hkatzdev

hkatzdev

7+ day streak

Doing some hackthissite today :)

hackthissite.png

More CORS stuff but hopefully this is the last day because I made my three POCs! Also Insomnia is awesome! This was super helpful for all the post requests I had to do with multipart forms.

post.png

Made a pull request with a hot patch for @luke :) On a more serious note more learning about CORS, this time with the window opener object. Also some un / poorly documented slack blocks and apis - the usual.

Still working on learning more about XSS and the trouble with CORS, tokens, and undocumented APIs. In the meantime have a fun picture on magic bytes, a common way of tricking computers into thinking one type of file is another type.

magicbytes.png

Another solution submitted to foobar

anotherfoo.png

While trying some XSS stuff I learned about httponly tokens

httponly.png

Some more slack reverse engineering (Credit to Hackagotchi for this struct, makes my life easier to not look their the API docs :p)

slackmodel.png

Learning Python List Comprehension for the next Google Foobar Challenge

listcomprehensions.png

Passed lv 1 of FooBar 🎉

pass.png

Outlining what has to be done for the first foobar challenge :)

foostart.png

After seeing @ShiftyBlock's post about Google FooBar, I decided to try it out. Got a bit distracted to see if there are hidden commands but plan on starting tmr :).

foobar.png

My Deno Alert Bot managed to alert me of suspicious activity on the slack - really glad to see it work for a real use case!

bot.png

Monoriting slack websockets for more undocumented events :)

slackws.png

Ran nmap on one of @Kognise's IPs and found some interesting open ports :)

oof.png

Submitted my Summer of Making App! 🎉 :yay:

submitted.png

Learning more about the Ethical Source Movement - ethicalsource.dev

ethical_source.png

Finished some schematics for Summer of Making :)

summer_of_making_schematics.png

Finishing up making a list of all the parts I need for SoM

parts.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

ℍ𝔸𝕏𝔼𝔻 𝒃𝒚 𝕳𝕶𝖆𝖙𝖟𝕯𝖊𝖛 - 𝗷𝗼𝗶𝗻 #𝙨𝙞𝙣𝙠-𝙢𝙮-𝙨𝙝𝙞𝙥

steal.png

Figuring out how to replace the potentiometers in this for SoM

remove.png

Really small but I made a couple of serverside redirects in replit today.

redirect.png