Tom Van de Wiele
0xtosh.bsky.social
Tom Van de Wiele
@0xtosh.bsky.social
Offensive R&D Lead • Hacker • Advisor • Speaker

Founder & CEO Hacker Minded
https://hackerminded.net
https://www.linkedin.com/in/tomvandewiele/

Cybersecurity, Offensive/Defensive Security, Privacy, Tech & Retro Games

Copenhagen, DK 🇩🇰
Reposted by Tom Van de Wiele
One of my favorite Web 1.0 sites is the “Silicon Zoo”.



Microscopic images of easter eggs hidden in CPUs. It’s way weirder than you’d expect. 



Sonic, the Space Shuttle...and a wedding invitation?
September 18, 2025 at 6:46 AM
Reposted by Tom Van de Wiele
Danish Minister of Justice: "We must break with the totally erroneous perception that it is everyone's civil liberty to communicate on encrypted messaging services."

get rekt, fascist.

mastodon.social/@chatcontrol...
Fight Chat Control (@chatcontrol@mastodon.social)
Attached: 1 image Danish Minister of Justice and chief architect of the current Chat Control proposal, Peter Hummelgaard: "We must break with the totally erroneous perception that it is everyone's c...
mastodon.social
September 15, 2025 at 8:33 AM
Hacker chique LoRa pager, of course sold out already. But makes me want to make my own LoRa mesh chat device using meshtastic or a similar stack.
hackerpager.net
The Hacker Pager | exploitee.rs
hackerpager.net
July 27, 2025 at 8:05 AM
Reposted by Tom Van de Wiele
Wow, YouTube is actually doing the right thing here: gulfnews.com/technology/y...
Why thousands of YouTube videos are about to lose money
The big question for content creators: Will your videos still pay?
gulfnews.com
July 10, 2025 at 6:18 AM
AI voices need to identify themselves as such, so the other party knows they are talking to a software robot. If we know we are talking to a robot, we absolutely do not need AI voices doing emotional vocalisations, or even worse: vocal fry or uptalk. Instant tab close and laptop slam.
July 3, 2025 at 11:06 AM
Reverse engineering Wipeout 2097 PSX models + animation = best 90s screensaver ever phoboslab.org/wipeout/
WipEout (PSX) – Model Viewer
phoboslab.org
June 28, 2025 at 12:20 PM
For those of you considering paying for @GoogleAI Gemini Pro to try out Veo2: you get 4 videos per day. By the time you figure out how prompts work you are done for today i.e. don't bother and find another service.
June 26, 2025 at 7:55 AM
MS Teams Presence Logging for recon, social engineering and phishing campaign planning. Easily extendable with your own API or workflow to do pattern frequency analysis and find out when individuals or teams are e.g. in recurring meetings.

github.com/0xtosh/Teams...
June 25, 2025 at 2:26 PM
FULLY anonymized
STRICTLY forbidden
HIGHLY sensitive
TOTALLY secure
FULLY compliant
PERFECTLY legal

If you want to find the path of least resistance when it comes to security, threat modeling and intrusion testing: follow the attack path with hyperbolic language that is trying to overcompensate.
June 19, 2025 at 9:26 AM
With the on-going Internet and energy outages in Iran, I can only really think about the last 3 mins of the "Zero Days" documentary where the combined internal sources virtual person being interviewed stated that capabilities had already been deployed in Iran for 8+ years.
youtu.be/Fqk_VUMzY_M?...
Zero Days [ STUXNET worm documentary, 2016]
YouTube video by Andy Moore
youtu.be
June 17, 2025 at 3:51 PM
Reposted by Tom Van de Wiele
Why does the network backbone of Telegram matter?

Because as @pwnallthethings.bsky.social was pointing out in 2022 (www.pwnallthethings.com/i/86455222/t...), Telegram's in-house TLS replacement provides a cleartext permanent device ID!

The network can follow users across WiFis, data plans, etc.
June 13, 2025 at 4:56 PM
Don't do this
June 10, 2025 at 7:55 PM
Reposted by Tom Van de Wiele
Rest in Peace, Bill Atkinson.

