Profile avatar
evilpacket.net
Not a cog of the machine. Hacker / Farmer. I have a history of building & breaking things. Prev: Code4rena, Okta, Auth0, GitHub, npm, ^lift, &yet, Symantec. Pioneered BlindXSS & DVCS Pillaging npm audit is my fault.
263 posts 815 followers 546 following
Prolific Poster
Conversation Starter

Sun is out. Cat nap mode engage.

Made an insert for a Zippo that holds 2 Yubikeys. If you print one let me know how it fits and which printer you used. Files are available on printables: www.printables.com/model/128385...

Apparently I’m expecting a few hundred people over for coffee someday based on how much space I use up in my cupboards with coffee cups.

Need to get an unpixelated version of that image, because if there's anything that ever needed to be Streisand-effected, this is it.

White and pink spider taking out a pollinator on my Cosmic Crisp tree. 🌱

This was a slide in some HIPAA compliance training I took this morning.

If there's one thing I've learned about covering cybersecurity over the past decade or so, is that the cybersecurity community (the fixers and breakers) and the cybersecurity industry (profits above all else) are two very, very different things.

Think you’ve seen every OS command injection trick? Think again, read our latest blog post! Link in the comments👇

If you say you're a longevity specialist you better be 150+ years old.

I think if you email [email protected] it should reply with OK.

Sunset views from Kuwohi - Great Smoky Mountains National Park. #landscapephotography #sunset #ThePhotoHour #PhotographersUnited

It's gonna...

Our Roosevelt Rhododendron that we call “Roseaveldron” gave us some blooms! 🌱

Do my job for me; If you had to recommend a pentest agency who would you recommend and why? Go ahead shill yourself or your friends.

@elcannibal.bsky.social how did the hotel chili turn out?

I ran out of the 8 switch ports I have in my barn 😅 time to upgrade for more ports I guess (more cameras for the piglets we’re hoping come soon)

Tonight was painting with @litmoose.bsky.social Paint a thing without knowing what you are painting. Pick a color for your background and make it a gradient light to dark. Now add some ground at the bottom. Now draw a green box. Next add happy little wheels to the box. Oh no your box is on fire.

Exactly. By definition, you cannot deport a citizen.

me thinking the honeypot got a hit... nope that was my own scanner. 😅 Just going to ^5 myself and go back to yardwork.

Found out that graduation plans conflict with Hackboat so I guess I'll miss that another year.

Working on a DEF CON CFP for some research I’ve really enjoyed doing over the last year.

We just bought a company. Why? Because vulnerability scanning is fundamentally broken. And I’m tired of pretending it’s fine. We acquired Coana, the best reachability analysis engine on the planet.

Turkey coop build progress. The most difficult part of this is ignoring the turkey screaming over and over again at every noise just out of frame.

Travelling to the US soon? CBP has broad authority to search your devices. Whether you're an American citizen or a visitor, here's a guide on how to protect yourself from phone searches at the US border.

We’ve published an update on the recent #Nodejs test infrastructure incident. Huge thanks to the community & volunteers helping keep things secure 💚 We welcome pentests, but please give us a heads-up via HackerOne or the TSC to avoid disrupting daily ops. nodejs.org/en/blog/vuln...

"How did we fail to see all this"!? Speak for yourself, hoss. Everyone with an ounce of sense was loudly warning about this, only too often to be dismissed as shrill alarmists.

Had a blast at the Bsides Seattle attack / defend ctf. I’ve never played that style and being a team of 1 was hard with that format. Psychoholics ended up 5th and picked up a team member for the second day (ty grind from neg9). Congrats to team sl1ther on the win!

The Holocaust was organized on IBM punch cards. Hitler gave the head of IBM, Watson, a medal for his services. Later, they named their AI tech after him. Anyway, in unrelated news: #Democracy https://werd.io/2025/doge-is-building-a-master-database-to-surveil-and-track

lol I forgot both my phone and computer charger, guess my first ctf exercise today is to find those 😅

I’m at BSides Seattle today. If you’re here say hi.

🧵 THREAD: A federal whistleblower just dropped one of the most disturbing cybersecurity disclosures I’ve ever read. He's saying DOGE came in, data went out, and Russians started attempting logins with new valid DOGE passwords Media's coverage wasn't detailed enough so I dug into his testimony:

Planted pumpkins in my easement because the pigs love em, and it kinda looks like a few fresh graves 😅

Wish I kept my old cfp submissions. I’ve not been a very good personal data steward.