest part.
Verifying lawful requests is so difficult: - they don’t sign their emails/requests - they don’t provide a way to verify the request - a lot of their mailboxes get popped and abused Meanwhile the penalties are severe if you don’t reply. Doomed if you do, doomed if you don’t.
144
Pascal Gujer  retweeted
Hey @defconch crew! :D Please find details of this month's meetups below: 🗓️ August Events: 📍 03 August — Rhacklette 📍 04 August — Geneva, Sargans 📍 11 August — Zürich 📍 18 August — Basel, Bern, Lucerne, Lausanne 📍 25 August — Zug
1
1
4
175
Shadow AI is the new Shadow IT. Years ago, employees adopted Dropbox, WhatsApp and cloud apps because corporate IT couldn't keep up. Today, they are adopting ChatGPT, Claude and other AI tools for exactly the same reason. Every time someone pastes source code, investigation notes, customer data or internal documents into a personal AI account, organizations lose visibility and control. But banning AI won't solve this. The lesson from Shadow IT still applies: People use unauthorized tools when the authorized ones don't meet their needs. Recently, someone approached me with a seemingly simple problem: their internal AI assistant could generate content, but it couldn't produce the properly formatted Word reports required for their workflow. The first thing that came to mind was how tempting it would be to simply use a public AI service that could do the job. Not because someone wants to bypass policy. Not because someone is careless. But because they need to get their work done. That conversation reminded me why I built Markdown2Word. Not as an AI product, but as a bridge between AI-generated content and the document formats people actually need in their daily work. The issue wasn't model quality. The issue was that the workflow ended at Markdown while the business process required DOCX. Security teams often focus on preventing users from leaving the approved environment. Users focus on completing their task. Whenever those two objectives diverge, Shadow AI emerges. The most effective way to reduce Shadow AI isn't stricter policies. It's providing an approved AI platform that is: ✅ easy to access ✅ integrated into existing workflows ✅ secure and governed ✅ capable of producing the outputs people actually need Because every Shadow AI incident is also a product review of your approved AI strategy. The question isn't whether employees have access to AI. The question is whether your approved AI can take them all the way to the finished deliverable. #ShadowAI #CyberSecurity #GenAI #AIGovernance #CISO #DigitalTransformation
1
167
Pascal Gujer  retweeted
Reminder 👇 we are giving some really fun hardware hacking trainings at BlackHat USA. Learn how fault injection (security) research works.
Last chance: Early-bird pricing for @LiveOverflow's and mine "Applied Fault Injection" training at @BlackHatEvents USA expires today
2
3
18
8,196
Pascal Gujer  retweeted
Charging up some #AREA41 surprises 🛸👽
1
4
14
483
Mother’s Day sermon at church perfectly described BBQ dads 😄 The wife: invites guests, prepares sides, organizes EVERYTHING. Dad: “I’ll handle the meat.” 🔥 But honestly: making consistently perfect meat is a craft 😅 Dad cheat code: Sous-vide. Vacuum bag → water bath → quick grill finish. Result: restaurant-quality meat with almost zero stress. And yes… people now expect dads to nail this every single time 😂 Get yours here 👉 s.click.aliexpress.com/e/_EQ… #DadHack #SousVide #BBQ #LegendDad
3
190
Fighting cybercrime is a team sport. Today’s Europol operation against a VPN service allegedly used by ransomware actors shows what international cooperation can achieve. Years ago, someone from the FBI told me one of the hardest parts of fighting cybercrime is getting the right people in different countries connected and collaborating effectively. Cybercriminals work globally. Defenders must do the same. Respect to everyone involved behind the scenes. 👏 Europol: europol.europa.eu/media-pres… Operation Saffron: operation-saffron.eu/ #CyberSecurity #Cybercrime #DFIR #Ransomware
1
1
180
Giving my first training at BlackHat USA! Well, actually it's @ghidraninja's training, and I am just hist mascot and hand out the hardware :P
6
17
170
14,524