Hard to overstate the massive influence Bill's work had over me, and the way we all use computers today.

From his work on the Macintosh, to HyperCard, Bill was a pioneer of merging art & technology.
June 7, 2025 at 6:40 PM
It seems that most the popular LLMs start going into infinite loops after a context of 2500 lines of code with heavy dependencies and then just... stop.
June 8, 2025 at 1:58 PM
Reposted by Tom Van de Wiele
30 telecoms masts AND ~15 various electrical grid units have been sabotaged last months in south-east Sweden.

The sabotages are concentrated along highway E22, ie one of the main routes needed to reinforce Gotland in case of conflict. Ports are along this route, with the main one in the middle.
June 6, 2025 at 9:19 PM
Reposted by Tom Van de Wiele
PHRACK special edition HaRDCov3R (#71.5) to be released at recon.cx (@reconmtl.bsky.social‬)

27th - 29th of June. Meet us at REcon.

Contains one 0day article from the upcoming 72 release, +unpublished 71 article, +classics and the Intro by REcon's own Hugo Fortier ❤️
June 6, 2025 at 9:11 AM
Key exchange and encryption protocol for AI agents using gg-wave/Gibberlink: www.youtube.com/watch?v=m59y...

Source by Anton Pidkuiko based on ggwave library by Georgi Gerganov at github.com/anton10xr/gi...
GitHub - anton10xr/gibber-mcp: Tiny MCP server with cryptography tools, sufficient to establish end-to-end encryption between LLM agents
Tiny MCP server with cryptography tools, sufficient to establish end-to-end encryption between LLM agents - anton10xr/gibber-mcp
github.com
June 3, 2025 at 7:49 AM
I miss payphones.
June 2, 2025 at 4:37 PM
Turning Portal 2 into a webserver. What.
www.youtube.com/watch?v=-v5v...
Turning Portal 2 into a Web Server
YouTube video by PortalRunner
www.youtube.com
May 27, 2025 at 11:50 AM
If someone at AMD or Microsoft could solve the AMD fTPM stutter bug that would be great.
May 18, 2025 at 9:09 AM
This was a fun trip down Internet memory lane
neal.fun/internet-art...
May 15, 2025 at 7:18 AM
Reposted by Tom Van de Wiele
One way to tell if your new remote hire is a North Korean scammer is to ask how fat is Kim Jong Un www.theregister.com/2025/04/29/n...
There's one question that stumps North Korean fake workers
RSAC: FBI and others list how to spot NK infiltrators, but AI will make it harder
www.theregister.com
May 6, 2025 at 3:00 PM
Reposted by Tom Van de Wiele
NEW: TeleMessage, the Signal knockoff used by Mike Waltz and potentially other gov officials to archive group chats in plaintext, has suspended all services after it was hacked *at least twice.* @404media.co reported a hack last night; a different hacker also broke in and gave me evidence.
TeleMessage suspends services after hackers claim breach
The app was seemingly used by Mike Waltz in last week's cabinet meeting, according to a photograph published by Reuters.
www.nbcnews.com
May 5, 2025 at 7:05 PM
Reposted by Tom Van de Wiele
I genuinely don't know who needs to hear this — everyone, maybe? — but if a billionaire (or anyone, for that matter) offers to put your iris scans on the blockchain, run as fast and as far as you can.

This man shouldn't be let anywhere near an internet connection, let alone people's biometric data.
Sam Altman's World unveils a mobile verification device | TechCrunch
Tools for Humanity, the startup behind the World human verification project, unveiled a mobile verification device and expanded to the US.
techcrunch.com
May 1, 2025 at 1:14 PM
Reposted by Tom Van de Wiele
Microsoft is clearly listening to concerns from European governments, who are suggesting companies should find alternatives to American AI and cloud solutions.

There is a fear the US government could pull the plug on systems that we rely on for almost everything we do.
Microsoft announces new European digital commitments - Microsoft On the Issues
As a multinational company, Microsoft believes in trans-Atlantic ties that promote mutual economic growth and prosperity.
blogs.microsoft.com
April 30, 2025 at 4:24 PM