RSSAmplifier

Blog

Home on Dan [the] Salmon

Recent content in Home on Dan [the] Salmon

danthesalmon.comRSS feed ↗94 posts

Latest posts

Exploiting vulnerabilities in Johnson & Johnson web apps

https://eaton-works.com/2026/06/24/jnj-webapp-hacks/

Re//verse 2026: Hacking the Xbox One by Markus Doom Gaasedelen

https://www.youtube.com/watch?v=FTFn4UZsA5U

Ghost Calls - Abusing Web Conferencing for Covert Command & Control

https://www.youtube.com/watch?v=YVoF_mI8MIw

Talks

2026 # From User to Operator: How to Run a Tor Relay and Defend Online Freedom SecretCon. June 5 Slides 2025 # Prioritizing Internal Pentests: so much to hack, so little time SecretCon. June 19 Video 2019 # miniprint - A Medium Interaction Research Honeypot Colloquium on Information Assurance, Cybersecurity, and Management. May 24 Slides

I Spoke at SecretCon 2026

I spoke a few weeks ago at SecretCon! I meant to put up a post about it ahead of time, but I had a lot of work to do getting the slides in order that it didn’t happen. This is the second year in a row I have given a talk there - you can read about last year’s talk here . This year’s talk was about running Tor relays, something I’ve done for a few years but haven’t…

TIL About Redirection in Bash

This week, my team was cooperatively working on hacking an Ubuntu machine on HackTheBox and got to the point of exploiting a Command Injection vulnerability. Naturally, my first suggestion was to pop over to revshells to quickly get a reverse shell payload we could copy/paste. After starting a listener on the attacker machine, we grabbed the first Bash reverse shell entry labelled Bash -i : sh -i…

A Tale of Two Leaks: How Hackers Breached the Great Firewall of China

https://media.ccc.de/v/39c3-a-tale-of-two-leaks-how-hackers-breached-the-great

DEF CON 33 - Killing Killnet

https://www.youtube.com/watch?v=wVY47hNzgJk

WHY 2025 - How to become your own ISP

https://www.youtube.com/watch?v=raHBq0rUdJQ

WOOT 25 - Bluetooth Security Testing with BlueToolkit: a Large-Scale Automotive Case Study

https://www.youtube.com/watch?v=NF11JolTMwo

DEF CON 33 - Modern Odometer Manipulation

https://www.youtube.com/watch?v=FYHvL8V_m-Q

DEF CON 33 - Emulating Embedded Linux Devices at Scale w LightTouch Firmware Rehosting - S Polke

https://www.youtube.com/watch?v=f-LTMUFQzjQ Really great talk about a very interesting problem: creating VMs that can run unmodified device firmware to emulate complicated devices like routers.

DEF CON 33 - RF Village - McJumpBox Leveraging free corporate Wifi for fun and profit - Lozaning

https://www.youtube.com/watch?v=RpkYQDaEKMo

BruCON 0x11 - Our Time in a Product Review Cabal and the malware and backdoors that came with it

https://www.youtube.com/watch?v=aBsf75c1zqw

Prepared Statements? Prepared to be vulnerable

https://blog.mantrainfosec.com/blog/18/prepared-statements-prepared-to-be-vulnerable

RomHack 2025 - James “albinowax” Kettle - HTTP/1.1 Must Die! The Desync Endgame

https://www.youtube.com/watch?v=zr5y6Bapbnw

SQL Injection Isn't Dead: Smuggling Queries At The Protocol Level

https://www.youtube.com/watch?v=N1FAOb1krBk

Don't Trust, Verify! - How I Found a CSRF Bug Hiding in Plain Sight

https://www.youtube.com/watch?v=1bj7hg3FlQo

DEF CON 33 - Kill List: Hacking an Assassination Site on the Dark Web - Carl Miller, Chris Monteiro

https://www.youtube.com/watch?v=cYZmRp90hss Also explored in this episode of Darknet Diaries

