Pascal Gujer's Avatar

Pascal Gujer

@evilmaid.bsky.social

security researcher | speaker | trainer | lockpicking | evil maid attacks | maker | https://threema.id/MPK39EB8 | hands-on-security.com

56 Followers  |  42 Following  |  38 Posts  |  Joined: 20.09.2023
Posts Following

Posts by Pascal Gujer (@evilmaid.bsky.social)

This was a really cool and awesome course ❀️! I learned so much in these two days and did a lot of stuff I never did and never heard about before. It was cool when (after some nasty debugging 🫠) the encryption key could finally be sniffed 🀘. Thanks a lot for your training, you guys rock!

31.01.2026 08:44 β€” πŸ‘ 6    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image

Still on the β€œwanting to do this stuff” side? Join our mailing list and get alerted when we host the next hands-on training.
www.hands-on-security.com/#trainings

29.01.2026 09:55 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Video thumbnail

We’re doing it again!
No, not the fancy coffee corner β€” the famous β€œBreaking BitLocker” training you know from @BlackHatEvents is happening right now in Zurich πŸ‡¨πŸ‡­

Can’t wait to see the joy in the participants’ eyes when that key pops up tomorrow πŸ”‘

29.01.2026 09:50 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Hands-On Security Hands-On Security delivers practical cybersecurity training with a focus on hardware, firmware, and physical access attacks. Our flagship course β€œBreaking BitLocker” teaches real-world techniques…

We just launched our YouTube channel!
First Video: 60-seconds on how TPM sniffing breaks BitLocker β€” one of three real attacks trained at our Breaking BitLocker training
Zurich, 29–30 January 2026

More hardware security content is coming soon.
Subscribe & stay tuned:
πŸŽ₯ youtube.com/@hands-on-se...

13.11.2025 22:09 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image Post image Post image Post image

🧠 BREAKING BITLOCKER β€” Early bird CHF 2999 until Nov 3. Seasoned BHUSA course (3 yrs) back in Zurich, 29–30 Jan 2026. Hands-on: TPM sniffing, DMA, bootloader patching, micro-soldering & RAM key extraction. Open to all professionals β€” especially valuable for LEA & forensics.
hos.direct/jan26training

20.10.2025 19:20 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image

β€œPutting all eggs in one basket and all baskets on the Titanic.” - @stefanfrei.bsky.social 🧺🚒

When AWS goes down and takes half the internet with it, maybe it’s time to rethink our basket strategy.

Reuters report: www.reuters.com/business/ret...
AWS status page: health.aws.amazon.com

#AWSOutage

20.10.2025 11:15 β€” πŸ‘ 5    πŸ” 4    πŸ’¬ 0    πŸ“Œ 0
Post image

✈️ Waiting for a flight β†’ todo list created and stuff done βœ…
Used ChatGPT to pull all unfinished projects from our past chats.
Clear head & new focus.
➑️ Stop doomscrolling in downtime.
Try:
πŸ”₯ β€œGo through our past chats and create a todo list with all the projects and unfinished tasks we discussed”

19.09.2025 18:30 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

πŸ”‘ International BitLocker Recovery Key Day – July 19th!

One year ago, many learned the hard way: No offline backup = Locked out!
Don’t get caught off guard – backup your BitLocker keys now!

πŸ’‘ Quick tip:
manage-bde -protectors -get C:

#BitLockerDay #CyberSecurity #Encryption #DataProtection

19.07.2025 05:27 β€” πŸ‘ 3    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

Got asked for tick tweezers while out fishing.
βœ… My Care Plus kit had everything.
🎯 Remove slow, no twist, disinfect.
πŸ’‘ Info: zecken-stich.ch/wie-wird-ein...
πŸŽ’ Kit: www.careplus-shop.de/first-aid-ki...
As a dad, you’re the one they rely on.
#DadHack #legendad #legenddad

21.06.2025 22:05 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Disappointed? Sure.
Defeated? Never.

Now I’ve got two free days in Vegas.
Fishing 🎣? Grand Canyon 🏜️? Hotel room reverse-engineering πŸ› οΈ?
What would you do?

