Exploiting the Tesla Wall connector from its charge port connector
An interesting attack surface Over the past few years, Synacktiv has been analyzing Tesla vehicles for the Pwn2Own competition.
ICYMI, @synacktiv.com's Pwn2Own walkthrough, exploiting a Tesla Wall via the charging port is a good Friday read.
After a firmware downgrade, they found a debug shell via the access point used during setup, ultimately using this to gain EIP.
www.synacktiv.com/en/publicati...
18.07.2025 16:22 β π 0 π 1 π¬ 0 π 0
Uncovering Privilege Escalation Bugs in Lenovo Vantage β Atredis Partners
Atredis Partners is an advanced security services and research consulting firm.
We recently identified a number of privilege escalation vulnerabilities in Lenovo Vantage on Windows; check out our latest blog for a technical deep dive www.atredis.com/blog/2025/7/...
09.07.2025 15:57 β π 3 π 5 π¬ 0 π 1
Be sure to watch Matt Burch's (@emptynebuli.bsky.social) @CypherCon.bsky.social talk, Where's the Money: Defeating ATM Disk Encryption! buff.ly/wWaSlle
27.06.2025 19:15 β π 2 π 2 π¬ 0 π 1
Sam wanted to answer the question "can you 3D print pogo pin harnesses?" So, he ran some experiments this week to find out.
Check out the blog post and grab the models to try for yourself!
buff.ly/xWcWE5W
#pogopin #probe #3dprinting #atredis
16.05.2025 19:15 β π 2 π 0 π¬ 0 π 0
In case you missed it. Don't miss @emptynebuli.bsky.social presenting at #HackSpaceCon in Cape Canaveral on May 14th! π° π
buff.ly/tRaisC8
09.05.2025 19:50 β π 0 π 1 π¬ 0 π 1
BSides Buffalo 2025
Mobile app & schedule website
Donβt miss Atredian Bill Carver talking about Ransomware Readiness @bsidesbuffalo.bsky.social - Hope to see you there on June 7th!
09.05.2025 19:46 β π 0 π 2 π¬ 0 π 0
Don't miss @emptynebuli.bsky.social presenting at #HackSpaceCon in Cape Canaveral on May 14th! π° π No ticket? No Problem! π We have a few extra π Reply to the post and we will hook you up!
buff.ly/tRaisC8
02.05.2025 19:16 β π 2 π 1 π¬ 0 π 1
Sam @bespokebugs.bsky.social wanted to answer the question "can you 3D print pogo pin harnesses?" So, he ran some experiments this week to find out.
Check out the blog post and grab the models to try for yourself!
atredis.squarespace.com/blog/2025/4/...
#pogopin #probe #3dprinting #atredis
25.04.2025 19:07 β π 1 π 4 π¬ 0 π 0
Don't miss Atredian Matt Burch (@emptynebuli.bsky.social) presenting "Where's the Money: Defeating ATM Disk Encryption" at #HackSpaceCon!
buff.ly/zHBii72
14.04.2025 14:42 β π 2 π 1 π¬ 0 π 1
Be sure to watch Chris's @districtcon.bsky.social talk, DaBootZone: Breaking the DA1469x Boot ROM!
buff.ly/Xw3Hhpi
07.04.2025 16:23 β π 3 π 0 π¬ 0 π 0
In case you missed it, happening this week:
Catch Atredian Matt Burch's talk about ATM Hacking on April 4th @cyphercon.bsky.social
buff.ly/If1XTou
31.03.2025 15:30 β π 1 π 0 π¬ 0 π 0
Don't miss Atredian Matt Burch (@emptynebuli.bsky.social) on April 4th, talking about ATM Hacking on the Circle stage @cyphercon.bsky.social! cyphercon.com/portfolio/wh...
21.03.2025 14:42 β π 2 π 2 π¬ 0 π 1
Node is a loader β Atredis Partners
Atredis Partners is an advanced security services and research consulting firm.
In case you missed it:
@tomprogramming.bsky.social explores creating and hijacking Node.js DLLs with
@ziglang.bsky.social in the latest blog post!
buff.ly/D1s2iF3
19.03.2025 14:15 β π 0 π 0 π¬ 0 π 0
This is why we started this company in the first place, and it always feels soooo good to hear it from folks.
Thank you for making our day @cyberdude83.bsky.social.π₯²
17.03.2025 19:21 β π 1 π 0 π¬ 0 π 0
advisories/ATREDIS-2025-0001.md at master Β· atredispartners/advisories
Atredis Partners Security Advisories. Contribute to atredispartners/advisories development by creating an account on GitHub.
We recently discovered a local privilege escalation in Kolide; it impacts Kolide >= 1.5.3, < 1.12.3 on Windows machines. Check out our full disclosure here
14.03.2025 19:48 β π 2 π 5 π¬ 0 π 0
Node is a loader β Atredis Partners
Atredis Partners is an advanced security services and research consulting firm.
@tomprogramming.bsky.social explores creating and hijacking Node.js DLLs with
@ziglang.bsky.social in the latest blog post!
buff.ly/D1s2iF3
11.03.2025 16:23 β π 0 π 2 π¬ 0 π 0
Catch Atredian Matt Burch's talk about ATM Hacking on April 4th @cyphercon.bsky.social
buff.ly/If1XTou
28.02.2025 19:26 β π 2 π 2 π¬ 0 π 0
dabootzone_districtcon.pdf
Catch Chris' talk DaBootZone: Breaking the DA1469x BootROM @districtcon.bsky.social !
Stream: https://buff.ly/4bcOsmj
Slides: https://buff.ly/4gT3bDW
Info: https://buff.ly/4gT3dM4
21.02.2025 19:45 β π 4 π 5 π¬ 0 π 0
professional strings(1) operator
she/her or they/them
π³οΈβππ
views are mine
https://cxiao.net
https://infosec.exchange/@cxiao
Southern woman, music lover, risk taker, animated talker, world traveler, next level shit pursuer, Atredian, and the best Aunt Kiss ever.
you sure this infosec thing was a good idea?
Incoherent offsec retweets, hacking @ Scorpion Labs
Red team. Proud DePaul and UW-Milwaukee parent. Mostly post about sports and information security.
Securing Block (Square) infrastructure. Previously security research at Northeastern University. Internationally acclaimed Schnitzel expert π¦πΉ mweissbacher.com NYC π½
Arguably, Saint Louis' (and Seattle's) favorite Anarchist CEO. Half-ass hot rod mechanic, whole ass stunt sailor.
No war but Glassdoor. (he/y'all)π΄π©βπΏβπΌ βπΎ
iβm not a girl, not interested in being polite or cisgender. jewish, anarchist, still punk, in my daddy era.
this is not a place of honor.
no highly esteemed thoughts are skeeted here.
ngl.link/armageddon1312
donβt explain, youβll only make it worse
Infosec professional, beverage snob, and fantasy book consumer. Vice President @ Atredis Partners. Forever terrified of Kithicor.
researcher. exploit dev. pdx. hacking @ atredis
https://dronesec.net/
Hardware hacker, DJ, and general scoundrel. SecKC founding member. Recovering DEF CON goon. Phoenix. he/him.
official Bluesky account (check usernameπ)
Bugs, feature requests, feedback: support@bsky.app