Monta Elkins's Avatar

Monta Elkins

@montaelkins

Hardware Hacker SANS Principal Instructor Training Course Author "Hardware Hacking Essentials"

304
Followers
31
Following
304
Posts
07.02.2024
Joined
Posts Following

Latest posts by Monta Elkins @montaelkins

Preview
Law enforcement shuts down botnet made of tens of thousands of hacked routers | TechCrunch An international law enforcement operation shut down a service called SocksEscort, which allegedly helped cybercriminals all over the world launch ransomware and DDoS attacks, as well as distribute ch...

Repeat after me: routers are computers running software that may be vulnerable.

#HardwareHacking

--

Law enforcement shuts down botnet made of tens of thousands of hacked routers | TechCrunch share.google/8YDTmTcb3WTN...

14.03.2026 01:07 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

I had a great time on Jim's podcast discussing malware analysis, reverse engineering, working at Dragos, and a little bit of my personal history.

www.youtube.com/watc...

11.03.2026 20:48 πŸ‘ 2 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0

Important notice for OT environments.

β€œUsers have reported their devices were updated from Windows 11 version 24H2 to 25H2 without authorization.”

share.google/yFQ66466QPr5...

12.03.2026 00:14 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Memory bit flips cause up to 15% of Firefox crashes, asserts Mozilla engineer β€” figure inferred from 470,000 auto-submitted crash reports Some proportion of these bit flip-induced crashes will be due to a cosmic ray passing through.

Interesting.

What do you think?
--

Memory bit flips cause up to 15% of Firefox crashes, asserts Mozilla engineer β€” figure inferred from 470,000 auto-submitted crash reports | Tom's Hardware share.google/da5YE7ab1UxV...

08.03.2026 21:03 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Cisco Drops 48 New Firewall Vulnerabilities, 2 Critical Edge bugs are so fetch, and Cisco just dropped 50 new ones, including some heavy hitters with 10 out of 10 scores on the CVSS scale.

Today is a good day to check ALL of your edge protection.

Cisco Drops 48 New Firewall Vulnerabilities, 2 Critical share.google/GPrycC23G9i1...

06.03.2026 03:11 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Feds Used Online Advertising Data to Track the Public's Phone Locations An internal DHS document reveals how data collected by the advertsing industry could be used for government surveillance.

Location information provided by the apps you install on your phone is available for sale to anyone.

Feds Used Online Advertising Data to Track the Public's Phone Locations share.google/GeebTCOsGMdT...

05.03.2026 07:08 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Come join my Birds of a Feather (BOF) session at RSA where we discuss unexpected wireless hardware in our equipment. How to find it, what to do about it. It's a open discussion. I'd like to hear your thoughts.

path.rsaconference.com/flow/rsac/us...

#SANSInstitute #RSAC2026 #SansICS

02.03.2026 22:30 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Attackers keep finding the same gaps in security programs - Help Net Security Managed XDR threat report on attack activity, shows how identity compromise, 3rd party access, and ransomware drive real-world incidents.

Good security info here.

Maybe the basics aren't so basic after all?

Or just not particularly common.

Attackers keep finding the same gaps in security programs - Help Net Security share.google/1QGED52NW61q...

19.02.2026 15:41 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
CISA orders federal agencies to replace end-of-life edge devices The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a new binding operational directive requiring federal agencies to identify and remove network edge devices that no longer re...

I would bet this is based on "experience" from intelligence agencies. Locations to affect operations is easier when the device has "forever days".*

*Forever day, kind of like a zero day except it will never be patched.

www.bleepingcomputer.com/news/securit...

07.02.2026 00:17 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Nitrogen can't unlock its own ransomware after coding error : Gang walks away with nothing, victims are left with irreparable hypervisors

Don't pay these attackers

Don't fund their second houses.

Don't make their boat payments.

Don't finance their retirement.

If you pay them, they will come.

Even if you pay them you still have to do the security.

And sometimes paying them doesn't work.

www.theregister.com/2026/02/04/n...

05.02.2026 17:43 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
New video · Wednesday, Jan 7 🎬 Tap to view!

Working with RF and a commercial($$$) Faraday cage is tricky. My SDR radio is sealed inside. Watch as RF is radiated from me to the laptop traveling the USB cable into the Faraday cage and the SDR receiver.

photos.app.goo.gl/6GzoNdygezMn...

@sansinstitute.bsky.social
#HardwareHacking
#SEC617

29.01.2026 23:26 πŸ‘ 10 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

These are the high scorers in my SCADA security class in D.C. last month. What a great bunch of folks!

@sansinstitute.bsky.social
#SANSICS
#ScadaSecurity

26.01.2026 23:42 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Denmark Orders Public Officials to Turn Off Their Bluetooth Due to High Risk of Being Spied on by U.S. Intelligence Denmark’s urgent Bluetooth crackdown reveals deep fears about invisible surveillance in a high-stakes geopolitical hotspot.