#HackerLife #VegasIdeas

12.06.2025 07:32 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

🚨 Breaking 🚨
Our 2nd Breaking BitLocker session at Black Hat got cut.
Only 3 seats left for the Aug 2–3 run. πŸ”₯
Hands-on. Gritty. Soldering scars? likely.

🎟️ hos.direct/bhusa25-23aug
πŸ‡¨πŸ‡­ No Vegas? Zurich pre-run: hos.direct/jun25training

#BlackHat #CyberTraining #BitLocker

12.06.2025 07:32 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image Post image Post image

Got a flat on the kid trailer.
Not just the tube - tyre was toast too. 😬

Swapped it and used my go-to fix:
the Xiaomi Portable Compressor.
πŸ›  Precise
♻️ Reusable
πŸš— Lives in the car

Way better than COβ‚‚ if you’ve got kids in tow.
πŸ”— amzn.to/45eSolC #ad

#DadHack #BikeLife #Xiaomi #legendad #legenddad

09.06.2025 05:36 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
US $19.23 | Makerbase CANable 2.0 USB to CAN adapter analyzer CANFD slcan SocketCAN CANdleLight klipper US $19.23 | Makerbase CANable 2.0 USB to CAN adapter analyzer CANFD slcan SocketCAN CANdleLight klipper

Lol, ChatGPT struggles a bit with breadboard drawing, but its still pretty impressive… and yes, I use red and green for CAN-H and CAN-L as given by the CANable 2.0 Pro dongle I am using:
s.click.aliexpress.com/e/_EvS01ii

04.06.2025 14:43 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

Spent half a day chasing ghosts on the CAN bus. Logic analyzer showed traffic, but the system was dead silent.
Turns out I forgot the termination resistor β€” the one thing I was told to check first.
Lesson: don’t skip the basics. πŸ§ŒπŸ”§
#CANbus #DebuggingFails #ElectronicsLife

04.06.2025 14:41 β€” πŸ‘ 3    πŸ” 0    πŸ’¬ 3    πŸ“Œ 0
Post image Post image Post image Post image

Forgot the grill tongs at a Swiss Grillplatz.
So I built some β€” 2 sticks + fishing line = DIY spring-loaded BBQ tongs.
Dad Level: πŸ’ͺ
#legendad #legenddad

Full story here: www.linkedin.com/posts/pascal...

#LifeHack #DadHack #DIY

01.06.2025 06:11 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Most people wait.
For clarity. For courage. For the β€œright” time.

But the truth? You'll rarely feel ready.
Movement brings clarity. Not the other way around.

That first step changes everything.

πŸš€ Ready to move?
β†’ Vegas Aug 4-5 hos.direct/bhusa25-45aug
β†’ Zurich Jun 26-27 hos.direct/jun25training

26.05.2025 22:06 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image Post image Post image

πŸ”§ Dad Hack: Fixing Broken Plastic Parts!
Unleash the secret combo: super glue + baking soda! πŸͺ„

πŸ› οΈ drill, key files πŸ˜‡, precision drivers, super glue, baking soda, plastic wrap
πŸ” glue β†’ sprinkle soda β†’ repeat β†’ file/shape
βœ… Done! Hard as stone!

What’s your go-to repair trick? πŸ’¬

#legendad

24.05.2025 09:30 β€” πŸ‘ 3    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

πŸ” Break BitLocker with real tools β€” not slides.
Black Hat USA training, >50% booked. Early bird ends May 23, 11:59 PM PDT.

You’ll:
🧠 Learn BitLocker internals
πŸ“‘ Sniff keys
πŸ₯Ύ Attack Bootloader
πŸ’» Take home a hacked test laptop + logic analyzer

πŸ‘‰ hos.direct/bhusa25-23aug
πŸ‘‰ hos.direct/bhusa25-45aug

22.05.2025 20:06 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
#bitlocker #bhusa #third #trainer #goals #attract #like #magnets… | Pascal G. *Don’t Wait for the Wind to Change – Set Your Sail: My Journey to Becoming a Black Hat Trainer* At 14, I read The Art of Intrusion by Kevin Mitnick and first heard about Black Hat and DEF CON. Fasci...

