Pascal Gujer
@pascal_gujer
security researcher | speaker | trainer | lockpicking | evil maid attacks | maker | https://threema.id/MPK39EB8 | https://infosec.exchange/@evilmaid
🔐 Want to break BitLocker with real tools, not just slides? This is your last chance to grab a spot at early bird pricing for our Breaking BitLocker training at Black Hat USA 2025. Over two intense, hands-on days you’ll: 🧠 Learn how TPM internals work 🪛 Solder onto a real…


🔑 Announcing: International BitLocker Recovery Key Day – July 19th! One year ago, many learned the hard way: If your system fails or TPM states change, you could lose access without your BitLocker recovery key saved offline! Storing keys in Active Directory (AD) is common, but…

Guess what we‘re up to!? 😇 Yes - right - #bitpixie 😎 As part of our #BreakingBitLocker Training in Zurich we train three different attacks against BitLocker TPM-only setups… Next training is @BlackHatEvents in Las Vegas, NV: hos.direct/bhusa25-23aug 🚨only 1 seat left! 🚨…

Got asked for tweezers last weekend—tick emergency while we were out fishing. ✅ Luckily, my first aid kit had everything. Removed the tick. Then came the talk: ticks, FSME, Lyme, vaccines… 🎯 Reminder: • Use fine tweezers • Pull slow, don’t twist • Disinfect • Monitor for…


Archetyp Market – one of the longest-running darknet drug markets with over 600 000 users – is no more. 💻 Infrastructure dismantled 👤 Admin arrested 💰 EUR 7.8M seized Read more in our press release ⤵️ europol.europa.eu/media-press/ne…
🚨 Breaking: The 2nd run of our Breaking BitLocker training at #BlackHatUSA was cancelled. Disappointed? Sure. Defeated? Never. 🔥 Only 3 seats left for the Aug 2–3 session. 🧰 Hands-on. Gritty. Soldering scars included. 🎟️ hos.direct/bhusa25-23aug 🇨🇭 No Vegas? Hit the Zurich…


Hydroph0bia (CVE-2025-4275) PoC - DXE volume takeover on HUAWEI MateBook 14 2023, flashing a patched BIOS with custom boot logo. No user interaction outside of the OS required, SecureBoot and firmware password remain enabled. coderush.me/hydroph0bia-pa…, coderush.me/hydroph0bia-pa…
Got a flat on our Thule Chariot bike trailer. Realized: not just the tube - the whole tyre was done. Lesson? Don’t wait till you’re stranded with kids onboard. 🚲👶 Swapped the tyre, pumped it back up with my fav tool: ➡️ Xiaomi Portable Electric Air Compressor ✅ Up to 10 bar…



Sorry, no dad hack last week — I was busy biking, fishing, and doing what dads do best: fixing problems with whatever’s lying around. 🛠️ We hit a Swiss Grillplatz with the kids. Fire? One match + 100ml burner alcohol + dry wood = 🔥 But: no grill tongs. So I made some. 2…




Most people wait. They wait until they feel ready. Until the fear is gone. Until they know everything. But here’s the truth: you rarely feel ready when it really matters. Readiness isn’t what brings results—#movement is. I recently heard a powerful line: “The people who…

🔧 Dad Hack: Fixing Broken Plastic Parts! When a toy snaps, unleash the secret combo: super glue + baking soda! 🪄 It hardens in seconds and rebuilds missing bits. 🛠️ Tools: drill, key files 😇, precision drivers, super glue, baking soda, plastic wrap 🔁 Process: glue →…



Woow! 🤯😍 Srsly: Looks like SPA and DPA just became cheaper by a factor of 3 😎👍🏻
Whaaaaat logicmso.com
Don’t wait for the wind to change – set your sail. 🚩 At 14, I dreamt of attending #BlackHatUSA. Today, I’m not just attending – I’m an invited trainer. Years of passion, perseverance, and hacking led here. Curious about the full story? Check it out on LinkedIn. #CyberSecurity…

“Why do you always carry a knife?” My great-grandfather told my grandfather: “A real man always carries a knife.” My grandfather told my dad. My dad told me. Now that I’m a dad, I get it. Today, I turned an Ovomaltine bottle into a spill-proof, straw-ready hydration device.…

🔓 Breaking BitLocker: Bitpixie is Back! 🚨 Imagine bypassing BitLocker on a fully updated Windows machine—in under 5 minutes, without opening the device. The Bitpixie vulnerability isn’t new (known since 2022), but it’s resurfaced after Thomas Lambertz’s…

🚀 Cybersecurity Training – What Do You Wish You Knew Before Attending? Before every training, I always ask myself: 💭 “Am I skilled enough to keep up?” Once, I felt lost in a session but didn’t dare to say so – until someone else admitted feeling the same. Turns out, most of…

Spectre v2 is back again! Disclosing "Training Solo": 3 new self-training attack classes, 2 end-to-end exploits, and 2 new hardware issues that break domain isolation even when implemented perfectly. Joint work by @SanWieb @c_giuffrida: vusec.net/projects/train…