Skip to content

cryptotronix

  • Home
  • About
  • Videos
  • Training
  • Blog
  • Contact

Category: Videos

Featured
May 4, 2022 by Josh Datko

fs-verity: Embedded Linux File Protection

Embedded Linux devices are generally lacking in security, but especially file system security. While I’m seeing the ship start to turn with respect to secure boot, there is still a wide lack of file system prevention and monitoring security. Read More

Training, Videos Leave a comment
Featured
April 19, 2022April 19, 2022 by Josh Datko

The UK Product Security and Telecommunications Infrastructure (PSTI) Bill

The UK is proposing some interesting device cybersecurity legislation that will impact more people than they realize. Read More

Videos Leave a comment
Featured
April 6, 2022April 19, 2022 by Josh Datko

Mistakes in Custom Embedded Protocols

Having audited a few custom protocols, as nearly every embedded project decides to implement them, nearly every one has had a security issue. In this video I discuss the top three issues I’ve seen. Read More

Videos Leave a comment
Featured
February 10, 2022April 6, 2022 by Josh Datko

Infosec’s Midlife Crisis

Using the latest issue of IEEE Security & Privacy as a front to discuss this topic, I talked about the different focus areas of information security. Read More

Videos Leave a comment
Featured
February 2, 2022February 2, 2022 by Josh Datko

Cybersecurity gets no respect!

The article, “Design for Cybersecurity from the Start” in MIT Sloan Management Review, really nails the continued issue with security for product design. Read More

Videos Leave a comment
Featured
January 20, 2022February 2, 2022 by Josh Datko

CWE 1277: Firmware Not Updatable

The title of this CWE sounds like an error you’d get trying to update your smart toothbrush. In this short video I go over the security issues with static firmware and quickly talk about update strategies with microcontrollers and embedded linux platforms. Read More

Training, Videos 1 Comment
Featured
January 13, 2022January 20, 2022 by Josh Datko

CWE 1272: Sensitive SRAM

In this video, I’ll tell you how to save money and build your own SRAM PUF instead of paying some licensing fees, why vulnerabilities in bitcoin hardware wallets are a good thing, and how forgetting to forget secrets can get you in stormy seas. Read More

Videos
Featured
January 6, 2022January 13, 2022 by Josh Datko

CWE 1240: Risky Crypto

CWE 1240, a top 2021 Hardware CWE deals with using risky cryptographic primitives. Read More

Videos
Featured
December 16, 2021January 6, 2022 by Josh Datko

CWE 1231: Improper Prevention of Lock Bit Modification

In this video Josh discusses what this lock bit could do and provides a RISCV example as well. Read More

Training, Videos 1 Comment
Featured
December 15, 2021January 6, 2022 by Josh Datko

CWE 1191: On-Chip Debug and Test Interface With Improper Access Control

In this video we discuss CWE 1191: On-Chip Debug and Test Interface With Improper Access Control. Read More

Training, Videos

Posts navigation

← Older posts

Recent Posts

  • fs-verity: Embedded Linux File Protection
  • Announcing the Cryptotronix Podcast
  • The UK Product Security and Telecommunications Infrastructure (PSTI) Bill
  • Mistakes in Custom Embedded Protocols
  • Infosec’s Midlife Crisis
  • Cybersecurity gets no respect!
  • CWE 1277: Firmware Not Updatable
  • CWE 1272: Sensitive SRAM
  • CWE 1240: Risky Crypto
  • CWE 1231: Improper Prevention of Lock Bit Modification
  • CWE 1191: On-Chip Debug and Test Interface With Improper Access Control

Enter your email to subscribe to new posts.

 

Loading Comments...