Blogs

Finding an Authentication Bypass and Credential Disclosure in Seerr Using Claude and Bitwarden's AI Security Plugins
Finding an Authentication Bypass and Credential Disclosure in Seerr Using Claude and Bitwarden's AI Security Plugins

Background I’ve been running Seerr at home for a while now. It’s a self-hosted media request manager, forked from Jellyseerr/Overseerr, and it’s the kind of app that gets exposed to the internet pretty regularly since family members need to be able to submit requests. That always …

CSS Injection in dashdot's Single-Widget Embed Mode
CSS Injection in dashdot's Single-Widget Embed Mode

If you run a home lab or a self-hosted setup, there is a good chance you have come across dashdot. It is a slick, glassmorphism-style server monitoring dashboard that shows you CPU load, RAM usage, network stats, and more in real time. It also has a handy single-widget embed mode, where you can pull …

Custom PC Volume Knob Project
Custom PC Volume Knob Project

Recently, the Elgato Stream Deck Plus was released. My friends and I were looking at the device and really wanting the knobs to control just the volume of our PC volume. However, I didn’t want to buy the whole device just for a knob. This is the journey I made to DIY my volume knob. This post …

Adafruit Feather Huzzah 8266 DS18B20 Wing
Adafruit Feather Huzzah 8266 DS18B20 Wing

I recently had my barn freezer go out. While it’s always inconvenient, I had just bought half of a cow, which is quite costly. A good majority of the meat had gone bad, and we didn’t know it for a day or so. To ensure this didn’t happen again, I tried to see if I could use my nerd …

Renewing KeyBase and GnuPG Keys
Renewing KeyBase and GnuPG Keys

Every year or two, my GnuPG keys expire on KeyBase and in various key servers. Every time, I forget the process, and have to re-learn it. This post serves as a reminder to myself, or anyone else trying to do the same thing. It’s trivially easy, and there are GUI applications which can do it …

Cricut Payment Bypass Vulnerability
Cricut Payment Bypass Vulnerability

Last year during Black Friday, I bought a Cricut Explore Air 2 to make custom stickers, tshirts, and what not. Due to the fact that I like 3D printing and other CNC devices, it seemed right up my alley. Being the security enthusiast that I am, I couldn’t help but look at their site as it was …