
CWE 1240, a top 2021 Hardware CWE deals with using risky cryptographic primitives. Read More
CWE 1240, a top 2021 Hardware CWE deals with using risky cryptographic primitives. Read More
In this video Josh discusses what this lock bit could do and provides a RISCV example as well. Read More
In this video we discuss CWE 1191: On-Chip Debug and Test Interface With Improper Access Control. Read More
osh discusses the Most Important Hardware Weaknesses of 2021. In this video he goes over CWE 1189, Improper Isolation of Shared Resources on System-on-a-Chip (SoC). Read More
CTF at Toorcon is next week! Check it out at advsec.io/ctf. Read More
In this video, I go over my favorite and not-so-favorite RISCV dev boards and RISCV books. Not surprisingly, the best boards IMHO are coming from SiFive right now. Read More
Insufficient logging and monitoring have been on the OWASP Top 10 for some time now, but is this applicable to IoT deployments as well as web apps? Read More
A few weeks ago there was a blog post about sniffing the SPI bus that had a TPM to decrypt a bit locker-encrypted laptop. Reactions ranged the typical response on the classic watering holes. Read More
In this video Josh gives a small taste of what you can expect in the Introduction to Hardware Hacking and Reverse Engineer Course at Advanced Security. Specifically, he shows the run-time interpreter used to directly PEEK and POKE memory address. Read More
In this video, Josh discusses about the PKCS#11 standard. Read More