Don’t wait for the wind to change – set your sail. 🚩
At 14, I dreamt of attending #BlackHatUSA. Today, I’m not just attending – I’m an invited trainer.
Years of passion, perseverance, and hacking led here.
Curious about the full story? ;)
@blackhatevents.bsky.social

hos.direct/kjtyv

20.05.2025 00:17 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

β€œWhy do you always carry a knife?”
My great-grandfather told my grandfather, who told my dad, who told me: β€œA real man always carries a knife.”

Today, I used mine to turn a normal bottle into a spill-proof straw bottle.
Dad Level achieved

What’s your best dad hack?

#LifeHacks #legenddad #legendad

17.05.2025 09:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

πŸ”“ Bitpixie is Back!

Bypass BitLocker in under 5 minutes - no screwdriver needed.
Thomas Lambertz’s talk at 38C3 showed how.

πŸš€ Join our Breaking BitLocker trainings:
β€’ Zurich: hos.direct/jun25training
β€’ BH USA: hos.direct/bhusa25-23aug / hos.direct/bhusa25-45aug

⏰ Early bird ends in 8 days!

15.05.2025 20:42 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

πŸš€ Cybersecurity Training – Feeling lost?

Before every training, I always wonder:
πŸ’­β€œAm I skilled enough?”

Turns out, many of us feel the same! With Breaking BitLocker, we make it easy – from 0 to hero with minimal prerequisites.

Got a funny training story? Let’s hear it!
#CyberSecurity #Training

14.05.2025 14:55 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

@blackhatevents.bsky.social time for a first post on Bsky πŸ˜‰

13.05.2025 15:35 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

πŸš€LocalSend: The Open-Source AirDrop Alternative!

Transfer files over WiFi without internet! Works on Windows, macOS, Linux, Android & iOS.

πŸ’‘Perfect for travel, meetings, or quick file swaps at home. No cables needed!

localsend.org/de/download
github.com/localsend/lo...

#OpenSource #FileSharing

13.05.2025 00:27 β€” πŸ‘ 4    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Post image

🚨 Our first Breaking BitLocker training at Black Hat USA 2025 is 30% SOLD OUT – weeks before early bird ends!

Learn to break TPM-only BitLocker with real hardware & hands-on techniques. Don’t wait – spots are flying!

Aug 2&3:
hos.direct/bhusa25-23aug
Aug 4&5:
hos.direct/bhusa25-45aug

#BHUSA

12.05.2025 20:13 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

And that’s the difference: you’ve clearly been through Dunning-Kruger more than once - and learnt a lot each time. And youβ€˜re surely more than just acting competent πŸ˜‰

25.04.2025 18:45 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

β€œ0-day” LPE - but only works if you know the password?

That’s not a vuln. That’s literally a feature.

Tired of seeing this stuff blindly reposted by folks who can’t tell access control from exploit. We need fewer click-chasers, more professionals.

25.04.2025 18:29 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0
Post image Post image Post image Post image

Easter food for thought 🐣
What if BitLocker isn’t as secure as you think?
We show 3 real-world attacks + mitigations at @blackhatevents.bsky.social #BHUSA 2025.
🧰 TPM sniffing, DMA, BitPixie.
πŸ› οΈ All hands-on. Hardware kit included.
πŸ‡ΊπŸ‡Έ hos.direct/bhusa25-45aug
πŸ‡ΊπŸ‡Έ hos.direct/bhusa25-23aug

17.04.2025 16:07 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Post image

πŸš€ Did you know? You can use Touch ID for sudo on macOS - no more password typing in Terminal

πŸ” Just add this at the top of /etc/pam.d/sudo:
` auth sufficient pam_tid.so`

Next time you run sudo, you’ll get a fingerprint prompt.
That's how sudo should feel in 2025.
#macOS #TerminalTips #DevHacks

28.03.2025 08:50 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0