@jvesiluoma Profile picture

Jarkko Vesiluoma

@jvesiluoma

White hat hacker, Team ROT. Bug bounty hunter. Owner of Redtest-Security. Co-founder @HajySec + @rotcofi. OSCP/OSCE/OSWE. Opinions expressed are mine.

Joined March 2017
Similar User
Disobey photo

@Disobey_fi

Juho Myllys photo

@JuhoMyllys

ᴡʜᴏɪꜱ photo

@JuhoJauhiainen

HelSec Ry photo

@HelSecurity

Benjamin Särkkä photo

@Notquiteyou

Taneli Kaivola photo

@dist

2NS 🇺🇦 photo

@2NS_fi

TurkuSec ry photo

@turkusec

Joakim Tauren photo

@JoakimTauren

Crypto Lek photo

@CryptoLek

Antti Virtanen photo

@Anakondantti

Pinned

Sneak-peak of my automatization. Planning to release it open source, "when it is ready". May take a while though... 😅


Had some time to continue my research with passwords. As a sneak-peek, here is a mask based on breach data from the fi+se domains (LeakBase) that can crack about 50% of 10-character passwords, saving about several hundred days compared to using '?a' on all 10 character positions…


I just built a simple tool to make code audits a bit smoother (maybe?). It’s not trying to be flashy, just a practical helper for getting the job done. If you're doing code reviews, this might help you a bit. github.com/jvesiluoma/Had…


Jarkko Vesiluoma Reposted

Fuzzing IoT binaries with AFL++ - Part I Read: blog.attify.com/fuzzing-iot-de…

Tweet Image 1

Jarkko Vesiluoma Reposted

For over a year my free time has been spent turning this ‘LilyGo T-Dongle S3’ into hacking tool USB/WiFi/BT which I’ve named the USB Army Knife. This device is cheap, tiny, has a screen, SPI port, button and can do a ton of stuff with the ESP32-S3 inside. It has consumed me! 🧵

Tweet Image 1

Jarkko Vesiluoma Reposted

This contains Hacking/CyberSec related posts that have gathered over 10,000,000 impressions in the last year By: By Daniel Kelley Source: gold-marten-204.notion.site/2d292e0b941146…

Tweet Image 1

Jarkko Vesiluoma Reposted

gowitness v3 is out! A huge task, but I refactored basically _everything_ for version 3 in just over a week, followed by also writing the longest release notes of my life! Hopefully it's the best version yet. A lot has changed, so feel free to dig in. 🤖 🧵👇

Tweet Image 1

Oven eteen oli saapunut hauska paketti, ehkä viittaus haavoittuvuusilmoituksiin, mitä on tullut tehtyä? 🤔 😁

Tweet Image 1

Jarkko Vesiluoma Reposted

To use the Montreal subway, you tap a paper ticket against the turnstile and it opens. But how does it work? And how can the ticket be so cheap that it's disposable? I opened up the tiny NFC chip inside to find out more... 1/15

Tweet Image 1

This is not how white hat hackers operate. Pretending to be a "white hat hacker" and stealing $3 million as proof or a test is absurd. You should always keep your tests minimal and, of course, never engage in extortion, like these black hats.

CertiK recently identified a series of critical vulnerabilities in @krakenfx exchange which could potentially lead to hundreds of millions of dollars in losses. Starting from a finding in @krakenfx's deposit system where it may fail to differentiate between different internal…

Tweet Image 1


Some delays for #reasons, but my Disobey 2024 talk is now published. Also, the related CVE-2024-22030 is still unpatched in Rancher. youtube.com/watch?v=0OW3mB…


Jarkko Vesiluoma Reposted

Ross Bailey on fire! 🔥🌶️

Tweet Image 1

Jarkko Vesiluoma Reposted

Next up @Faltti ! Stories from DFIR investigations!

Tweet Image 1

Jarkko Vesiluoma Reposted

Our first speaker is preparing! @samilaiho

Tweet Image 1

Jarkko Vesiluoma Reposted

🥁Avasimme @Lahi_Tapiola Hack Day 2024 ilmoittautumisen. Kerää 3-6 hengen tiimi ja lähetä ilmoittautuminen maililla elina@mintsecurity.fi Liitä mukaan tiimisi nimi, jäsenet ja kapteenin sähköpostiosoite. Hack Day on la 12.10.2024 ja paikat täytetään ilmoittautumisjärjestyksessä💪


Ruotuväen artikkeli Puolustusvoimien bug bounty ohjelmasta. Hienoa, että Puolustusvoimat lähteneet tähän ja hyvä haastattelu @putsi ! 😀 ruotuvaki.fi/-/hyvat-hakker…


Jarkko Vesiluoma Reposted

We love our returning speakers! @godfatherOrwa is returning to #NahamCon2024 for a second year in a row to talk about "Shodan & WAF Evasion Techniques?" 🥷🥷 🗓️ Saturday, May 25 👉🏼 NahamCon.com/schedule 👀 YouTube.com/NahamSec

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.