Radio and PodcastRadio and PodcastLive Radio & Podcasts
519: The Password Is All Zeros artwork
Technology

519: The Password Is All Zeros

Embedded by Elecia White

Jan 23, 202601:06:51Technology

Mark Omo and James Rowley spoke with us about safecracking, security, and the ethics of doing a bad job. Mark and James gave an excellent talk on the development of their safecracking tools at DEF CON 33: Cash, Drugs, an...

About This Episode

519: The Password Is All Zeros is an episode from Embedded by Elecia White. Mark Omo and James Rowley spoke with us about safecracking, security, and the ethics of doing a bad job. Mark and James gave an excellent talk on the development of...

Podcast

This episode belongs to Embedded.

Listen Online

Use the player on this page to stream the episode online.

Episode Details

Published Jan 23, 2026, 01:06:51 long, audio available.

Questions About This Episode

What is 519: The Password Is All Zeros about?

Mark Omo and James Rowley spoke with us about safecracking, security, and the ethics of doing a bad job. Mark and James gave an excellent talk on the development of their safecracking tools at DEF CON 33: Cash, Drugs, and Guns: Why Your Safes Aren't Safe . It included a section of interaction involving the lock maker's lawyers bullying them and how the Electronic Frontier Foundation ( EFF ) has a Coders' Rights Project to support security research. As mentioned in the show, the US Cyber Trust Mark baseline has a very straightforward checklist; NISTIR 8259 is the overall standard, NISTIR 8259A is the technical checklist, NISTIR 8259B is the non-technical (process/maintenance) checklist. Roughly the process is NISTIR 8259 -> Plan/Guidance; NISTIR 8259A -> Build; NISTIR 8259B -> Support. We discussed ETSI EN 303 645 V3.1.3 (2024-09) Cyber Security for Consumer Internet of Things: Baseline Requirement and the EU's CRA: Cyber Resilience Act which requires manufacturers to implement security by design, have security by default, provide free security updates, and protect confidentiality. See more here: How to prepare for the Cyber Resilience Act (CRA): A guide for manufacturers . We didn't mention Ghidra in the show specifically, but it is a tool for reverse engineering software: given a binary image, what was the code? Some of the safecracking was helped by the lock maker using the same processor in the PS4 which has many people looking to crack it. See fail0verflow :: PS4 Aux Hax 1: Intro & Aeolia for an introduction. Mark and James have presented multiple times at Hardwear.io , a series of conferences and webinars about security (not wearables). Some related highlights: 2024: Breaking Into Chips By Reading The Datasheet is about the exploit developed for the older lock version on the safes discussed in the show. USA 2025: Extracting Protected Flash With STM32-TraceRip is about STM32 exploits.

Where can I listen to 519: The Password Is All Zeros?

You can listen to 519: The Password Is All Zeros online on Radio and Podcast. Open the player on this page to stream the available audio.

Which podcast is 519: The Password Is All Zeros from?

519: The Password Is All Zeros is an episode from Embedded by Elecia White.

How long is this episode?

This episode is 01:06:51 long.

When was this episode published?

This episode was published on Jan 23, 2026.

Can I save 519: The Password Is All Zeros for later?

Yes. Use the heart button on the episode page to add it to your favorite episodes list.

Are there related episodes from Embedded?

Yes. This page shows related episodes from Embedded when more episodes are available from the podcast feed.

Quick Answers About This Episode

Where can I listen to 519: The Password Is All Zeros?

You can listen to 519: The Password Is All Zeros on this page when the episode audio is available from the podcast feed.

Which podcast is this episode from?

519: The Password Is All Zeros is from Embedded by Elecia White.

What are the episode details?

Published Jan 23, 2026 and 01:06:51 long