Trainings

Twelve courses. Three formats. One page.

Taught by the author of RF Swift, using the same tooling we run on client engagements. Live sessions include the hardware kit. Penthertz is a registered French training centre, ID 11788588278, so the invoice is fundable.

Live

On your site or at a conference

Two to four days, hardware kit included, capped group size. Remote live delivery with the kit shipped ahead is available.

On-demand

Hackademy subscription

The same material at your own pace, updated as the research behind it moves.

Tailored

Built around your stack

Your protocols, your hardware, your threat model. Scoped in a call and quoted per group.

Live 4 days, Intermediate
RF Hacking with SDR

Four days learning software-defined radio applied to security. Rather than only running public tools, you learn how they work and build your own to analyse and attack targeted systems, on the real cases we meet in pentests and Red Teams and on the unknown targets you will meet next.

SDRGNU RadioSIGINTIoT
Full-duplex TX/RX SDR kit included Course outline →
RF Hacking with SDR
Live 3 days, Intermediate
Mobile Hacking with SDR (2G to 5G)

Three days assessing mobile devices and networks with software-defined radio. We demonstrate attacks in practice, mostly on user equipment but also on the core network, across phones, IoT modules, connected cars and infrastructure.

2G-5GBasebandCore network
bladeRF 2.0 micro xA4 kit included Course outline →
Mobile Hacking with SDR (2G to 5G)
Live 3 days, Advanced
5G Radio and Core Networks Hacking

Three days on 5G NSA and SA security: assessing devices, the current and Next-Generation Core Network, and the attack surface OpenRAN brings. Private 5G on unlicensed bands puts campuses and companies on the air, and this course covers the new risks that come with it.

5G SA/NSAOpenRANREST APIs
bladeRF 2.0 mini and lab access included Course outline →
5G Radio and Core Networks Hacking
Live 3 days, Advanced
Practical Core Network Hacking

Three days on the weaknesses of operator core networks: the fundamentals, the interfaces and protocols, and what an attacker reaches from an internal pentest or from the outside during a Red Team. It also helps operators build their own measures by understanding the techniques.

SS7DIAMETER5G core
Lab access included Course outline →
Practical Core Network Hacking
Live 3 days, Intermediate
Red Team OTA: Physical Intrusion Systems

Get into premises stealthily. Three days on the current attacks against RFID, NFC, Bluetooth LE, nRF and sub-GHz systems you meet on pentest and Red Team engagements, so you can tackle access control and the radio links behind it.

RFIDBLEnRFSub-GHz
RF attack kit with targets included Course outline →
Red Team OTA: Physical Intrusion Systems
Live 2 days, Intermediate
Red Team Wi-Fi: Modern Techniques

Two days on the modern way to assess Wi-Fi, closing the gap between obsolete methods and the current state. Start from the basics of old, current and new attacks, then apply them against organisations during a Red Team engagement, based on our recent work.

WPA2WPA36 GHzScapy
Wi-Fi kit and Raspberry Pi 4 target included Course outline →
Red Team Wi-Fi: Modern Techniques
On-demand Self-paced, Beginner
Introduction to RF Hacking with SDR

The entry point to the Hackademy catalogue. Capture, identify and replay your first signals with nothing but an SDR dongle.

SDRFundamentals
Hackademy subscription Course outline →
Introduction to RF Hacking with SDR
On-demand Self-paced, Intermediate
SDR Hacking with GNU Radio

Master the GNU Radio framework for building custom SDR tools: block design, signal processing, and practical receiver and transmitter development.

GNU RadioDSP
Hackademy subscription Course outline →
SDR Hacking with GNU Radio
On-demand Self-paced, Intermediate
Red Team RFID: Open Most of the Gates!

Techniques to clone, emulate and bypass the RFID access control systems used in buildings and facilities.

RFIDNFCCloning
Hackademy subscription Course outline →
Red Team RFID: Open Most of the Gates!
On-demand Self-paced, Intermediate
Red Team OTA (FR): Intrusion Physique RF

Techniques d'attaque OTA pour les opérations Red Team. Cours entièrement en français.

OTAFrench
Hackademy subscription Course outline →
Red Team OTA (FR): Intrusion Physique RF
On-demand 4 courses, self-paced, Intermediate
IoT Hacking with SDR: Full Bundle

The complete SDR-on-IoT path, from a first capture to exploiting industrial and custom radio protocols.

BundleIoTSDR
Best value Course outline →
IoT Hacking with SDR: Full Bundle
Tailored Scoped with you
Private and tailored trainings

Built around your stack: baseband fuzzing, Wi-Fi protocol stacks, advanced RFID and NFC with SDR, hardware attacks on embedded systems, and other technologies.

CustomOn-siteRemote
Quote per group Course outline →
Private and tailored trainings

Need a course that does not exist yet?

Private training content is arranged around your needs: baseband attacks and fuzzing, Wi-Fi protocol stacks, advanced RFID and NFC with SDR, hardware attacks on embedded systems, and other technologies on request. Discounts scale with the number of attendees.

Book a public seat, 2026.

Conference sessions run by us. Registration goes through the event; the content is ours.

Nov 16-18, 2026Hardwear.io NL 2026SDR Hacking Advanced: reversing and exploiting wireless communications

Training a team? Tell us the size and the stack.

We quote per group, not per seat. Sessions run on your site, at our offices near Paris, or remotely with the kit shipped ahead.

Request a quote +33 1 73 13 82 77 contact@penthertz.com