Just in case anyone else wants to quickly dump a spi flash and only has a clone rp2040:
Opensensor's build works github.com/opensensor/pico-s… while those from stacksmashing (fails to sync) and Riku_V (fails to read) don't.
This RP2350 update is EXACTLY what embedded security needs - a hardened AES implementation with real-world testing through hacking challenges. Practical security validation at its best!
Of note for retro computing:
"Those of you interfacing RP2350 to retro computer hardware will be pleased to hear that, after an extensive qualification campaign, RP2350 is now officially 5V tolerant!"
Security researcher Stacksmashing showed how hackers may use a $4 Raspberry Pi Pico to retrieve the BitLocker encryption key from […]
The post Microsoft BitLocker encryption hacked by a cheap off-the-shelf Raspberry P... s.mtrbio.com/bauxhiwuzi
Last year @stacksmashing presented the pico-sniffer, this year Thomas (infosec.exchange/@tlambertz) demonstrates a software-only attack that would make breaking Bitlocker even easier!
From startups to large companies, we've seen this setup used by many corporate clients in the wild. Here's why this is so difficult to fix and Microsoft has not changed the exploitable default settings yet:
neodyme.io/blog/bitlocker_wh…
New by me @Forbes: I've spoken with Thomas Roth (stacksmashing) @ghidraninja about how he hacked the new iPhone USB-C controller and the security implications of that. It is a truly significant bit of research; huge kudos are deserved.
#infosecforbes.com/sites/daveywinder…