#Bluetooth #HardwareHacking

Denmark Orders Public Officials to Turn Off Their Bluetooth Due to High Risk of Being Spied on by U.S. Intelligence

share.google/nBgXDPRRKxaq...

25.01.2026 08:29 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image

Hardware Hacking Workshop at RSA.

Attend my hands-on hardware hacking workshop: program a microcontroller to attack a computer, and keep the device when you're done.

#HardwareHacking
#SANS

24.01.2026 06:18 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

I am alternately amazed by AI's grunt work and appalled by its stupidity.

It always teases me in programming projects by getting to 80% done very quickly and 100% done frequently never...

14.01.2026 04:47 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

I'm excited about getting my new bread rack put together in my below ground lair.Β  It’s giving me more space for upcoming projects.

#HardwareHacking
#BelowGroundLair
#LaBORatory

10.01.2026 20:53 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

#HarwareHacking, a little out of the ordinary. A Wall-e robot repair.

#walle
#Robot
#Repair

www.linkedin.com/pulse/hardwa...

Hat tip to @randirain.bsky.social

09.01.2026 02:11 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
China holds the GPS advantage over the US. Here’s why, and how to solve it. - Breaking Defense US strategic planners must confront an uncomfortable truth, writes Sean Gorman in this op-ed: A core pillar of American military and civilian power is far more vulnerable than many assume.

China using a more redundant approach to PNT, position navigation and timing, including ground stations as opposed to only space-based "GPS" as most countries do.

breakingdefense.com/2026/01/chin...

08.01.2026 22:28 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

In Washington DC teaching a cyber security class for critical infrastructure.

My workshop after class was a lot of fun and a big hit.

A participant said: "The highlight? Monta Elkins's hands-on workshop, where we programmed a $4 microcontroller to execute USB HID attacks. "

18.12.2025 11:14 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Preview
The FBI is asking for help with 'unjammable' drones – but we don't yet know how they'll be used The FBI wants information from companies who can supply drones which use fixed optic fiber connections.

Curious.

FBI looking for unjammable drones.

The FBI is hunting for 'unjammable' drones – and these flying cameras use one very old-school trick to stop remote attacks | TechRadar share.google/i43iIVcIQHfF...

09.12.2025 19:49 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

I hear there's a really good talk happening Tuesday night, live and online. :)

#HardwareHacking.

Sign up here:

www.sans.org/orlando-fall...

27.10.2025 22:01 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Shutdown Sparks 85% Increase in US Gov't Cyberattacks Attackers are pouncing on financially strapped US government agencies and employees. And the effects of this period might be felt for a long time.

"Shutdown Sparks 85% Increase in US Gov't Cyberattacks"

share.google/cfhUcXE7JlIK...

25.10.2025 11:15 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
How Hacked Card Shufflers Allegedly Enabled a Mob-Fueled Poker Scam That Rocked the NBA WIRED recently demonstrated how to cheat at poker by hacking the Deckmate 2 card shufflers used in casinos. The mob was allegedly using the same trick to fleece victims for millions.

Hardware hacking always wins.

Hacking a casino card shuffling machine.

#HardwareHacking

www.wired.com/story/how-ha...

25.10.2025 01:07 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

:0

23.10.2025 11:57 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Cache poisoning vulnerabilities found in 2 DNS resolving apps At least one CVE could weaken defenses put in place following 2008 disclosure.

If you've been in my classes, we've talked about this.

--

Cache poisoning vulnerabilities found in 2 DNS resolving apps - Ars Technica share.google/61TQ9VlXy6iJ...

23.10.2025 11:56 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
FERC 2025 CIP Audit Findings: DER Impact Ratings, Vendor Oversight Gaps, and Cloud Compliance Risk β€” AMPYX CYBER FERC’s latest CIP audit lessons for 2025 highlight three rising compliance risks. Entities are undercounting DERs in GOP control center impact ratings, outsourcing compliance work without adequate ove...

Electric sector critical infrastructure protection audit issues in 2025.

--

FERC 2025 CIP Audit Findings: AMPYX CYBER share.google/WY1HSRXdnBcP...

@ampyxcyber.com

23.10.2025 11:52 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Redirecting...

www.facebook.com/share/r/16bt...

21.10.2025 16:48 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software Cisco fixes CVE-2025-20352 SNMP flaw exploited in the wild, risking remote code execution or DoS.

Repeat after me: switches are computers running software that may be vulnerable.

If you've ever been in one of my classes you already know this.

#HardwareHacking

Cisco Warns of Actively Exploited SNMP Vuln Allowing RCE or DoS in IOS Software

share.google/W7KPY69grqZ1...

17.10.2025 00:18 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Come join me at SANS Cyber Defense Initiative in Washington DC and learn about security controls for critical infrastructure.

We'll have a blast!

10.10.2025 10:18 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image Post image Post image

My UV glasses to harden my clear fingernail polish w/ UV light. The polish insulates and tacks down the small wires I soldered.

RP2040 with a 1.28" color LCD display.

No good place to grab 3.3V volts except directly on the voltage regulator output pin. :(

#HardwareHacking

08.10.2025 00:13 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0