Robin Bradshaw
banner
en4rab.bsky.social
Robin Bradshaw
@en4rab.bsky.social
Cybersecurity and hardware hacking
Pinned
Since Bitlocker has suddenly become very popular I thought I would publish some scripts I made to help with recovering the FVEK when sniffing the keys from a TPM en4rab.github.io/posts/Sniffi...
I Hacked BitLocker in 25 Seconds With This Soldering Iron and the Power of Friendship
SPITkey
en4rab.github.io
Reposted by Robin Bradshaw
Don't steal pies this Christmas.
December 16, 2025 at 1:03 PM
Reposted by Robin Bradshaw
Microsoft is deprecating the old RC4 cipher from Kerberos authentication

www.microsoft.com/en-us/window...
Beyond RC4 for Windows authentication
As organizations face an evolving threat landscape, strengthening Windows authentication is more critical than ever.
www.microsoft.com
December 16, 2025 at 7:12 PM
Im at Bsides London today. I had a tshirt printed for the occasion with one of my favourite x-rays so if you see this its me.
December 13, 2025 at 8:15 AM
Reposted by Robin Bradshaw
I’M LOSING MY SHIT THIS IS SO FUNNY
December 11, 2025 at 3:13 PM
Reposted by Robin Bradshaw
This is one of the major reason why backdoors to encryption is insanely dangerous - you can't limit who will be able to access it
NEW: Companies like Apple and Amazon routinely handle requests for sensitive data from law enforcement. You'd figure the rigorous protocols for authenticating those requests would defeat random professional doxers, right? Well ... @davidgilbert.bsky.social has some bad news.
Doxers Posing as Cops Are Tricking Big Tech Firms Into Sharing People's Private Data
A spoofed email address and an easily faked document is all it takes for major tech companies to hand over your most personal information.
www.wired.com
December 12, 2025 at 9:48 PM
Tomorrow is BSides London, I'm particularly looking forward to the talk on Paxton security as it's a system I have played with too cfp.bsides.london/bsides-londo...
Open Sesame – All Your Doors Are Belong To Us BSides London 2025
We have all seen the Hollywood films, The attacker is in the building they swipe a card and its set of the alarms and the guards are coming. The attacker calls down to the hacker in the van. “Unlock a...
cfp.bsides.london
December 12, 2025 at 6:53 PM
I walked past the Duck pond on Beckton corridor an my way to get some food and noticed an annoying high pitched warbleing.
Seen here on the right of the spectrogram. I don't know if its to be shitty to people or if they are trying to keep the ducks and foxes away from each other.
December 11, 2025 at 10:56 PM
Reposted by Robin Bradshaw
This is so friggen cool, I want it
December 8, 2025 at 2:01 PM
Reposted by Robin Bradshaw
Merry Kidsmas: a Christmas fundraiser towards kindergarten shelters🎅

We’re raising $500,000 to equip 61 shelters in preschools near Kharkiv and Zaporizhzhia with modern furniture and equipment.

Let’s make kids feel comfortable this holiday season:
u24.gov.ua/merry-kidsma...
December 5, 2025 at 2:01 PM
Reposted by Robin Bradshaw
Who has made this 🤣
December 7, 2025 at 1:49 PM
Reposted by Robin Bradshaw
Teens are already getting around the teen social media ban by scanning their parents' faces or uploading their ID, after the government was warned that a third of parents were planning to help their kids dodge the minimum age.

www.crikey.com.au/20...
December 3, 2025 at 11:52 PM
@doublepulsar.com the react2shell.com website needs a logo.
React2Shell (CVE-2025-55182/CVE-2025-66478)
react2shell.com
December 4, 2025 at 1:14 PM
Reposted by Robin Bradshaw
It's that giving time of year again, so this is a reminder that no matter how they try to dress it up, the Salvation Army is not a charity.
December 3, 2025 at 1:58 AM
I had a request for a GUI version of SPITkey so I have made a very rough but hopefully functional version its available in the SPITkey_GUI directory of the repo and requires PyQt6 github.com/en4rab/SPITk...
December 3, 2025 at 12:12 AM
@deviantollam.bsky.social I thought you might like to see a fun way to open doors if they are using infrared no touch exit sensors. If you record the signal the sensor is sending and play it back with a high power IR led you can trigger them from a distance or the wrong side of the door.
November 29, 2025 at 4:19 PM
My friend therealshodan suggested X-raying an Evil Crow Cable Wind BadUSB cable so I ordered an A to C cable from AliExpress which has just arrived.
November 25, 2025 at 4:42 PM
When Gemini refused to fix my bad python for an immersive labs challenge telling it how dissapointed i was with its unhelpfulness got it to fix the code for me.
I then solved it with curl as that was easier lol
I redacted it as its partly the solve for a lab
November 25, 2025 at 12:50 AM
Reposted by Robin Bradshaw
My new design for an IACR logo.
November 22, 2025 at 9:33 PM
Name a black and white film. www.youtube.com/watch?v=OTg3...
November 22, 2025 at 7:06 PM
Reposted by Robin Bradshaw
Happy anniversary to the Max Headroom incident, the greatest example of signal hijacking.

en.wikipedia.org/wiki/Max_Hea...
November 22, 2025 at 1:17 PM
My SipeedIO SLogic 16U3 just arrived! I will have to drag out the test Dell to try it with sniffing bitlocker keys
November 21, 2025 at 3:27 PM
I wanted some excitement so Upgrade roulette it was. If it went wrong it would brick several bulbs.
It was all good this time but there is about 15 seconds of darkness when you dont know if it will work.
November 21, 2025 at 1:20 AM
A libreSDR B210 which is a clone of an Ettus B210 but with a different FPGA.
This image was taken with it still in its aluminium case. The second image is the bare PCB taken from an AliExpress listing.
November 19, 2025 at 10:03 PM