BSides Des Moines 2026 · United States · 2026

BSides Des Moines 2026 Badge

Iowa CH585 RISC-V NFC badge with village-collection CTF

An official BSides Des Moines 2026 badge documented by the iot-pwn bsidesdsm26 repository as a WCH CH585 RISC-V board with an integrated ISO 14443A NFC reader, four SK6812 RGBW LEDs, a main control button, audio, and a three-layer CTF with two static flags, an eight-tag village-collection challenge, and a hash-based unlock, for the June 13, 2026 edition in Ankeny, Iowa.

EventBSides Des Moines 2026
SeriesBSides Des Moines
LocationAnkeny, Iowa
CountryUnited States

People

Authors & Credits

badge firmware developer

dbisu

Recognized BSides badge developer credited in the bsidesdsm26 commit history for the initial badge firmware and the conference consolidation merge.

Source

badge firmware repository publisher

iot-pwn

Publisher of the GPL-2.0 bsidesdsm26 badge firmware repository with the conference-day development trail and flash station provisioning tooling.

Source

event publisher

BSides Des Moines

Official publisher of the 2026 Des Moines Security BSides edition in Ankeny, Iowa.

Source

Why It Mattered

It adds the Des Moines Security BSides lineage to the North American badge map with a GPL-2.0 firmware repository and a richly documented NFC-driven CTF, while keeping the physical form factor, power source, and image withheld because the repository is firmware-only and carries no image assets.

Hardware

The badge uses a WCH CH585 RISC-V microcontroller with an integrated ISO 14443A NFC reader, four SK6812 addressable RGBW LEDs on PB6, a main control button on PB23 with tap and hold gestures, an optional boot or recovery button on PB22, a square-wave audio tone generator on PB0, and a USB-CDC serial console, per the GPL-2.0 firmware source. No hardware design files, PCB layout, power source, or physical form factor are present in the firmware-only repository.

Software & Apps

The firmware implements a three-layer CTF: two static flags (a plaintext constant and a Ghidra-disassembleable byte-assembled string), an eight-tag NFC village-collection challenge that maps scanned UIDs to eight village and event markers and lights all four LEDs blue when all eight are collected, and a hash-based unlock that celebrates a specific UID-derived combination. A BOOTSEL USB-CDC command jumps into the WCH ISP bootloader for reflashing, and the firmware encodes eight village markers matching a con floorplan.

Lore

BSides Des Moines is the Iowa Security BSides chapter, and the 2026 edition ran June 13 in Ankeny, Iowa. The badge firmware was developed by iot-pwn with conference-day commits and a bulk badge-provisioning flash station, and the repository credits dbisu, Aask42, and wrickert among the commit authors. The event site itself does not publish badge specifications, so the badge record leans on the public repository and its conference-day development trail.

Source-backed hardware metadata

Technical Profile

Structured technical signals seeded from public badge documentation, repositories, schematics, firmware notes, or event evidence. These fields are designed for filtering, API use, repair planning, preservation, and future Companion Gear matching.

Artifact type

  • Electronic badge documented

    The iot-pwn repository documents an electronic BSides Des Moines 2026 badge.

    Signal source

MCU / compute

  • CH585 documented

    The firmware documents a WCH CH585 RISC-V microcontroller.

    Signal source

Radio / wireless

  • NFC documented

    The CH585 integrates an ISO 14443A NFC reader.

    Signal source

Protocols

  • ISO14443A documented

    The firmware implements an ISO 14443A NFC reader with REQA, WUPA, anticollision, and RATS.

    Signal source

Connectors

  • USB-C documented

    The firmware exposes a USB-CDC serial console.

    Signal source

Display / visual output

  • SK6812 RGB LEDs documented

    The firmware documents four SK6812 addressable RGBW LEDs on PB6.

    Signal source

Repair, preservation, and legal lab context

Companion Gear

Parts, tools, and supplies that match this badge's documented hardware, protocols, or preservation needs. These are category-level recommendations, not compatibility guarantees.

Lab401 exact

NFC / RFID Test Cards

Cards and tags for legal lab use, owned test cards, documentation, and protocol exploration.

