Embedded devices are everywhere, from smart speakers to surveillance cameras,and breaking them is as fun as it is messy. In this talk, I’ll walk through how we at InfoSect approach embedded security assessments in the real world, from tearing down unknown hardware to poking firmware until it spills secrets. I’ll also share our journey to Pwn2Own Ireland 2024, where we became the first fully Aussie team to enter any Pwn2Own. We went after three embedded targets and landed two successful exploits, including one on the Sonos Era 300 smart speaker that earned us some cash, a few Master of Pwn points, and a decent adrenaline spike. Expect stories from the prep trenches, firmware curveballs, and a peek into the exploit itself. Whether you’re into embedded testing or just curious how people hack random devices for a living, this talk has something for you.