Pengutronix’s cover photo
Pengutronix

Pengutronix

Software Development

Hildesheim, Lower Saxony 782 followers

About us

Pengutronix is an embedded linux support company based in Hildesheim, Germany.

Website
https://www.pengutronix.de
Industry
Software Development
Company size
11-50 employees
Headquarters
Hildesheim, Lower Saxony
Type
Self-Owned
Founded
2001
Specialties
Embedded Linux and Kernel-Entwicklung

Locations

  • Primary

    Steuerwalder Straße

    Hildesheim, Lower Saxony 31137, DE

    Get directions

Employees at Pengutronix

Updates

  • Pengutronix reposted this

    New on Linumiz Tech Talk: Running a Neural Network on the NPU of the NXP i.MX 8M Plus - driven entirely by open source. What does it take to run inference on a vendor NPU with no proprietary blob? In this talk, our engineer SANTHOSH C C walks through the full open-source stack - Mesa, Etnaviv, and the Teflon delegate - that turns the VeriSilicon VIPNano-SI+ into a fully accelerated, INT8-native inference engine. The payoff: ~22x faster inference on MobileNetV1 - from 166.9 ms on the CPU down to 7.67 ms on the NPU - at 30 FPS, all on 100% mainline Mesa 24.1. Inside the talk: a) Why a dedicated NPU matters at the edge - throughput per milliwatt, not just raw speed b) CPU vs GPU vs NPU for INT8 inference c) The Gallium3D split that lets an NPU ride graphics infrastructure d) Etnaviv, the reverse-engineered mainline driver for VeriSilicon silicon e) Teflon - the INT8-native, hardware-independent TFLite delegate merged into Mesa 24.1 f) The clean-room reverse-engineering effort that made it all possible Hats off to the upstream work by Tomeu Vizoso, Philipp Zabel, and Ideas On Board that this builds on. If you're working on edge AI, embedded Linux, or open-source graphics/compute drivers, this one's for you. Watch here: https://lnkd.in/ga_sEiKr Linumiz Team: Alexpandi M Parthiban N Saravanan Sekar Karthi Krishna SANTHOSH C C Sanjay V Girinandha M Balaji R.G Thamaraimanalan M GIRUBASHINI GOVINTHARAJ Gopika Ayyappan Samurthika T Bharathiraja Nallathambi #EmbeddedAI #NPU #iMX8MPlus #OpenSource #Mesa #Etnaviv #Teflon #EdgeAI #EmbeddedLinux #TensorFlowLite #Linumiz

  • If you couldn't make the talk - or want to dig deeper - the full write-up is now on our blog. It covers how Secure Boot works on the RK3588, how to enable it with upstream barebox & OP-TEE, where our approach differs from Rockchip's downstream tooling, and what to keep in mind when bringing it to other Rockchip SoCs. https://lnkd.in/erct3A_z

    View organization page for Embedded Recipes

    1,353 followers

    🎙️ Next talk at #EmbeddedRecipes2026! @Michael Tretter is on stage with a highly practical session: "Open Source Tools for Secure Boot on Rockchip RK3588". Secure Boot on the RK3588 has long been hampered by limited documentation and a reliance on closed-source vendor tools. Not anymore. With OP-TEE 4.9.0 and barebox v2026.02.0, it is now possible to enable Secure Boot on the RK3588 using fully upstream, open-source tools — no proprietary Rockchip software required. What this talk covers: 🔐 How to enable Secure Boot on RK3588 with upstream barebox & OP-TEE ⚖️ Differences between the upstream implementation and Rockchip's downstream solution 🔧 Technical insights for adapting the implementation to other Rockchip SoCs 🐧 Using the OP-TEE PTA from Linux or U-Boot A great example of the open-source community pushing back against vendor lock-in — and winning. 💪 #EmbeddedRecipes2026 #EmbeddedLinux #SecureBoot #Rockchip #RK3588 #OPTEE #barebox #OpenSource #Pengutronix

    • No alternative text description for this image
  • Pengutronix reposted this

    🔎 In our latest blog post we dug into a set of OP-TEE & TF-A commits for NXP i.MX 8M and explored how they keep Linux from reading OP-TEE's secure-world memory. OP-TEE is supposed to keep secrets (think software TPM, keys) walled off from the normal world behind Arm TrustZone. Those commits hinted the wall had a hole, so we set out to understand and reproduce it. What our analysis showed: 🕵 A OP-TEE commit from 2024 caught our eye and sent us down a rabbit hole. 🎭 A DDR memory alias sidesteps the TZASC completely. 🧩 Two root causes: OP-TEE didn't enable the TZASC by default, region0 misconfiguration. 🔑 Impact: a compromised Linux can read, or even alter, OP-TEE's key material. 🙏 Credit to Pengutronix for fixing this in TF-A and OP-TEE. Link in the comments. 👇

