Skip to content
PodcastsEducationHacker Public Radio

Hacker Public Radio

Hacker Public Radio
Hacker Public Radio
Latest episode

306 episodes

  • Hacker Public Radio

    HPR4686: Debugging Security Cameras: Firmware Updates, Python Scripts and Windows Workarounds

    20/07/2026
    This show has been flagged as Explicit by the host.

    Show Notes

    Episode Overview

    Operator kicks off the episode feeling under the weather but shares a quick tip for making perfect egg drop soup before diving into his main project: diagnosing why his front-door security camera stopped sending alerts and recording events. What follows is a live-debugging session covering network config, script logging, Windows permission hacks, NTP time drift, and firmware flashing.

    Key Topics & Breakdown

    Egg Drop Soup Hack:
    How to get that perfect ribbony texture by creating a boiling swirl before pouring in the eggs, plus broth-to-egg ratio tips.

    Camera Setup & Network Config:
    Using static DHCP via MAC address binding on a UniFi Dream Machine (UDM) for local domain resolution instead of hardcoding IPs.

    Python & Cron Automation:
    Running a custom Python script every 2 minutes to check for new recordings, parsing logs with
    grep -v
    , and navigating massive log files in
    vi
    .

    Windows Troubleshooting Tangent:
    Deleting the stubborn
    Windows.old
    folder using the TrustedInstaller service hack (
    ExecTI.exe
    ) instead of taking ownership manually.

    Time Sync & Firmware Quirks:
    Discovering the camera's system clock was stuck in 2011/2026, causing missed events. Downloading firmware via a slow third-party link, renaming
    .bin
    to
    .zip
    , and extracting with 7-Zip.

    Pre-Flash Backup Routine:
    Exporting camera configuration before upgrading, storing it in Google Drive for searchable documentation, and clearing old log/trigger files to reset the event pipeline.

    ️ Tools & Techniques Mentioned

    crontab
    + Python scripts for automated monitoring

    grep -v
    ,
    cat
    ,
    tail
    , and
    vi
    (line navigation with
    :1000
    )

    Obsidian for note-taking & AI assistant integration

    Firefox/Playwright for headless browser testing

    Turbo Download Manager & Bolt Media Downloader for multi-threaded/sniffing downloads

    7-Zip for archive extraction

    Google Drive for searchable config backups

    Resources & Links

    Python API Script:

    Uniview IPC3628SR Recording Checker

    Camera Model:

    IPC3628SR
    (Uniview Wyze ISP Warm Light Deterrent Network Camera)

    TrustedInstaller Run-as Tool:

    ExecTI TrustedInstaller Runner

    Quick Takeaways

    Always verify NTP/time sync on IoT cameras before troubleshooting missed events or alerts.

    Use
    grep -v "noise"
    to quickly filter out repetitive log entries when debugging automation scripts.

    Windows system folders can be stubborn; running commands as
    TrustedInstaller
    bypasses hidden file locks without manual ownership changes.

    Always export and back up device configs before flashing firmware, even if the upgrade seems straightforward.

    Third-party download links often use temporary tokens or
    .bin
    wrappers; renaming to
    .zip
    and verifying with 7-Zip can save headaches.

    Thanks for listening! Stay curious, keep your logs clean, and remember: defense in depth starts at home.


    Example trusted installer hack

    # Shhhh I can't IR ... Defender, ForcePoint, SMS Agent Host ...I just can't anymore ...

    sc config TrustedInstaller binPath= "Reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sense" /v Start /t reg_dword /d 4 /f"

    sc start "TrustedInstaller"

    sc config TrustedInstaller binPath= "Reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Fppsvc" /v Start /t reg_dword /d 4 /f"

    sc start "TrustedInstaller"

    sc config TrustedInstaller binPath= "Reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CcmExec" /v Start /t reg_dword /d 4 /f"

    sc start "TrustedInstaller"

    sc config TrustedInstaller binPath= "Reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinDefend" /v Start /t reg_dword /d 4 /f"

    sc config TrustedInstaller binPath= "C:\Windows\servicing\TrustedInstaller.exe"

    Provide feedback on this episode.
  • Hacker Public Radio

    HPR4685: Listening to SSB stations in the early 1980s

    17/07/2026
    This show has been flagged as Clean by the host.

