# dc34-badge-hacking
Four days, one badge, one flag
First DEF CON. Drove out, badge in hand, no security background. Four days later the badge had given up its master key. Here's how it went.
[ok] Day one: found and reported a bug in the badge's official uploader. Then built my own WebUSB uploader, first as a tablet kiosk, then as a browser page anyone could use.
[ok] Detour to the car-hacking village: cleared the full 11-lesson CAN bus course, including brute-forcing a security key in about nineteen minutes. I'd never worked on a car before.
[wip] Not everything landed. A GPU brute-force rig turned out to be the wrong attack and got retired. An AR-glasses back-channel worked in the lab and never made it onto the floor. Both are in the log.
[flag] The turn: instead of brute force, learn how the badge's signing and trust model actually worked. Built an independent path through it and pulled the master key, verified three different ways before trusting it.