Remote
PhreakByte the Octopus
@nieldk@infosec.exchange
About Me
I’m Niel, a father at first, working as a Cloud Security Specialist and drive my own business doing penetration tests and Security advisories.
My Interests:
programming
Photography
Mobile Platforms
Security
RFID
529 Followers
144 Following
50 Posts
Joined November 07, 2022
Sec1 Security:
Mastodon:
Codeberg:
Github:
Signal:
NielDK.07
HAM call sign:
OZ7NIEL
Open post
Replying to
@DaveMWilburn@infosec.exchange @TindrasGrove@infosec.exchange that is accurate (to the best of my knowledge)
2
1
0
0
Open post
Open post
Replying to
1
0
0
0
Open post
Replying to
@peptostate@jorts.horse The first rule of Hullabaloo is: we do not ask about the Hullabaloo.
1
0
1
0
Open post
Open post
RE: https://infosec.exchange/@nieldk/116871917491185090
In case you missed it, look again .
A fully standalone #blackmagicprobe (or, of course, you can use it with your PC, as usually) on #cardputer #m5stackhttps://codeberg.org/nieldk/blackmagic-cardputer
Laptop-Free Standalone Operation: Acts as a completely self-contained field tool. You can scan, attach, read registers, hex-dump memory, and flash firmware directly using only the Cardputer's keyboard and screen—no PC required.
Dynamic USB Mass Storage (usbmode msc): Overcomes the ESP32-S3's hardware USB limitations by letting you toggle the device into a USB flash drive. You can drag and drop .elf or .bin files directly from a PC into its internal 3MB storage, then swap back to debugger mode.
Error-Proof Auto Pin Detection: The swd_scan command automatically tests both Grove pin orderings. If you accidentally swap your SWDIO and SWCLK wires when connecting to a target, the firmware automatically detects it and adjusts the logic.
Built-In Target Emulator (monitor emulate): Spawns a synthetic STM32F103 target completely in the Cardputer's internal memory. It tricks the Black Magic stack into thinking a real chip is attached, allowing you to test flashing, GDB commands, and memory dumps on a plane or couch without any hardware wires.
Smart Flash Protection & Auto-Detection: The on-device flash command reads file headers to automatically distinguish between ELF and raw binary formats. It will cleanly reject a file if the target address falls outside the connected chip's actual flash/RAM map, preventing accidental corruption.
On-Device Command Console (REPL): Features a full interactive command line on the tiny screen that supports the Cardputer's full keyboard shift layers, allowing you to type native Black Magic monitor commands and symbols (_, !, @, #) on the fly.
50-Line Scrollback Buffer: Includes a dedicated screen history layout navigated via keyboard shortcuts (Fn + ; and Fn + .), ensuring you don't lose track of long register dumps or multi-line error messages on the small display.
Dual USB-CDC Mirrored Output: Simultaneously mirrors all on-screen command outputs to a secondary virtual COM port as raw text. You can plug it into a laptop terminal to easily log, view, or capture a full day of field debugging text.
Open quoted post Open quoted post
Quoting
It now has a 'builtin' stm32f1 emulator https://codeberg.org/nieldk/blackmagic-cardputer
1
0
1
0
Open post
It’s extremely difficult to coordinate a vacation for a family of 4 it seems 🤣
1
0
0
0
Open post
Replying to
@jack_daniel@mastodon.social don’t know which is better, getting fried or getting cooked
0
0
0
0
Open post
Open post
Replying to
@ofossum@social.tchncs.de the change is here https://codeberg.org/Codeberg/org/commit/96fac426a32d1ba91ff879366d59bf1af54080c2
Note the paragraph under “(2) Failure to comply with the rules in § 2 (1) leads to immediate removal of the content together with a warning; further violations might result in immediate account suspension. In non-obvious cases, decisions about account suspensions and content removal are made by the presidium, and require a simple majority.”
0
0
0
0
Open post
Replying to
0
0
0
0
Open post
Open post
@esden@chaos.social I’ve got a small patch for the AT32F435/437 target (at32f43x.c) that decodes the EOPB0 SRAM/zero-wait split so the RAM map matches reconfigured parts. It’s based on an older revision, do you accept PRs against the older branch, or should I rebase onto current main?
0
1
0
0
Open post
Open post
Replying to
@inlovewithpda@chaos.social I made a s… load of work on various apps here https://build.sailfishos.org/project/show/home:nielnielsen
0
0
0
0
Open post
RE: https://infosec.exchange/@patrickcmiller/116925813309058504
Hey #MSRC read this 🤣
Open quoted post
Quoting
Establishing a Coordinated Vulnerability Disclosure Program to Work With Security Researchers https://www.cisa.gov/resources-tools/resources/establishing-coordinated-vulnerability-disclosure-program-work-security-researchers
Open quoted post 0
0
0
0
Open post
Regarding #Codeberg and others decision on 100% ban on LLM.
