===== Signet Hardware Password Manager ===== * **Speaker**: Adam * **Room**: 340 * **Time**: Saturday, [[https://pretalx.seagl.org/2026/talk/LXPAAJ.ics|Oct 24th 2:00 – 2:20pm]] * **Format**: Talk (20 minutes) * **Difficulty**: Intermediate * **Track**: Security & Hardware * **Additional Tags**: Open Source Hardware, Password Management, Cryptography, Infosec, Firmware * **Presenter Location**: In-person * **Experience**: Security researcher with 15 years of experience in binary exploitation, 0-days, and cryptography; former software developer and active contributor to open-source self-hosting tools. ==== Description: ==== The Signet Hardware Password Manager serves as a testament to the power and resilience of open-source hardware and software. This session examines the critical vulnerabilities of software-based password managers, demonstrating how a momentary non-root compromise can make them as vulnerable as a plain text file. The presenter will explain how utilizing open-source hardware limits this potential damage and share the project's unusual history—from a successful crowdfunding campaign and the mysterious disappearance of its creator to its revival by a security researcher. The talk will bridge the gap between professional security expectations and common misconceptions regarding AES256 encryption, while also discussing the roles and limitations of FIDO2, passkeys, and 2FA in a modern security posture. Project URL: [[https://hax0rbana.org/signet]] **Target Audience:** * Security researchers and infosec professionals * Open source hardware enthusiasts * Users interested in hardening their password management and system security