    • No alternative text description for this image
  • Pengutronix reposted this

    🔎 In our latest blog post we dug into a set of OP-TEE & TF-A commits for NXP i.MX 8M and explored how they keep Linux from reading OP-TEE's secure-world memory. OP-TEE is supposed to keep secrets (think software TPM, keys) walled off from the normal world behind Arm TrustZone. Those commits hinted the wall had a hole, so we set out to understand and reproduce it. What our analysis showed: 🕵 A OP-TEE commit from 2024 caught our eye and sent us down a rabbit hole. 🎭 A DDR memory alias sidesteps the TZASC completely. 🧩 Two root causes: OP-TEE didn't enable the TZASC by default, region0 misconfiguration. 🔑 Impact: a compromised Linux can read, or even alter, OP-TEE's key material. 🙏 Credit to Pengutronix for fixing this in TF-A and OP-TEE. Link in the comments. 👇

    • No alternative text description for this image
  • Pengutronix reposted this

    🎙️ First talk of the afternoon at #EmbeddedRecipes2026! Michael Olbrich is on stage presenting "rsinit — a tiny initramfs toolbox for embedded systems". As embedded systems grow more complex — especially with verified boot requirements — the need for a lightweight and reliable initramfs has never been greater. Existing solutions like the Yocto initramfs-framework come with real drawbacks: large size, slow boot times, and fragile error handling. Enter rsinit: a single-binary initramfs written entirely in Rust, weighing in at less than 200 KiB. Fast, robust, and "just works" for most use cases — while also being flexible enough to use as a library for fully custom builds. Highlights of the talk: 🦀 Why Rust for an initramfs — and why it matters ⚡ Drastically reduced size & boot time compared to existing solutions 🔒 Built with verified boot requirements in mind 🛠️ Extensible features: splash screens, read-ahead, and more — no extra dependencies 🗺️ A look at the roadmap ahead A fresh and elegant approach to a long-standing embedded challenge! #EmbeddedRecipes2026 #EmbeddedLinux #Rust #Initramfs #EmbeddedSystems #OpenSource #Pengutronix

    • No alternative text description for this image
  • Pengutronix reposted this

    🎙️ Next talk at #EmbeddedRecipes2026! @Michael Tretter is on stage with a highly practical session: "Open Source Tools for Secure Boot on Rockchip RK3588". Secure Boot on the RK3588 has long been hampered by limited documentation and a reliance on closed-source vendor tools. Not anymore. With OP-TEE 4.9.0 and barebox v2026.02.0, it is now possible to enable Secure Boot on the RK3588 using fully upstream, open-source tools — no proprietary Rockchip software required. What this talk covers: 🔐 How to enable Secure Boot on RK3588 with upstream barebox & OP-TEE ⚖️ Differences between the upstream implementation and Rockchip's downstream solution 🔧 Technical insights for adapting the implementation to other Rockchip SoCs 🐧 Using the OP-TEE PTA from Linux or U-Boot A great example of the open-source community pushing back against vendor lock-in — and winning. 💪 #EmbeddedRecipes2026 #EmbeddedLinux #SecureBoot #Rockchip #RK3588 #OPTEE #barebox #OpenSource #Pengutronix

    • No alternative text description for this image
  • Pengutronix reposted this

    🎙️ Next talk at #EmbeddedRecipes2026! @Michael Tretter is on stage with a highly practical session: "Open Source Tools for Secure Boot on Rockchip RK3588". Secure Boot on the RK3588 has long been hampered by limited documentation and a reliance on closed-source vendor tools. Not anymore. With OP-TEE 4.9.0 and barebox v2026.02.0, it is now possible to enable Secure Boot on the RK3588 using fully upstream, open-source tools — no proprietary Rockchip software required. What this talk covers: 🔐 How to enable Secure Boot on RK3588 with upstream barebox & OP-TEE ⚖️ Differences between the upstream implementation and Rockchip's downstream solution 🔧 Technical insights for adapting the implementation to other Rockchip SoCs 🐧 Using the OP-TEE PTA from Linux or U-Boot A great example of the open-source community pushing back against vendor lock-in — and winning. 💪 #EmbeddedRecipes2026 #EmbeddedLinux #SecureBoot #Rockchip #RK3588 #OPTEE #barebox #OpenSource #Pengutronix

    • No alternative text description for this image
  • Pengutronix reposted this

    🎙️ First talk of the afternoon at #EmbeddedRecipes2026! Michael Olbrich is on stage presenting "rsinit — a tiny initramfs toolbox for embedded systems". As embedded systems grow more complex — especially with verified boot requirements — the need for a lightweight and reliable initramfs has never been greater. Existing solutions like the Yocto initramfs-framework come with real drawbacks: large size, slow boot times, and fragile error handling. Enter rsinit: a single-binary initramfs written entirely in Rust, weighing in at less than 200 KiB. Fast, robust, and "just works" for most use cases — while also being flexible enough to use as a library for fully custom builds. Highlights of the talk: 🦀 Why Rust for an initramfs — and why it matters ⚡ Drastically reduced size & boot time compared to existing solutions 🔒 Built with verified boot requirements in mind 🛠️ Extensible features: splash screens, read-ahead, and more — no extra dependencies 🗺️ A look at the roadmap ahead A fresh and elegant approach to a long-standing embedded challenge! #EmbeddedRecipes2026 #EmbeddedLinux #Rust #Initramfs #EmbeddedSystems #OpenSource #Pengutronix

    • No alternative text description for this image

Similar pages

Browse jobs