Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile
Matthias Kesenheimer

@bartimaeusvuruk

Passionate about hardware security, hardware hacking, fault injection analysis and voltage glitching. Author of the fault injection library "findus".

ID: 211290367

linkhttp://mkesenheimer.github.io calendar_today02-11-2010 21:10:48

896 Tweet

124 Takipçi

119 Takip Edilen

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

I am basically giving away 30 #PicoGlitcher because of a manufacturing error. This is the cheapest way to get into voltage glitching: tindie.com/products/fault…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

Released new version of #findus: - Fixed schematics for Pico Glitcher v2.3 (latest hardware version is now 2.4) - Fixed Pico Glitcher firmware to support hardware version 2.3 and later - full release notes: github.com/MKesenheimer/f…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

#findus version 1.7.0 released: - Reworked the power-cycling methods - Now the pulse-shaping stage (also the multiplexing stage) can be used to power-cycle the target - Added methods to control the output of the pulse-shaping stage when not glitching github.com/MKesenheimer/f…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

New version of #findus and #PicoGlitcher released: - Added functions to re-initialize the Pico Glitcher during a run - Removed unnecessary code - Added a function to switch to a different statemachine on the RP2030. github.com/MKesenheimer/f…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

I’m working on voltage glitching the Trezor One crypto wallet with the latest firmware installed. I can get down to RDP-0 from RDP-2 and read out the complete flash memory and potentially the recovery keys. Performed with the #PicoGlitcher.

I’m working on voltage glitching the Trezor One crypto wallet with the latest firmware installed. I can get down to RDP-0 from RDP-2 and read out the complete flash memory and potentially the recovery keys. Performed with the #PicoGlitcher.
Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

#findus 1.10.4 released - Added a function to generate heat maps with the analyzer tool. This is helpful to search for hotspots in the parameter space. For example: ``` analyzer --directory databases --auto-update 60 --heatmap --x-bins 15 --y-bins 15 ```

#findus 1.10.4 released

- Added a function to generate heat maps with the analyzer tool. This is helpful to search for hotspots in the parameter space.

For example:
```
analyzer --directory databases --auto-update 60 --heatmap --x-bins 15 --y-bins 15
```
Matthias Deeg (@matthiasdeeg) 's Twitter Profile Photo

My colleague Matthias Kesenheimer was successful with some more voltage glitching and electromagnetic fault injection attacks and published one security advisory for the STM32L051 and one for the nRF54L15 today. You can find a short German blog article here: syss.de/pentest-blog/f…

Matthias Deeg (@matthiasdeeg) 's Twitter Profile Photo

The two security advisories SYSS-2025-022 and SYSS-2025-033 are available here: syss.de/fileadmin/doku… syss.de/fileadmin/doku… And I also recommend checking out his fault injection project with Pico Glitcher and findus: fault-injection-library.readthedocs.io/en/stable/

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

#findus 1.11.0 released: - Added a function to generate two fully configurable pulses with the crowbar stage (arm_double) - This could be used to double-glitch a target - configuration is similar as for the multiplexing method github.com/MKesenheimer/f…

Matthias Deeg (@matthiasdeeg) 's Twitter Profile Photo

As announced yesterday, the blog article by my colleagues Stefan Walter and Daniel Isern with further technical details concerning the Windows SMB security vulnerability CVE-2025-33073 is now published. blog.syss.com/posts/kerberos…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

Today I sold the 300. Pico Glitcher! Thank you for all the support and the interest in this product! This device proofed to be useful in so many fault injection attempts. I am working with it nearly every day and still improving it. tindie.com/products/fault…

Matthias Deeg (@matthiasdeeg) 's Twitter Profile Photo

A new tech blog article by my colleague Matthias Kesenheimer about an electromagnetic fault injection attack against an nRF54L15 by Nordic Semiconductor is now also online. If you want to know more about EMFI or the security issue SYSS-2025-022 have a look: blog.syss.com/posts/nrf54-em…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

Two blog articles about fault injection vulnerabilities of the nRF54L15 and the stm32l051 released: blog.syss.com/posts/voltage-… blog.syss.com/posts/nrf54-em… Check them out!

Ray Maker (@dcrainmakerblog) 's Twitter Profile Photo

COROS has confirmed a substantial set of security vulnerabilities, impacting not just the watch, but COROS online account as well. These were initially spotted by security researcher Moritz Abrell and I've confirmed they impact all devices. Full details: dcrainmaker.com/2025/06/coros-…

COROS has confirmed a substantial set of security vulnerabilities, impacting not just the watch, but COROS online account as well. These were initially spotted by security researcher <a href="/moritz_abrell/">Moritz Abrell</a> and I've confirmed they impact all devices. Full details:  dcrainmaker.com/2025/06/coros-…
Gerhard Klostermeier (@iiiikarus) 's Twitter Profile Photo

There is a great YouTube video by Ray Maker about this issue now! Thanks for bringing attention to this very nice work by my colleague. youtube.com/watch?v=Iqd6sq…

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

Good news! I was invited as a speaker at this year’s conference Hacktivity in Budapest: hacktivity.com I will speak about my recent research on voltage glitching the STM32L05 and electromagnetic fault-injection of the nRF54L15. Hope to see you there!

Matthias Kesenheimer (@bartimaeusvuruk) 's Twitter Profile Photo

Holiday sale! The #PicoGlitcher is for sale for the next three weeks. Use code 330A3E30 to get 10% off. tindie.com/products/fault…