AndrewMohawk
andrewmohawk.bsky.social
AndrewMohawk
@andrewmohawk.bsky.social
Just another noob.
Feels so good to interact with the infosec community as a whole, I cant imagine why we have bad reputation as not being welcoming!
July 24, 2025 at 2:01 PM
expel.com/blog/poisons... pretty interesting using cross device sign in ( www.passkeycentral.org/design-guide... ) to bypass fido2 hurdle, effectively turning the hardware token into QR code and asking the user to scan it
July 20, 2025 at 5:21 PM
I made a submission!
June 24, 2025 at 12:33 AM
Finally one of the models is useful to me. I give you my stance on WebAuthN. cc @Yubico

(Everyone at orgs I work at has a 5C + 5C NFC for phone and your org should as well)
June 3, 2025 at 8:39 PM
Whats the worst that could happen?
May 27, 2025 at 11:33 PM
Friends, criminals, scoundrels, you rang?
April 23, 2025 at 12:11 PM
You wont know when I am absolutely destroying my docker swarm, but there will be signs.
April 7, 2025 at 4:26 AM
I got Manus access and errr.. its struggling with a docker project, but the filenames are hilarious! Manus.. its just like us!
April 3, 2025 at 3:33 AM
The life of crime is calling me!
April 3, 2025 at 1:19 AM
March 25, 2025 at 12:35 PM
March 25, 2025 at 12:25 PM
March 25, 2025 at 12:25 PM
Collection of stolen memes because this is incredible
March 25, 2025 at 12:25 PM
Meme stolen from @yaelwrites.com
March 24, 2025 at 6:56 PM
Just needs this and then microcontroller and camera, I'm using a pretty wide camera cause it's just what I had lying around
March 24, 2025 at 9:37 AM
Even has a web interface to see what the fsck its up to
March 24, 2025 at 5:15 AM
Found a cool animatronic eye 3D print and spent the weekend making it follow me around
March 24, 2025 at 5:11 AM
Vibe coding my own rust ui for the rayhunter ( github.com/EFForg/rayhu... )
March 21, 2025 at 7:07 AM
A short story in 4:
March 13, 2025 at 3:15 PM
Still the most common ways without exploitation to get root docker containers is bad mounts (-v /:/mnt), running with privileged flag, excessive capabilities (--cap-add=SYS_ADMIN this is basically root) and mounting the socket (-v /var/run/docker.sock:/var/run/docker.sock )
March 9, 2025 at 3:59 AM
Looking at some of the other recent DPRK attacks I noticed docker being used with `--privileged` flag.

I also know that on mac there is a current issue with docker ( github.com/docker/for-m... ) and the workaround is to move things to /Library/PrivilegedHelperTools/.
March 9, 2025 at 3:59 AM
9gb? what exactly is going on with @burpsuite.bsky.social these days! I just restarted it and im browsing a local next js app!
February 10, 2025 at 10:58 PM
I bought my cats a ball pit once, Sam was not impressed that I had completely filled up the lounge, but we all loved it.
February 1, 2025 at 11:56 PM
Mine did not have the same feeling no matter what we tried
February 1, 2025 at 11:32 PM
I will kill for these 3!
January 15, 2025 at 12:53 AM