HEXACON2024 - Caught in the wild: past, present and future by Clem1

https://www.youtube.com/watch?v=2zrcemxCg4Y

DEF CON 33 - DDoS: The Next Generation - Andrew Cockburn

https://www.youtube.com/watch?v=VlOUGECw6kc

DEF CON 33 - Unmasking the Snitch Puck: IoT surveillance tech in the school bathroom - Reynaldo, nyx

https://www.youtube.com/watch?v=WCnojaEpF2I

DEF CON 33 - RF Village - So What The Heck Is This Radio Stuff Anyway - Exploding Lemur

https://www.youtube.com/watch?v=v76lYD5odfA

Breaking Multi-Tenant Isolation in Heroku Postgres

https://allistair.sh/blog/breaking-heroku-postgres/

DEF CON 33 - RF Village - Warflying in a Cessna, Part II -Matthew Thomassen, Sean McKeever

https://www.youtube.com/watch?v=KwI2daso3ug

RomHack 2025 - Philippe Caturegli - Internal Domain Name Collision 2.0

https://www.youtube.com/watch?v=yFeYiWqQ6RE

Don’t look up: There are sensitive internal links in the clear on GEO satellites

https://app.media.ccc.de/v/39c3-don-t-look-up-there-are-sensitive-internal-links-in-the-clear-on-geo-satellites

Fixing Voyager: How NASA Restored Communications with Voyager 1 from Across the Solar System

https://www.youtube.com/watch?v=wpA8NBzzy00

From Silicon to Darude Sand-storm: breaking famous synthesizer DSPs

https://media.ccc.de/v/39c3-from-silicon-to-darude-sand-storm-breaking-famous-synthesizer-dsps

39C3 - Hacking washing machines

https://www.youtube.com/watch?v=Q1S-PVo3GlA

RomHack 2025 - Leon Jacobs - 7 Vulns in 7 Days: Breaking Bloatware Faster Than It’s Built

https://www.youtube.com/watch?v=_39UbCePFfw

DEF CON 33 - One Modem to Brick Them All -Vulns in EV Charging Comms - Jan Berens, Marcell Szakaly

https://www.youtube.com/watch?v=SQz4nySj4hg

ZFS on Proxmox: Performance and Efficiency Best Practices

https://www.youtube.com/watch?v=6Kw901oqxI8

Fun-reliable side-channels for cross-container communication

https://h4x0r.org/funreliable/

Expanding a Zpool One Disk At a Time

While discussing some benchmarks I ran on the zpool in my Proxmox server, it was suggested that the SSDs backing the pool were severely bottlenecking performance. The pool consisted of 4x WD Blue 1TB SATA SSDs which I chose years ago for budget reasons. After doing some research on the benefits of upgrading from consumer to enterprise SSDs - lower latency and higher endurance to name two - I…

HOPE XV (2024): The History of Leaks

https://www.youtube.com/watch?v=pH_4pgoCHDQ

JawnCon0x1 - BusySignal - WarDriving: A Brief History Through Today

https://www.youtube.com/watch?v=o-rsKWodGvA

Eavesdropping on Internal Networks via Unencrypted Satellites

https://satcom.sysnet.ucsd.edu/

How to trade your $214,000 cybersecurity job for a jail cell

https://arstechnica.com/security/2025/11/fbi-arrests-ransomware-clean-up-experts-for-planting-ransomware/

DEF CON 33 - Stories from a Tor dev - Roger arma Dingledine

https://www.youtube.com/watch?v=djM70O0SnsY

Wanted to spy on my dog, ended up spying on TP-Link

https://kennedn.com/blog/posts/tapo/

Full M18 Diagnostics Revealed

https://youtu.be/tHj0-Gzvbeo

RF Village Tactical Flipper Zero: You Have 1 Hour and No Other Equipment

https://www.youtube.com/watch?v=gm1ZAjmdHzA

Wrap Up: The Month of AI Bugs

https://embracethered.com/blog/posts/2025/wrapping-up-month-of-ai-bugs/ This a fantastic collection of vulnerabilities found in AI tools. I will definitely be referring to these write-ups the next time I have an LLM app to pentest.

Oops, No Victims: The Largest Supply Chain Attack Stole 5 Cents

https://www.securityalliance.org/news/2025-09-npm-supply-chain

Blowing Up Gas Stations For Fun And Profit

https://www.youtube.com/watch?v=AybRhz56NCk by Pedro Umbelino at hack.lu

Pre-Auth RCE Chains in Commvault

https://labs.watchtowr.com/guess-who-would-be-stupid-enough-to-rob-the-same-vault-twice-pre-auth-rce-chains-in-commvault/

Exploiting CodeRabbit: From PR to RCE and Write Access on 1M Repos

https://research.kudelskisecurity.com/2025/08/19/how-we-exploited-coderabbit-from-a-simple-pr-to-rce-and-write-access-on-1m-repositories/

Kona EV: no more Bluelink

https://techno-fandom.org/~hobbit/cars/ev/offnet.html

Intel Outside: Hacking every Intel employee and various internal websites

https://eaton-works.com/2025/08/18/intel-outside-hack/