Austin 👾👨‍💻
banner
buhosec.org
Austin 👾👨‍💻
@buhosec.org
Making software a bit more secure, one commit at a time
Assuming that this’ll take at most 33 minutes (3 reqs/min, 1 min delay to prevent account lockout, 100 possible passwords), time to knock a couple pages outta this bad boy #infosec #dungeoncrawlercarl
February 3, 2026 at 12:51 AM
Reposted by Austin 👾👨‍💻
In past 24h:

❌ 1-click exploit dropped for #OpenClaw: Simply visiting a URL allowed attacker to steal everything: keys & files + take control of the device. Patched.

❌#MoltBook had a vulnerability exposing all users emails, real names etc. Patched. 1/

Takeaway: all gas, no brakes.
February 2, 2026 at 9:15 PM
Reposted by Austin 👾👨‍💻
Notepad++ compromised in supply chain attack from June to December 2025 by “likely Chinese state-sponsored actor”. notepad-plus-plus.org/news/hijacke...
Notepad++ Hijacked by State-Sponsored Hackers | Notepad++
notepad-plus-plus.org
February 2, 2026 at 11:50 AM
Given that I'm no longer writing microservices as a career (MaaC), I've found myself using Python much more in infosec. I was going through a broken auth lab that required using the X-Forwarded-For header to spoof my IP, and it was *poetic* writing this script to paste into intruder #cybersecurity
February 2, 2026 at 2:22 AM
Reposted by Austin 👾👨‍💻
“Pitching is the art of instilling fear”

-Sandy Koufax
January 31, 2026 at 11:47 PM
Reposted by Austin 👾👨‍💻
Today's alternative #BirdOfTheDay theme is #ShortLeggedBirds. A Common Tern shows how short it legs are.

Photographed at Middle Quill Lake, #Saskatchewan in the late 1990s on Fujichrome #Velvia.

#EastCoastKin #photography #birds #nature #wildlife
February 1, 2026 at 11:27 AM
The Sunday cat tax has arrived:
February 1, 2026 at 3:43 PM
Using burp community for the blind SQLi labs on PortSwigger Web Academy is like saying “when in Rome, do as the Romans do” but “Rome” is actually Rome, NY
January 31, 2026 at 3:49 AM