Leaving the decision on whether code is generated by LLM to a handful of people strongly against LLM usage carries a risk of non LLM contributing loosing their code, and reputation. On wrong assumptions.
Example from my personal experience.
My daughter got a low grade evaluation of her assignment in her 2nd grade term in college.
She was accused of using ChatGpt .
She did not, she is strongly against using LLM (environmental reasons).
She complained, and got a higher grade, the teachers couldn’t prove she did wrong.
Others, in her class, used ChatGPT, heavily, but was not discovered, they got higher grades.
Codeberg decision will create same situations, a handful of people decide wrong or not.
Repository owner will not be able to object (this was an option for my daughter).
This is plain wrong, and personally I won’t keep my stuff there anymore.
0
1
0
0
Open post
Replying to
Here is what that reality means for repository owners:
No "Unbiased" Trial: The Presidium isn't an impartial court of law; it’s an elected committee designed to enforce the community’s specific anti-AI stance. In any gray-area decision, they will lean toward protecting human maintainers and platform infrastructure over giving "vibe-coded" projects the benefit of the doubt.
The "Vibe Check" Problem: If an owner claims, "I wrote 60% of this and the AI only wrote 40%," but the repository looks, feels, and acts like unreviewed synthetic code, the board will almost certainly vote to remove it.
0
0
0
0
Open post
Replying to
You can now actually use it as a “standalone” blackmagic probe ;)
Next up, include a “emulated” stm32, you know, when you don’t have a real device - wires around for testing
0
1
0
0
Open post
Open post
Oh, and an option to mount a USB drive, for firmware files to flash. Now, complete i would say ;) https://codeberg.org/nieldk/blackmagic-cardputer/src/branch/main/README.md
0
0
0
0
Open post
Open post
RE: https://expressional.social/@notsoloud/116889975111936560
Sounds a lot like any Danish government institution
0
0
0
0
Open post
Open post
Replying to
0
0
0
0
Open post
Open post
Replying to
@esden@chaos.social thanks for the swift reply, opened a PR to main (2300) hope it fits expectations for a PR
0
0
0
0
Open post
“… It is a corrupting thing to live one’s life in secret “
- George Orwell, 1934, Burmese Days.
0
0
0
0
Open post
Suddenly, Mr. Hofer saw his own face — in a photograph taken by Chinese immigration officials for their records. Next to it was his passport number and the cellphone number he had used in China.
https://www.nytimes.com/2026/08/02/world/asia/china-surveillance-foreigners-database.html
0
0
0
0
Open post
Finally, #aria2 #torrent client, native #sailfishos frontend done
https://build.sailfishos.org/package/show/home:nielnielsen/harbour-aria2-frontend
0
0
0
0
Open post
Replying to
@Viss@mastodon.social @nyanbinary@infosec.exchange at least I recall some managers in Deloitte getting personal accountable for an incident some time back.
0
0
0
0
Open post
Replying to
@ftranschel@norden.social no need to be rude. I hope you are right, but I read their T&C differently
https://infosec.exchange/@nieldk/116980569435596934
0
1
0
0
Open post
Replying to
@Viss@mastodon.social maybe it’s better to compare to epidemiology and medicine terms ?
0
0
0
0
Open post
Open post
Replying to
@th@social.v.st asked a friend from Iceland, who should know (volunteering in rescue team there) let’s see how fast he answers 🤞
0
0
0
0
Open post
Can’t believe I just found this now #WiFiPineapple #hackinghttps://blog.lupuse.org/experimente/2026/01/25/glinet-use-shadow-as-mangoapple.html
0
1
0
0
Open post
Replying to
The build is based on litui’s work.
With some fixes /confirmations/addons(cardputer)
New features not in litui. On-device keyboard REPL so you can type BMP monitor commands directly on the Cardputer keyboard. 50-line scrollable history buffer with Fn+; and Fn+. navigation. Command output mirrored to USB CDC UART port simultaneously with on-screen display. GDB DTR debounce filtering Windows CDC enumeration transients that would suppress the keyboard REPL. Dirty-flag rendering so the display only redraws on keypress, eliminating flicker without needing double buffering. Startup logo splash screen. Cardputer-specific sdkconfig.defaults.cardputer with all display geometry, rotation, and SPI settings empirically confirmed on real hardware.
Still not working, same as litui. JTAG, WiFi and networking, NV storage, CMSIS-DAP.
Not yet tested on real hardware. Actual SWD target scan and attach (Grove wires in transit), RTT messages, semihosting.
0
0
0
0
Open post
So, “my brain is sick”. Yeah , well my sick brain will enjoy holidays on its own
0
0
0
0
Open post
Open post
Open post
0
0
0
0

