<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://ja.meswoolley.co.uk/</id><title>JA.MESWOOLLEY.CO.UK</title><subtitle>Network security, programming, crypto and other things that interest me</subtitle> <updated>2026-03-28T10:41:18+00:00</updated> <author> <name>James Woolley</name> <uri>https://ja.meswoolley.co.uk/</uri> </author><link rel="self" type="application/atom+xml" href="https://ja.meswoolley.co.uk/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://ja.meswoolley.co.uk/"/> <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator> <rights> © 2026 James Woolley </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>TPLink LUA Decompilation</title><link href="https://ja.meswoolley.co.uk/tplinklua/" rel="alternate" type="text/html" title="TPLink LUA Decompilation" /><published>2026-03-28T07:07:33+00:00</published> <updated>2026-03-28T07:07:33+00:00</updated> <id>https://ja.meswoolley.co.uk/tplinklua/</id> <content type="text/html" src="https://ja.meswoolley.co.uk/tplinklua/" /> <author> <name>James</name> </author> <category term="Security" /> <summary>I’ve been doing some research into a Tplink Archer C60 V3 router recently. One of the first steps i take when looking at IOT devices is to get a copy of the firmware. One method is to dump the flash chip and recover it from that. The easier option, which is the case with the TPLink Archer C60 V3, is to just download the firmware from the internet. Many manufactures offer the firmware to downloa...</summary> </entry> <entry><title>VNC Honeypot Setup</title><link href="https://ja.meswoolley.co.uk/vnc-honeypot/" rel="alternate" type="text/html" title="VNC Honeypot Setup" /><published>2025-06-28T08:17:24+01:00</published> <updated>2025-06-28T08:17:24+01:00</updated> <id>https://ja.meswoolley.co.uk/vnc-honeypot/</id> <content type="text/html" src="https://ja.meswoolley.co.uk/vnc-honeypot/" /> <author> <name>Xtrato</name> </author> <category term="Security" /> <summary>The Setup I decided to setup a VNC honeypot. My goal was to essentially spin up an Ubuntu server and configure it in such a way, where when someone connected, it would start a recording of the active VNC session, and once disconnected, would save that recording into a file which i could retrieve at a later date. The overall setup was relatively simple. I started with a fresh Ubuntu installatio...</summary> </entry> <entry><title>HackTheBox: Sau</title><link href="https://ja.meswoolley.co.uk/hackthebox-sau/" rel="alternate" type="text/html" title="HackTheBox: Sau" /><published>2023-09-01T00:00:00+01:00</published> <updated>2023-09-01T00:00:00+01:00</updated> <id>https://ja.meswoolley.co.uk/hackthebox-sau/</id> <content type="text/html" src="https://ja.meswoolley.co.uk/hackthebox-sau/" /> <author> <name>Xtrato</name> </author> <category term="Security" /> <summary>As with all other machines, I started by running an NMap scan against the target: Starting Nmap 7.94 ( https://nmap.org ) at 2023-08-04 13:54 BST Stats: 0:00:47 elapsed; 0 hosts completed (1 up), 1 undergoing Service Scan Service scan Timing: About 50.00% done; ETC: 13:55 (0:00:31 remaining) Nmap scan report for 10.10.11.224 Host is up (0.21s latency). Not shown: 65531 closed tcp ports (reset)...</summary> </entry> <entry><title>Maintaining Persistence using Explorer and DLL Hijacking</title><link href="https://ja.meswoolley.co.uk/persistence-using-dll-hijacking/" rel="alternate" type="text/html" title="Maintaining Persistence using Explorer and DLL Hijacking" /><published>2023-07-27T00:00:00+01:00</published> <updated>2023-07-27T00:00:00+01:00</updated> <id>https://ja.meswoolley.co.uk/persistence-using-dll-hijacking/</id> <content type="text/html" src="https://ja.meswoolley.co.uk/persistence-using-dll-hijacking/" /> <author> <name>Xtrato</name> </author> <category term="Security" /> <summary>Once privileged access has been achieved on a target machine the next step tends to be maintaining persistence. If the target is restarted or a new user logs in, you want to maintain access to the target. Once method of doing this is by using DLL hijacking. DLL hijacking is essentially where you replace a required DLL with a malicious one. So when an application calls for a specific DLL it ins...</summary> </entry> <entry><title>OpenVPN Access Notifications</title><link href="https://ja.meswoolley.co.uk/openvpn-access-notifications/" rel="alternate" type="text/html" title="OpenVPN Access Notifications" /><published>2023-07-17T00:00:00+01:00</published> <updated>2023-07-17T00:00:00+01:00</updated> <id>https://ja.meswoolley.co.uk/openvpn-access-notifications/</id> <content type="text/html" src="https://ja.meswoolley.co.uk/openvpn-access-notifications/" /> <author> <name>Xtrato</name> </author> <category term="Security" /> <summary>Ive recently setup an OpenVPN server on my home network to allow me to connect remotely. I’ve always been quite hesitant to open up any ports on my home firewall as I know it can lead to trouble if done incorrectly. I have setup OpenVPN Access server, and checked all the configurations to ensure that it is setup securely, all users have strong passwords and MFA is being used to allow access. I...</summary> </entry> </feed>