    Lennart tells about the shortwave radio he had in the early 1980s and what he could hear on it, for example he marine band, amateur radio, CB and of course broadcast stations. The radio did not have a BFO to demodulate SSB stations, but using a second radio close by and using its local oscillator he could still make those signals intelligible.

    Provide feedback on this episode.
  • Hacker Public Radio

    HPR4684: Sim Racing on the cheap!

    16/07/2026
    This show has been flagged as Clean by the host.

    Thrustmaster TMX Force Feedback Pro Black Xbox One / Xbox Series X/S / PC





    https://www.ebay.com/itm/157554569422




    Dayton Audio DAEX25 Audio Exciter Pair - Sound Exciter Pair Audio Transducer - 5 Watts RMS, 8 Ohms Impedance - 2 Pack - Turn Any Surface into a Speaker System





    https://www.amazon.com/dp/B001EYEM8C






    https://www.simhubdash.com/






    https://www.accsetupcomparator.com/






    https://www.iracing.com/
    ( they have buy 2 years get discount during holiday but still can't afford it .. )





    https://forza.net/horizon








    DiRT Rally 2.0 GOTY





    https://k4g.com/store?distribution[]=3&q=DiRT%20Rally%202.0%20GOTY&sort=price








    CrewChiefV4





    https://thecrewchief.org/






    https://app.tracktitan.io/sessions/3ebbf63b-93de-4309-9a42-9311a745209d/20241228052252








    SUMMARY.



    User discusses sim racing challenges, costs, and setup tips.



    IDEAS.





    Sim racing requires time and investment.



    I Racing is expensive with annual costs.



    Set of Courses offers one-time payment.



    Proper setup enhances sim racing experience.



    Cable connections can complicate setup.



    Upgrading hardware improves performance.



    Arcade games like Forza offer casual play.



    Realistic sim racing demands dedication.



    License requirements vary between platforms.



    Remote gaming systems save space.



    Steering wheel upgrades improve smoothness.



    Dedicated spaces optimize sim racing.



    Balancing fun and realism is key.



    Multi-launchers manage gaming platforms.



    Hacked accounts may cause issues.



    Monitoring hardware wear is important.



    Shifting mechanisms enhance control.



    Curved monitors improve immersion.



    Time constraints affect sim racing participation.



    Exploring multiple games adds variety.









    RECOMMENDATIONS.





    Consider Set of Courses for a one-time payment.



    Invest in a proper setup for serious sim racing.



    Use a multi-launcher for managing games.



    Upgrade hardware for smoother performance.



    Buy specific tracks and cars to avoid costs.



    Opt for a dedicated space for sim racing.



    Check for license requirements before purchasing.



    Remote into gaming systems to save space.



    Replace plastic parts with bearings for smoother operation.



    Use a 7-speed shifter for better control.



    Avoid hacked accounts for reliability.



    Purchase multiple accounts for different players.



    Focus on arcade games for casual play.



    Prioritize a curved monitor for immersion.



    Use a standing desk for accessibility.



    Monitor cable connections to prevent setup issues.



    Upgrade steering wheel components for better experience.



    Balance fun and realism based on personal preference.



    Consider time investment for sim racing.



    Explore different racing games for variety.







    Provide feedback on this episode.
  • Hacker Public Radio

    HPR4683: Recording the hallway track

    15/07/2026
    This show has been flagged as Clean by the host.

    Recording Kit



    General





    Lanyard - HPR - Your Name



    HPR Business Cards - Your email address



    HPR Stickers



    Pen



    A6 Notebook



    Android Mobile phone
    OpenCamera






    Zoom H2







    Zoom H2 Handy Recorder




    Set format to best and date format to ISO8601



    Replacement Batteries



    Micro USB Cable



    2.5 mm headphones



    3.5 mm Male to Male cable



    3.5 mm earbuds





    Backup 1







    Sansa Clip






    Rockbox




    Remove before flight key fob



    Set format to best and date format to ISO8601





    Backup 2





    Android Mobile phone
    AudioRecorder




    Set format to best and date format to ISO8601







    Provide feedback on this episode.
  • Hacker Public Radio

    HPR4682: Behind the Keyboard: A Cybersecurity Operator’s Real-World Workflow

    14/07/2026
    This show has been flagged as Explicit by the host.