Swiss Dad Hack 🔥 Most people build campfires like a teepee. Looks nice. Produces tons of smoke 😄 Stacking wood in alternating 90° layers burns WAY better because airflow is improved. And yes… the little rechargeable blower hidden behind the fire is basically a cheat code 😂 Roaring fire in minutes. Less smoke. Less wood. Happy kids. (Blower link 👉 s.click.aliexpress.com/e/_Ev…) #DadHack #Camping #Fire #LifeHack #LegendDad
1
3
260
Corporate AI workflow reality: AI gives you great content. Then you spend 20 minutes fixing Word formatting. 😩 So I built: Markdown to Word Standalone An offline browser-only tool that turns AI-generated Markdown into proper corporate Word documents. → No install → No upload → No backend → No company data leaving your machine Workflow: 1. Ask ChatGPT/Codex/Claude for Markdown 2. Paste it into the tool 3. Load your corporate Word template 4. Download a clean .docx Especially useful in restricted corporate/government environments where online converters are a no-go. Open source: GitHub: github.com/pascal-gujer/mark… Live demo: pascal-gujer.github.io/markd… Built in ~30 mins of vibecoding during a family visit after my dad mentioned the problem 😂 #AI #OpenSource #Markdown #Word #Privacy
1
1
160
I spent 100+ hours using Codex and Claude side by side on an authorized vulnerability research project. The most worrying part was not that an AI refused a request. It was more subtle than that. Codex was approved through the cybersecurity research program and was often very helpful, very technical, and generally usable for legitimate security work. But when the research started pointing toward a high-severity finding, Codex repeatedly steered me away from the area that mattered most. Not just “I cannot help with this.” More like: “let’s not go there.” Claude, without any special cybersecurity research program in my setup, looked at the same material and immediately flagged the issue as critical, report-worthy, and something that needed investigation. That gap matters. In real vulnerability research, the most important findings are often the ones with the scariest impact. If AI tools become most avoidant exactly when severity becomes highest, that is a dangerous failure mode. AI safety is important. But authorized validation and responsible reporting are not the same as abuse. Security researchers need tools that understand that difference. Especially when the finding is severe. Are you using an Ai tool for vulnerability research? Let me know your experiences!
156
🇨🇭 Schweizer ÖV-Lifehack: ZVV-/SBB-Abo? Dann zahlst du vermutlich zu viel 😄 Bei Coop gibt’s dauerhaft 3 % Rabatt auf Reka-Guthaben → damit kannst du viele ÖV-Abos bezahlen. Bei CHF 1’000 Jahresabo: 💰 sofort CHF 30 gespart. Mit Kindern? …wird daraus schnell ein Familienausflug 😅 Oder wie schon mein Urgrossvater sagte: „Wer den Rappen nicht ehrt, ist den Franken nicht wert.“
1
1
144
Small tweak. Big impact. 💡 Want a simple way to make your home network a bit safer for your kids? Use Cloudflare 1.1.1.1 for Families. No apps. No subscriptions. Just DNS. It blocks: - Malware - Adult content Is it perfect? No. Can kids bypass it? Yes. But that’s not the point. It reduces the “oops moments” — the accidental clicks, weird ads, and wrong turns on the internet. Setup takes 30 seconds on your router: DNS1: 1.1.1.3 DNS2: 1.0.0.3 Done. Not control. Just a small layer of protection. That’s #LegendDad energy. 🙌 #CyberSecurity #DigitalParenting #HomeLab
137
“face comparison locally — without sending any data anywhere. just a browser.” 🤔 that was the question. built a fully offline face comparison tool in ~3h no backend. no install. Like cyberchef, but for faces. 👉 pascal-gujer.github.io/facet… this came out of conversations with people in locked-down environments: - no internet - no arbitrary installs - strict data handling so most “AI tools” are simply not an option. idea was simple: - everything runs locally - single HTML file - no api - no tracking - no network open file → it works. then came vibe coding - Codex + Claude, co-op mode ⚡ prompt → usable prototype model didn’t fit → converted it a bit of back and forth → fixed + shipped ~3 hours later: - handles 200+ images - instant re-search - fully offline - no install - just an HTML file honestly… a few years ago this would’ve been days of pain. now it’s just: try → break → fix → done ⚠️ not an identity system just similarity, nothing more if all this AI stuff feels overwhelming — same here only thing that helps: build something what are you trying this weekend?
1
144