https://taltechtreks.com/
שמחתי מאוד על הזכות להיות פה ולהציג בפניכם את המחקר שלי, תודה!
שמחתי מאוד על הזכות להיות פה ולהציג בפניכם את המחקר שלי, תודה!
כנס שתמיד נהדר להיות בו עם הרצאות מעניינות ומעולות, והפעם הוא מתוק במיוחד כי יוצא לי להרצות בו בפעם הראשונה!
מוזמנים לבוא לשמוע על איך נראה האקינג למשחקי אנדרואיד, ואיך ביליתי את ימי הקיץ אי שם ב2016 כדי לפרוץ לפוקימון גו.
מחר, 27/10, ב13:20 באולם הגדול!
כנס שתמיד נהדר להיות בו עם הרצאות מעניינות ומעולות, והפעם הוא מתוק במיוחד כי יוצא לי להרצות בו בפעם הראשונה!
מוזמנים לבוא לשמוע על איך נראה האקינג למשחקי אנדרואיד, ואיך ביליתי את ימי הקיץ אי שם ב2016 כדי לפרוץ לפוקימון גו.
מחר, 27/10, ב13:20 באולם הגדול!
We've had the pleasure to give the talk to a great crowd and amazing people. Looking forward to the second day filled with interesting talks!
We've had the pleasure to give the talk to a great crowd and amazing people. Looking forward to the second day filled with interesting talks!
We downloaded over 5 thousand of the highest starred MCP implementations to answer that question!
astrix.security/learn/blog/s...
We downloaded over 5 thousand of the highest starred MCP implementations to answer that question!
astrix.security/learn/blog/s...
On a personal note, every time I visit Reversim, it shows me just how awesome, welcoming, and genuinely interesting community-driven events can be.
On a personal note, every time I visit Reversim, it shows me just how awesome, welcoming, and genuinely interesting community-driven events can be.
The blog posts going deeper into hacking Pokemon Go that accompany my #DEFCON talk are live on my blog!
taltechtreks.com/2024/04/06/H...
taltechtreks.com/2025/08/09/H...
Happy to get questions on the research!
The blog posts going deeper into hacking Pokemon Go that accompany my #DEFCON talk are live on my blog!
taltechtreks.com/2024/04/06/H...
taltechtreks.com/2025/08/09/H...
Happy to get questions on the research!
I've worked on it multiple nights in the past months, and I hope you'll enjoy it!
If you're not here in person, you can catch the talk live at www.youtube.com/live/fzbrrKP...
or www.twitch.tv/defcon_dctv_...
I've worked on it multiple nights in the past months, and I hope you'll enjoy it!
If you're not here in person, you can catch the talk live at www.youtube.com/live/fzbrrKP...
or www.twitch.tv/defcon_dctv_...
The amazing Ryan Rockenbaugh surprised me with a limited edition sticker of Trainer Tal
Sticker wall at #DEFCON got 2, and I will be giving what's left tomorrow at my talk
Breaking 'Em All! 11:30 Track 3. See you!
The amazing Ryan Rockenbaugh surprised me with a limited edition sticker of Trainer Tal
Sticker wall at #DEFCON got 2, and I will be giving what's left tomorrow at my talk
Breaking 'Em All! 11:30 Track 3. See you!
Talk is on Saturday at 11:30, track 3.
I'll be in the conf till Sunday, hit me up if you want to chat over the talk or any other project.
Talk is on Saturday at 11:30, track 3.
I'll be in the conf till Sunday, hit me up if you want to chat over the talk or any other project.
"Breakin 'Em All – Overcoming Pokémon Go's Anti-Cheat Mechanism"
Join me on stage - Sat, 11:30 AM, Track 3
defcon.org/html/defcon-...
"Breakin 'Em All – Overcoming Pokémon Go's Anti-Cheat Mechanism"
Join me on stage - Sat, 11:30 AM, Track 3
defcon.org/html/defcon-...
Ended up 4th place in the #CTF 🎉
Solved 12/15 challenges alone - Android pwn, JS sandbox escapes, cache poisoning, XSS bypasses. The usual suspects: SQLi, LDAP injection, XXE.
Had a blast!
Looking forward to the next one.
Writeup: taltechtreks.com/2025/06/04/a...
Ended up 4th place in the #CTF 🎉
Solved 12/15 challenges alone - Android pwn, JS sandbox escapes, cache poisoning, XSS bypasses. The usual suspects: SQLi, LDAP injection, XXE.
Had a blast!
Looking forward to the next one.
Writeup: taltechtreks.com/2025/06/04/a...
Although I'm certain that without prior good knowledge of coding it wouldn't work that well.
Although I'm certain that without prior good knowledge of coding it wouldn't work that well.
Can't wait to experiment!
www.anthropic.com/news/integra...
Can't wait to experiment!
www.anthropic.com/news/integra...
Come by to hear John and me share conclusions and insights on the first publicly available report on Non-Human identity security!
See you there,
May 1, 10:50 am at Moscone West 3004!
Come by to hear John and me share conclusions and insights on the first publicly available report on Non-Human identity security!
See you there,
May 1, 10:50 am at Moscone West 3004!
What’s the largest sofa you can pivot around a corner?
Heard about this problem in the past, but I thought it's one of those we will never be able to prove. (At least until quantum computers arrive to solve some NP problems)
What’s the largest sofa you can pivot around a corner?
Heard about this problem in the past, but I thought it's one of those we will never be able to prove. (At least until quantum computers arrive to solve some NP problems)
But I do have more cool stuff ready for sharing as well as writing 2 blog posts about projects I worked on lately.
Looking forward to sharing with you all
But I do have more cool stuff ready for sharing as well as writing 2 blog posts about projects I worked on lately.
Looking forward to sharing with you all
An amazing adaptation of minesweeper to include old-school RPG elements.
UPDATE: Had to go back and play, another 4 hours to achieve a perfect clear. Incredible game!
An amazing adaptation of minesweeper to include old-school RPG elements.
UPDATE: Had to go back and play, another 4 hours to achieve a perfect clear. Incredible game!
x.com/safe/status/...
Seeing this, it’s unfortunate that text inputs in websites don't allow most tags but rather encapsulate how the final result is displayed for users. Give us more, please!
Seeing this, it’s unfortunate that text inputs in websites don't allow most tags but rather encapsulate how the final result is displayed for users. Give us more, please!
Hoping for good news, will be the perfect reason to finally attend in person!
Hoping for good news, will be the perfect reason to finally attend in person!
The author transformed the Steam Deck to a brick that still connects to screens or VR while reducing size by a third
Projects like this (author used steam-provided data) are a great example of "right-to-own", critical to enhance electronics sustainability
It's annoying to see yet another case of how easy it is to fake consent screens that look identical to real companies.
Why we still lack mandatory verification processes for new OAuth apps is beyond me.
x.com/thealexbanks...
It's annoying to see yet another case of how easy it is to fake consent screens that look identical to real companies.
Why we still lack mandatory verification processes for new OAuth apps is beyond me.
x.com/thealexbanks...