    SUMMARY



    The presenter outlines a practical cybersecurity workflow, covering ergonomic setups, browser isolation, virtual machine troubleshooting, AI-assisted scripting, and network tunneling methods utilized during active security assessments.



    ONE-SENTENCE TAKEAWAY



    Isolate browser environments, utilize automation scripts, and verify network paths before starting security tests to avoid workflow interruptions.



    TOOLS







    Talon Voice
    – Open-source voice recognition software enabling hands-free computer control and command execution.





    Obsidian
    – Local-first markdown note-taking application supporting secure, AI-friendly knowledge management.





    AutoHotkey
    – Windows scripting utility for creating custom macros and remapping keyboard inputs.





    Chrome Debug Commands
    – Browser developer tools allowing direct inspection of extensions, cookies, and storage.





    Whisper Diarization
    – Audio processing script that separates speaker tracks and converts recordings to searchable text.





    Hyper-V / WSL
    – Microsoft virtualization platforms enabling isolated guest environments and Linux subsystem integration.





    OpenConnect / OpenVPN
    – Command-line tunneling clients used for establishing secure, split-tunnel network connections.





    Jamboree Framework
    – Portable PowerShell environment that dynamically provisions development tools without altering system paths.





    MOBA Portable
    – Feature-rich terminal emulator supporting static/dynamic tunnels, auto-reconnect, and embedded X-server capabilities.





    Nmap
    – Network discovery and security auditing tool utilized for comprehensive port scanning and service detection.





    00:00:00 Ergonomic Workspace Configuration



    Configures physical workstation elements to reduce strain during extended testing sessions. Proper alignment prevents repetitive stress injuries while maintaining focus on technical tasks.







    Monitor Positioning
    – Displays should align with eye level to maintain neutral neck posture; the speaker notes their curved 49-inch screen sits slightly high due to chair adjustments.





    Split Keyboard Layout
    – Utilizes a Freestyle 2 mechanical keyboard, allowing natural shoulder-width arm placement and reducing wrist deviation during prolonged typing.





    Postural Adaptation
    – Acknowledges that ergonomic equipment requires matching body alignment; elbow rests should sit between hip and shoulder height for optimal leverage.





    01:45:00 Voice Control & Note Synchronization



    Utilizes auditory input methods and localized knowledge bases to streamline documentation workflows. Separating secure work notes from casual observations prevents data contamination.







    Talon Voice Integration
    – Runs continuously to handle navigation, text entry, and application switching without manual keyboard interaction.





    Obsidian Migration
    – Transitions from cloud-based keep apps to local markdown files, enabling direct querying by local AI models while maintaining offline accessibility.





    Note Categorization
    – Divides information into secure work records and insecure personal logs, ensuring clean data pipelines for future retrieval and analysis.





    03:50:00 Browser Extension Management & Security Isolation



    Separates web browsing activities from primary work processes to minimize attack surfaces. Running dedicated user profiles prevents plugin conflicts and credential leakage.







    Jailed User Accounts
    – Creates restricted system profiles that only launch the browser, isolating extensions from core workstation operations.





    Shared Folder Synchronization
    – Establishes a single directory path bridging work and browsing users, allowing seamless file transfers without cross-contamination.





    Extension Audit Process
    – Leverages Chrome debug commands to enumerate installed plugins, verifying functionality before deployment on target networks.





    06:15:00 Training Optimization & Audio Processing



    Accelerates mandatory compliance viewing through speed manipulation and automated transcription. Converting video content into searchable text enables rapid information retrieval.







    Global Speed Control
    – Increases playback rates up to sixteen times normal speed, drastically reducing time spent on repetitive corporate training modules.





    Whisper Diarization Pipeline
    – Downloads video tracks, separates speaker voices, and generates timestamped transcripts for quick reference during assessments.





    Download Management
    – Employs multi-threaded swarm downloaders and classic turbo managers to handle bulk media retrieval without interrupting active workflows.