Why this matches

This badge has documented NFC/RFID or card-protocol signals. Matched technical signals: NFC, ISO14443A.

Matched evidence

For legal lab use, owned test cards, documentation, and protocol exploration.

Open vendor search

Vendor link · selected for technical relevance

Lab401 likely

NFC Field Detector Cards

Passive tools for non-invasive NFC field presence checks and documentation.

Why this matches

Field detector cards can help document NFC field behavior without modifying the badge. Matched technical signals: NFC, ISO14443A.

Matched evidence

For non-invasive lab observation and documentation of owned or authorized devices.

Open vendor search

Vendor link · selected for technical relevance

Seeed Studio likely

JTAG / SWD Debuggers

Debug probes for ARM/RISC-V badge development, recovery, and documentation.

Why this matches

Debug probes can support authorized recovery, firmware work, and documentation for microcontroller badges. Matched technical signals: CH585.

Matched evidence

Use only with hardware you own or are authorized to debug, repair, or document.

Open vendor search

Vendor link · selected for technical relevance

Seeed Studio likely

Serial Debug Adapters

USB serial adapters for logs, recovery, and firmware documentation workflows.

Why this matches

This badge has a documented microcontroller platform where serial logs or flashing workflows may be relevant. Matched technical signals: CH585.

Matched evidence

Useful for development, repair, recovery, and documentation of hardware you own or are authorized to work on.

Open vendor search

Vendor link · selected for technical relevance

Lab401 generic

Faraday Sleeves

Storage and handling supplies for RFID/NFC cards used during badge documentation.

Why this matches

Useful for storing and labeling owned NFC/RFID test cards used during badge documentation. Matched technical signals: NFC, ISO14443A.

Matched evidence

Useful for controlled storage of owned cards and test artifacts.

Open vendor search

Vendor link · selected for technical relevance

Lifecycle

Add-ons & Upgrades

badge challenge officially documented

Eight-tag village-collection CTF

Eight hardcoded 4-byte UIDs map to village and event markers (HW Village, Talks1, Talks2, Solder Village, Blue Team, Vendor, CTF, Check-In); scanning a matching tag collects it and lighting all four LEDs blue requires all eight.

Compatibility: BSides Des Moines 2026 Badge

Source
badge challenge officially documented

Static flags and hash unlock

The firmware encodes two static flags (a plaintext constant and a Ghidra-disassembleable byte-assembled string) plus a hash-based unlock that celebrates a specific UID-derived LED combination.

Compatibility: BSides Des Moines 2026 Badge

Source
badge networking officially documented

Integrated ISO 14443A NFC reader

The WCH CH585 integrates an ISO 14443A NFC reader supporting REQA, WUPA, anticollision, RATS, APDU relay, NTAG215 dump, and low-power card detect over the CH585 NFC peripheral.

Compatibility: BSides Des Moines 2026 Badge

Source
badge programming path officially documented

BOOTSEL bootloader backdoor

Sending BOOTSEL over the USB-CDC serial console jumps into the WCH ISP bootloader for reflashing, complementing the flash station bulk-provisioning tooling.

Compatibility: BSides Des Moines 2026 Badge

Source

Operational history

Issues & Camp Impact

hardware-form-factor gap note

The repository documents the CH585, NFC, SK6812 LEDs, buttons, and audio in firmware but contains no PCB gerbers, KiCad or schematic files, board layout, power source, or physical form factor.

The catalogue records the verified firmware and challenge surface without inventing physical-form-factor, power, or hardware-design details.

Confidence
firmware-only repository
Status
needs hardware archive recovery
Timeframe
2026 badge archive pass
Source note
iot-pwn/bsidesdsm26 repository file tree.
missing rights-cleared image note

No BSides Des Moines 2026 badge image is published because the firmware-only repository contains no image assets and no reusable original badge photo or official upstream raster render with source URL, license or permission basis, attribution, and processing notes has been recovered.

The United States record remains source-backed and image-free rather than copying repository diagrams, screenshots, social media, placeholders, or generated approximations.

Confidence
local project policy
Status
needs licensed original replacement
Timeframe
current catalogue build
Source note
badge.gallery image policy and iot-pwn/bsidesdsm26 repository.

Resources

Sources