<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>0xOJ - Security Research &amp; Tools</title>
        <link>https://0xoj.com/</link>
        <description>Security research articles, tools, and insights from 0xOJ - covering physical access control systems, hardware hacking, web security, OSINT, and more.</description>
        <language>en-us</language>
        <managingEditor>oxoj@protonmail.com (0xOJ)</managingEditor>
        <webMaster>oxoj@protonmail.com (0xOJ)</webMaster>
        <lastBuildDate>Sun, 04 Jan 2026 00:00:00 +0000</lastBuildDate>
        <atom:link href="https://0xoj.com/rss.xml" rel="self" type="application/rss+xml"/>
        
        <item>
            <title>All About HID</title>
            <link>https://0xoj.com/research/all-about-hid/</link>
            <guid isPermaLink="true">https://0xoj.com/research/all-about-hid/</guid>
            <pubDate>Sun, 04 Jan 2026 00:00:00 +0000</pubDate>
            <description><![CDATA[HID Global is one of the most prominent manufacturers of access control credentials and readers. Their technologies span both low frequency (125 kHz) and high frequency (13.56 MHz) systems, with varying levels of security. Here in the UK, HID alongside EM410X and MIFARE are among the most common PAC vendors used.]]></description>
        </item>
        
        <item>
            <title>All About MIFARE (HF)</title>
            <link>https://0xoj.com/research/all-about-mifare/</link>
            <guid isPermaLink="true">https://0xoj.com/research/all-about-mifare/</guid>
            <pubDate>Sun, 07 Dec 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Possibly the most common credential you will come across is the MIFARE family of tags. MIFARE technologies can range from super duper secure to rubbish. Forewarning for this article; it will be wordy, because I am attempting to explain cryptographic failures within older MIFARE technologies.]]></description>
        </item>
        
        <item>
            <title>Introduction to Physical Access Control Systems</title>
            <link>https://0xoj.com/research/intro-to-pacs/</link>
            <guid isPermaLink="true">https://0xoj.com/research/intro-to-pacs/</guid>
            <pubDate>Tue, 02 Dec 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Physical Access Control Systems (PACS) are systems that control access to a physical location - they are often used to prevent unauthroised access to buildings, restricted areas and through barriers using Radio Frequency Identification (RFID). You have almost certainly seen them in use at some point, and maybe even interacted with them during a hotel stay.]]></description>
        </item>
        
        <item>
            <title>EM410x (LF)</title>
            <link>https://0xoj.com/research/em410x-lf/</link>
            <guid isPermaLink="true">https://0xoj.com/research/em410x-lf/</guid>
            <pubDate>Mon, 01 Dec 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[The EM410x family of RFID tags are fairly common choices for low frequency access control systems. However, they are inherently insecure due to a multitude of factors. Not unlike other low frequency RFID tags, EM410x tags use a static, unencrypted pre-programmed UID for authentication. This UID is easily readable and copied to other tags for the purposes of cloning.]]></description>
        </item>
        
        <item>
            <title>Long Range RFID Theft</title>
            <link>https://0xoj.com/research/long-range-rfid-theft/</link>
            <guid isPermaLink="true">https://0xoj.com/research/long-range-rfid-theft/</guid>
            <pubDate>Mon, 06 Jan 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Most times during physical engagements, the best way to achieve covert entry during the day or the night is by defeating physical access control systems - this usually involves cloning existing credentials. You could trick people into handing over their credentials under the guise of a fake "free coffee" booth, but that may take a lot of time and resources and comes with its own risks.]]></description>
        </item>
        
        <item>
            <title>Dumping SPI Flash Chip Firmware</title>
            <link>https://0xoj.com/research/dumping-spi-flash-chips/</link>
            <guid isPermaLink="true">https://0xoj.com/research/dumping-spi-flash-chips/</guid>
            <pubDate>Wed, 09 Apr 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Within hardware hacking, there are plenty of techniques that can be used to extract information from a device, interface with it or increase its attack surface - it all really depends on what comes out of your investigations into the device. One such vector is gaining access to the device's firmware, which commonly includes a small linux filesystem of some description.]]></description>
        </item>
        
        <item>
            <title>Finding Hardware Targets</title>
            <link>https://0xoj.com/research/finding-hardware-targets/</link>
            <guid isPermaLink="true">https://0xoj.com/research/finding-hardware-targets/</guid>
            <pubDate>Sat, 05 Apr 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[We all know practice makes perfect - and that's all well and good, until you have to put up cash for it. This is usually the case for hardware hacking, unless you are going through e-waste, or getting absolute steals on eBay, you have to purchase hardware to practice your skills on.]]></description>
        </item>
        
        <item>
            <title>RocketReach - The Best OSINT Tool Ever?</title>
            <link>https://0xoj.com/research/rocketreach-osint-tool/</link>
            <guid isPermaLink="true">https://0xoj.com/research/rocketreach-osint-tool/</guid>
            <pubDate>Wed, 12 Mar 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[When conducting red team engagements (or OSINT assessments for that matter), having access to accurate information about company employees, organisational structures and contact information is incredibly valuable. Many security-oriented tools do a great job, but sometimes even the tools not designed for security can be goldmines.]]></description>
        </item>
        
        <item>
            <title>Finding Hidden Bug Bounty Programs with Google Dorking</title>
            <link>https://0xoj.com/research/google-dorking-for-bug-bounties/</link>
            <guid isPermaLink="true">https://0xoj.com/research/google-dorking-for-bug-bounties/</guid>
            <pubDate>Tue, 11 Mar 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Over the years, the bug bounty universe has matured a lot. Popular platforms like HackerOne, Bugcrowd and Intigriti are swarming with skilled researchers, making it challenging for newcomers to secure their first bounty. What many researchers overlook, however, is the wealth of independent bug bounty programs that aren't hosted on these mainstream platforms.]]></description>
        </item>
        
        <item>
            <title>Email Phishing with HTML Injection</title>
            <link>https://0xoj.com/research/email-phishing-with-html-injection/</link>
            <guid isPermaLink="true">https://0xoj.com/research/email-phishing-with-html-injection/</guid>
            <pubDate>Mon, 10 Mar 2025 00:00:00 +0000</pubDate>
            <description><![CDATA[Contact forms are a really common feature on main company websites and brochureware sites - you've seen them before. Something I haven't seen many people talk about, which I personally have reported on several occasions, is HTML injection in emails. This vulnerability arises (as most application vulnerabilities do) when user input from these forms is inserted directly into emails without proper sanitization.]]></description>
        </item>
        
    </channel>
</rss>
