French RF security experts since 2011

We audit what nobody can see.

Every other part of your product gets reviewed. The radio link gets a datasheet and the benefit of the doubt. That gap is where we work, and it is the one an attacker reaches without touching your network.


Where we get in.

An abridged list of the technologies we assess and what usually turns out to be wrong with them. If your stack is on it, we have broken one before.

TechnologyWhat usually fails
2G / 3G / 4G / 5G networksDowngrade paths left open, core interfaces exposed to subscriber traffic, filtering that differs from one operator to the next
Private 5G and OpenRANFlat trust between radio and core, management APIs reachable from the radio side
Wi-Fi (WPA2, WPA3, EAP)Enterprise EAP misconfiguration, evil-twin credential capture, crashes under stack fuzzing
Bluetooth and BLEPairing shortcuts, unauthenticated GATT writes, devices that trust anything already bonded
RFID and NFC access controlCloneable credentials, replayed opens, readers that verify nothing at all
LoRa and industrial radioPlaintext telemetry, forged commands, join procedures with no rate limiting
Automotive and V2XBus access reached over a radio path, key-fob relay, abuse of the charging-station link
Firmware and hardwareDebug ports left live, unsigned updates, secrets sitting in flash

Two ways to hire us, and a catalogue of kit.

Services

Have it tested

We attack the system the way someone else would, from the outside in, and give your engineers the exact path we took.

Pentest and Red Team over the air and on siteSecurity audits before release or certificationVulnerability research up to CVE-grade findingsR&D custom tooling and testbeds
Scope an assessment
Trainings

Train your team

Twelve hands-on courses taught by the author of RF Swift. Live with hardware, on demand, or built around your own stack.

Live sessions on your site or at a conferenceHardware kit with every live classOn-demand classes through the HackademyRegistered French training centre ID 11788588278
Book a training
15 years
of wireless and hardware security research, published
12
courses across live, on-demand and tailored formats
RF Swift
the open-source SDR toolbox we wrote and teach from
Paris
offices near Paris, engagements across Europe and beyond
Lab or training photo, dark background
Why us

The tools are public. So is the research.

Penthertz was founded by Sébastien Dudek, a trainer since 2009 and the author of RF Swift, the open-source SDR toolbox we run on every engagement. The published work covers 5G and OpenRAN security, baseband fuzzing, interception and mapping, and power-line communication in electric vehicles and charging stations.

Founded
Penthertz Consulting, France. RCS Nanterre 881 000 079
Training centre
Officially registered, ID 11788588278. Invoices are fundable
Open source
RF Swift, the SDR toolbox behind our assessments and courses
Teaching since
2009, across RFID, Wi-Fi, SDR and industrial communications

Seen in public, 2026.

Trainings you can book a seat at, and the talks that come out of the same research.

All trainings
Nov 16-18, 2026Hardwear.io NL 2026SDR Hacking Advanced: reversing and exploiting wireless communicationsTraining

Latest from the blog.

All posts →
Post image, dark background
Sep 2026
Hello world!

Welcome to WordPress. This is your first post. Edit or delete it, then start writing!

1 min Read →
Hello world!
Post image, dark background
Mobile Mar 2026
What a subscriber context can still reach

Without proper routing and filtering of subscriber communications, sensitive assets on an operator infrastructure stay exposed, core network services among them. Operators…

2 min Read →
What a subscriber context can still reach
Post image, dark background
Trainings Feb 2026
Teaching radio remotely without degrading it

The platforms we tested and the TEACHertz infrastructure behind high-definition remote courses for radio and hardware work.

1 min Read →
Teaching radio remotely without degrading it

Tell us what transmits. We will tell you what it leaks.

One call to scope it, a fixed proposal after. Intrusion tests, vulnerability hunting, fuzzing, testbeds, trainings. Offices near Paris, Mon to Fri 09:00 to 19:00.

Request a quote +33 1 73 13 82 77 contact@penthertz.com