Hacking the AMX NXA-WAP250G Access Point (with a Raspberry Pi)

A post on the (aptly named) /dev/ttyS0 device hacking blog entitled "Reverse Engineering Serial Ports" reminded me that I had an AMX NXA-WAP250G Wireless Access Point that I’d been meaning to investigate for some time. I thought I’d document the process I went through while reverse enginee[......]

Read more

Scraping Google Related (with bonus PageRank)

While using Google Related some JSON formatted data is requested from Google about each page you visit; that data comes from a URL similar to the one below:

https://toolbarqueries.google.com/tbr
     ?client=navclient-auto
     &features=GR
     &ch=8e991fe19
     &q=info:http%3A%2F%2Fwww.bronco.co.uk%2F
     &oe=UTF-8
     &grv=0.6.9

(split over several lines for readability)

The response is much too wordy for me to paste here, but what jumped o[......]

Read more

Cyber Security Challenge Cipher Solution

I was pointed to the Cyber Security Challenge earlier this week, and eventually stumbled upon the cipher they offer as an “immediate opportunity to test your skills”. Despite not really understanding the point of the exercise or how it related to the other competitions mentioned, I was pleased to se[......]

Read more

MacBook Pro vs. Ash Cloud

Or “Things you don’t want to see when tracking the delivery of your shiny new toy”

LocationDateLocal TimeDescription
KOELN (COLOGNE), DE04/18/20103:20 P.M.PACKAGE DATA PROCESSED BY BROKERAGE. WAITING FOR CLEARANCE / RELEASED BY CLEARING AGENCY. NOW IN-TRANSIT FOR DELIVERY
SHANGHAI, C[......]

Read more

Twitter Exploit Still Not Fixed

Sigh.

I wrote another article on Dave Naylor’s blog about the XSS exploit I found yesterday. It seems they’ve made a pretty amateurish attempt to fix the issue, completely missing the massive problem staring them in the face. It seems to be picking up a bit more traction today – I’ve even been qu[......]

Read more

Page 1 of 212