Research

What we publish is what we practise.

The work that ends up in a client report is the same work that ends up on a conference stage. Papers, write-ups, recorded talks and the tooling, all in public. Read it before you hire us.

Papers
Publications

Conference and journal material on mobile, radio and embedded security.

Read the papers →
Write-ups
Blog

Findings from live engagements and lab work, in enough detail to reproduce.

Read the blog →
Recordings
Videos

Talks and demonstrations from the conferences we speak at.

Watch →
Sessions
Webinars

One technology, one hour, live, then archived.

See past sessions →

Where the research goes.

Subject areas we have published in, and the systems each one applies to.

All publications
AreaApplies to
5G security, NSA and SAHandsets, IoT modules, private networks, operator cores
Open RANDisaggregated radio access, management interfaces, vendor integration
Baseband fuzzingModems in phones, vehicles, routers and industrial gateways
Interception and mappingCoverage analysis, rogue infrastructure, subscriber exposure
Power-line communicationHomePlug AV, domestic PLC, electric vehicles and charging stations
RFID and physical accessBadge systems, gates, controllers, credential lifecycles
Wi-Fi and short-range radioEnterprise wireless, BLE devices, LoRa and proprietary links
Open source

RF Swift, the toolbox behind all of it.

A containerised SDR toolchain that gets a working radio environment up in one command, instead of an afternoon of dependency archaeology. We wrote it for our own engagements, we teach from it, and it is public.

Terminal or bench shot, dark background

Latest from the blog.

All posts →
Post image
Sep 2026
Hello world!

Welcome to WordPress. This is your first post. Edit or delete it, then start writing!

Hello world!
Post image
MobileMar 2026
What a subscriber context can still reach

Without proper routing and filtering of subscriber communications, sensitive assets on an operator infrastructure stay exposed, core network services among…

What a subscriber context can still reach
Post image
TrainingsFeb 2026
Teaching radio remotely without degrading it

The platforms we tested and the TEACHertz infrastructure behind high-definition remote courses for radio and hardware work.

Teaching radio remotely without degrading it

Tell us what transmits. We will tell you what it leaks.

One call to scope it, a fixed proposal after. Intrusion tests, vulnerability hunting, fuzzing, testbeds, trainings. Offices near Paris, Mon to Fri 09:00 to 19:00.

Request a quote +33 1 73 13 82 77 contact@penthertz.com