Skip to content
Laser Fault Injection Vulnerability in RP2350 Microcontroller

Laser Fault Injection Vulnerability in RP2350 Microcontroller

First seen 18 Sep 2026, 17:54 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 18, 2026 at 18:54 UTC
  • Ledger Donjon exploited RP2350's Secure Boot using laser fault injection.
  • The attack requires $250,000 in lab equipment and physical access to the chip.
  • Raspberry Pi acknowledged the vulnerability but deemed it non-critical for a chip respin.

Researchers from Ledger Donjon successfully exploited a vulnerability in the RP2350 microcontroller, allowing them to bypass its Secure Boot feature and access secret data stored in One-Time Programmable (OTP) memory. This attack utilized photon-emission microscopy and laser fault injection techniques, requiring approximately $250,000 worth of specialized equipment and physical access to the chip. The RP2350's security features, including secure boot and permanent debug-disable settings, were designed to prevent such exploits. However, the researchers demonstrated that targeted laser pulses could manipulate specific registers to restore debug access. Raspberry Pi acknowledged the findings and confirmed that while the vulnerability exists, it does not warrant a respin of the chip due to the attack's destructive nature and high resource requirements. The RP2350 Hacking Challenge initiated by Raspberry Pi aimed to encourage researchers to test the security of the microcontroller, leading to this discovery. The current status indicates that while the vulnerability is known, it requires significant resources to exploit effectively.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2024-08-01
RP2350 microcontroller launched
Raspberry Pi introduced the RP2350, featuring enhanced security capabilities.
Raspberrypi
2024-08-01
RP2350 Hacking Challenge launched
Raspberry Pi initiated a challenge to test the security of the RP2350 microcontroller.
Raspberrypi
2026-09-18
Ledger Donjon discloses RP2350 exploit
Researchers revealed a method to bypass Secure Boot using laser fault injection, accessing OTP memory.
News.Ycombinator
2026-09-18
Raspberry Pi responds to findings
Raspberry Pi acknowledged the exploit but stated it does not require a chip respin due to its destructive nature.
Raspberrypi

More articles in this cluster (5)

Following this threat?

Track Ledger Donjon in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed