Konstantinos (Kosta) Xynos
banner
kxynos.bsky.social
Konstantinos (Kosta) Xynos
@kxynos.bsky.social
PhD. IT Sec. architect and ISO at an Automotive OEM. Computer Security & Forensics Consultant, ex-Educator & Researcher. S/W and H/W hacking. @kxynos@mastodon.social
Twitter:@kxynos

https://kosta.xynos.eu
Pinned
Our next paper is a case study of 47 used Nintendo 3DS game consoles “Nintendo 3DS forensics: A secondhand case study” www.sciencedirect.com/science/arti...? (free access). It was very fun and interesting working on the file formats and processing some of the data.
Nintendo 3DS forensics: A secondhand case study
Computer and console-based video games are an important part of the entertainment industry. Such devices may be found in evidence lockers as part of i…
www.sciencedirect.com
Reposted by Konstantinos (Kosta) Xynos
Just finished Hacking the Pill Camera that you'd swallow for an easy endoscopy

Ti CC1310 SoC Glitched and Dumped which allowed to Reverse Engineer its firmware and RF Protocol up to full Image receiving🥳
No security included but short range.

📽️🎬 here: youtu.be/qEIW5gOLzIs
November 17, 2025 at 9:13 PM
Reposted by Konstantinos (Kosta) Xynos
Real ones post their slides before their talk (or at least very shortly thereafter) ;)

Slides & materials for HWIO NL talk later this week:
“Reverse engineering Realtek RTL8761B* Bluetooth chips, to make better Bluetooth security tools & classes”

darkmentor.com/publication/...
Reverse engineering Realtek RTL8761B* Bluetooth chips, to make better Bluetooth security tools & classes | Dark Mentor LLC
We hold this truth to be self-evident&#58; SUFFERING BUILDS STRENGTH! In this talk I will walk you through the trials, tribulations, and triumph(!) of the worst debugging setup I've ever hacked together, which I used to reverse engineer the Realtek RTL8761B* family of Bluetooth chips.<p>This work was done because Bluetooth security tools are in an abominable state. We use "CSR4" (Cambridge Silicon Radio) dongles that don't support packets newer than Bluetooth 4.0 (released in 2010!), just to be able to spoof the Bluetooth Device Address (BDADDR) for MitM attacks.<p>Veronica Kovah & I have been creating Bluetooth security classes for <a href="https://ost2.fyi/">OpenSecurityTraining2</a>. And we wanted to use better hardware; ideally something that supports BT 5.4 (released in 2023). So I bought a bunch of cheap dongles off Amazon, and found that most of them used the same RTL8761B chip. So the goal was clear&#58; at a minimum, figure out a way to spoof the BDADDR on these dongles. But I also a set out a nice-to-have stretch goal - to figure out how to use these dongles to send custom LMP packets (which are architecturally not meant to be under full user control.) That way, could replace a bulky and expensive $55 dev board (that is only used for BT Classic), with a cheap and small $14 USB dongle (which has a better antenna to boot!) This would make Blue2thprinting (released at Hardwear.io 2023), and thus Bluetooth reconnaissance & vulnerability assessment, cheaper & better.<p>Bloodied (but not broken) by the ordeal, I achieved my goals and stretch goals. And given that there are no public descriptions of how Realtek Bluetooth chips work, I look forward to sharing hitherto-unknown information about how to navigate and understand these mostly-16-bit-MIPS-code systems. And I'll discuss how their ROM-"patch"ing firmware update mechanism works, how you can patch it to change its code too, and the security implications thereof.
darkmentor.com
November 17, 2025 at 6:46 AM
Reposted by Konstantinos (Kosta) Xynos
turns out this device (GT-S6810P) straight up gives you a root shell if you connect to the serial port when it's in battery charging mode (?!?!???)
November 16, 2025 at 8:15 PM
Reposted by Konstantinos (Kosta) Xynos
Build a Boy progress: My screens finally came this week and tonight I got my driver working! Now I just need to refine it and add some features. Oh and rev 1.3 of the boards are on their way!
November 14, 2025 at 5:00 PM
Reposted by Konstantinos (Kosta) Xynos
Microsoft has discovered a side-channel attack (Whisper Leak) on the network communications between AI chatbots and their backend LLMs

www.microsoft.com/en-us/securi...
November 9, 2025 at 2:38 PM
Reposted by Konstantinos (Kosta) Xynos
Aardvark is a labor of love and mission for the whole team. We are super excited to bring it to you. Sign up for the beta immediately!!! openai.com/index/introd...
Introducing Aardvark: OpenAI’s agentic security researcher
Now in private beta: an AI agent that thinks like a security researcher and scales to meet the demands of modern software.
openai.com
October 30, 2025 at 6:15 PM
Reposted by Konstantinos (Kosta) Xynos
​The Pwn2Own Ireland 2025 hacking competition has ended with security researchers collecting $1,024,750 in cash awards after exploiting 73 zero-day vulnerabilities.
Hackers earn $1,024,750 for 73 zero-days at Pwn2Own Ireland
​The Pwn2Own Ireland 2025 hacking competition has ended with security researchers collecting $1,024,750 in cash awards after exploiting 73 zero-day vulnerabilities.
www.bleepingcomputer.com
October 24, 2025 at 6:37 AM
Reposted by Konstantinos (Kosta) Xynos
It took 3 revisions to get right, but the DDR5 RAM SPD adapter is now available. Use with the Bus Pirate to read and write DDR5 SPD EEPROMs. HSA pin is grounded so blocks can be unlocked (offline mode). UDIMM (desktop) and SODIMM (laptop) supported.
October 22, 2025 at 11:51 AM
Reposted by Konstantinos (Kosta) Xynos
I need to mention something that happened yesterday. I had a negative review of my game & an irate player in my Discord, talking about bugs they claimed were longstanding, mentioned all over Steam and Reddit, and never fixed. After some probing they admitted they had been asking ChatGPT for hints.
CHATGPT IS NOT A FUCKING SEARCH ENGINE
October 20, 2025 at 8:28 AM
Reposted by Konstantinos (Kosta) Xynos
Anyway, if you want to get started in Bluetooth with something more tool-using than spec-reading, I recommend taking this class! As the graph shows, it could take between 4-15h but it’ll probably be around 8h ost2.fyi/BT2222
October 20, 2025 at 10:41 AM
Reposted by Konstantinos (Kosta) Xynos
AWS outage has taken down millions of websites, including Amazon.com, PrimeVideo, Perplexity AI, Canva and more.
AWS outage crashes Amazon, PrimeVideo, Fortnite, Perplexity and more
AWS outage has taken down millions of websites, including Amazon.com, PrimeVideo, Perplexity AI, Canva and more.
www.bleepingcomputer.com
October 20, 2025 at 8:24 AM
Reposted by Konstantinos (Kosta) Xynos
Talks from the REcon 2025 security conference, which took place in June, are available on YouTube

www.youtube.com/@reconmtl/vi...
October 15, 2025 at 11:31 PM
Reposted by Konstantinos (Kosta) Xynos
🧵Alright! I pulled off the hat trick 🎩 at hardwear.io this November! I've got a talk on 100% new firmware reverse engineering research (hardwear.io/netherlands-... tagline:SUFFERING BUILDS STRENGTH!)…
October 13, 2025 at 11:51 AM
Reposted by Konstantinos (Kosta) Xynos
WiFi security researchers: I want to get a TX amp to let my BT research tools connect back to further-away advertisers. I’m considering www.digikey.com/en/products/... . Is there a better option that’s used in the WiFi space that I could be considering?(Needs to work with USB BT dongles)
October 11, 2025 at 5:15 PM
Reposted by Konstantinos (Kosta) Xynos
Researchers from the Turing, Anthropic and the AI Security Institute have conducted the largest study of data poisoning to date.

Results show that as little as 250 malicious documents can be used to “poison” a language model, even as model size and training data grow: bit.ly/4n0mH4t
LLMs may be more vulnerable to data poisoning than we thought
A Turing collaboration with the AI Security Institute and Anthropic will help to protect AI models from misuse
bit.ly
October 9, 2025 at 5:04 PM
Reposted by Konstantinos (Kosta) Xynos
I wonder if Microsoft secretly wants everyone to switch to Linux. There are certainly fewer reasons to stick to Windows every day: www.theverge.com/news/793579/...
Microsoft is plugging more holes that let you use Windows 11 without an online account
Microsoft is disabling the best local account workarounds
www.theverge.com
October 7, 2025 at 3:51 AM
Reposted by Konstantinos (Kosta) Xynos
One day soon at a research lab near Santa Barbara or Seattle or a secret facility in the Chinese mountains, it will begin: the sudden unlocking of the world’s secrets. Your secrets.

Cybersecurity analysts call this Q-Day—the worst holiday maybe ever.
wrd.cm/4iyJdjP
The Quantum Apocalypse Is Coming. Be Very Afraid
What happens when quantum computers can finally crack encryption and break into the world’s best-kept secrets? It’s called Q-Day—the worst holiday maybe ever.
www.wired.com
March 24, 2025 at 2:28 PM
Reposted by Konstantinos (Kosta) Xynos
Reposted by Konstantinos (Kosta) Xynos
Live streams from the RomHack 2025 security conference are available on YouTube

www.youtube.com/playlist?lis...
RomHack 2025 - YouTube
www.youtube.com
September 27, 2025 at 7:03 PM
Reposted by Konstantinos (Kosta) Xynos
Unitree G1 humanoid robots collect and send sensor and telemetry to servers in China every 5 min without the owner's knowledge or consent.

arxiv.org/abs/2509.14139

The G1 also contains BLE vulnerabilities that can be exploited to pivot to a customer's internal network.

github.com/Bin4ry/UniPwn
GitHub - Bin4ry/UniPwn
Contribute to Bin4ry/UniPwn development by creating an account on GitHub.
github.com
September 27, 2025 at 7:56 PM
Reposted by Konstantinos (Kosta) Xynos
The #BSidesLDN2025 Call for Volunteers is open!

All BSides events simply cannot run without the help of volunteers, and so, we need your help...

More information and to apply: bit.ly/BSidesLDN202...

#Security #BSides #London #Volunteers
September 19, 2025 at 8:15 AM
Reposted by Konstantinos (Kosta) Xynos
Bcrypt cracking table, updated by SpecOps for modern GPU gear

specopssoft.com/blog/bcrypt-...
September 18, 2025 at 7:05 PM
Reposted by Konstantinos (Kosta) Xynos
Today is the 30th anniversary of Hackers
September 15, 2025 at 11:56 PM
Reposted by Konstantinos (Kosta) Xynos
Academics has developed a new side-channel attack that breaks virtualized environments

The VMScape attack works against AMD Zen CPUs and Intel Coffee Lake CPUs

It is a Spectre-like attack that can allow malicious guests in a cloud environment to leak hypervisor data

comsec.ethz.ch/research/mic...
September 11, 2025 at 5:58 PM
Reposted by Konstantinos (Kosta) Xynos
Meet HackRF Pro! HackRF Pro is a Software Defined Radio peripheral capable of transmission or reception of radio signals from 100 kHz to 6 GHz.

You can read more about HackRF Pro and preorder it now from select resellers here: greatscottgadgets.com/hackrf/pro/
June 24, 2025 at 2:22 PM