    10:40:00 Virtualization & Network Tunneling Protocols



    Establishes isolated testing environments using Windows virtual machines while managing connectivity constraints. Proper session handling prevents unexpected disconnections during remote engagements.







    Enhanced Session Mode
    – A Hyper-V feature providing higher resolution and shared clipboard functionality; disabling it is required before initiating certain VPN clients to avoid routing conflicts.





    Split Tunneling Mechanics
    – Routes specific traffic through the virtual network while keeping local resources accessible, preventing complete internet loss during connection tests.





    Certificate Verification
    – Identifies self-signed SSL mismatches early in the process, documenting them as preliminary findings before proceeding with authentication steps.





    15:30:00 Macro Automation & Input Remapping



    Remaps frequently used keyboard shortcuts to reduce physical strain and accelerate command execution. Running scripts with elevated privileges ensures reliable input registration across virtual environments.







    Caps Lock Repurposing
    – Converts the caps lock key into a primary modifier, assigning copy/paste functions to adjacent letters for faster workflow navigation.





    Physical Typing Macros
    – Simulates keystrokes with deliberate delays, allowing seamless data entry into restricted VM consoles that block standard clipboard operations.





    Administrator Execution Requirement
    – Highlights that macro scripts must run with elevated privileges to successfully inject inputs across different desktop sessions.





    20:15:00 Portable Development Environments & Python Management



    Deploys lightweight scripting frameworks that dynamically provision necessary tools without modifying host configurations. Verifying package contents prevents dependency conflicts during testing.







    Jamboree Framework
    – A PowerShell-driven utility that downloads and configures development stacks on demand, resetting environment variables to maintain system cleanliness.





    NuGet Package Filtering
    – Queries Microsoft's repository API to retrieve specific Python versions, ensuring compatibility with legacy tunneling scripts.





    Binary Verification Process
    – Checks extracted archives for bundled
    pip.exe
    or
    pip3.exe
    executables, eliminating manual module installation steps during rapid deployments.





    28:40:00 AI-Assisted Scripting & Debugging Workflows



    Generates and refines PowerShell functions through iterative conversational prompts. Validating AI output against actual system behavior prevents silent configuration errors.







    Vibe Coding Approach
    – Relies on continuous feedback loops with language models to draft, minimize, and debug automation scripts in real-time.





    Parameter Standardization
    – Enforces strict formatting rules for PowerShell commands, avoiding hardcoded paths and ensuring cross-environment compatibility.





    Temporary Storage Management
    – Monitors extraction directories to prevent disk saturation, redirecting large package downloads away from constrained system partitions.





    35:10:00 Terminal Emulation & Advanced Tunneling Strategies



    Facilitates complex network routing through dedicated terminal applications. Configuring dynamic and static tunnels enables reliable reverse connections for remote assessments.







    MOBA Portable Configuration
    – Utilizes an INI-based tunnel manager that automatically maintains connections across changing IP addresses or Wi-Fi networks.





    Reverse Shell Routing
    – Establishes outbound channels back to the tester, then proxies all subsequent traffic through those connections for consistent monitoring.





    Proxy Chain Integration
    – Forces non-proxy-aware applications to route through Burp Suite or custom interceptors using Windows utility wrappers like Priboxy.





    42:30:00 Final Connectivity Testing & Engagement Wrap-Up



    Executes comprehensive port scans to verify target accessibility before documenting findings. Acknowledging workflow detours ensures realistic time management during active engagements.







    Nmap Verification
    – Runs full-port scans with verbose output to confirm host responsiveness and identify open services prior to credential testing.





    Connection Refusal Documentation
    – Captures screenshot evidence of failed routing attempts, providing clear proof of network restrictions for client reporting.





    Workflow Reflection
    – Recognizes that exploratory debugging adds value but requires time boundaries; balancing thoroughness with engagement scope maintains professional efficiency.







    Provide feedback on this episode.
More Education podcasts
About Hacker Public Radio
Hacker Public Radio is an podcast that releases shows every weekday Monday through Friday. Our shows are produced by the community (you) and can be on any topic that are of interest to hackers and hobbyists.
Podcast website

Listen to Hacker Public Radio, Begin Again with Davina McCall and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features