Thijs Bosschert
@thice.bsky.social
190 followers 120 following 110 posts
Allround Security, IR & SOC professional. Escape room, CTF & game creator. Organizer WHY2025 CTF. Mediocre lockpicker. CTF teams: Eindbazen, Jobless Hackers and Spotless. https://cybersecurity-escaperoom.com/ https://thice.nl/ https://ctf.why2025.org
Posts Media Videos Starter Packs
Reposted by Thijs Bosschert
How do you entertain 3,500 hackers?
Thijs Bosschert shows how CTFs and the Secret Token Game at WHY2025 trained, inspired, and engaged hackers.
Check it out: youtu.be/u6IV6TbIqZ0?...
How To Entertain 3500 Hackers - Thijs Bosschert
youtu.be
Mooi doosje om een tracker in te plaatsen en te doen alsof het voor marters is... 🤔
The system of the dot patterns seems to be Optical Identification (OID), and multiple versions exist:

www.sonix.com.tw/category-en-...
OID(Optical ID) - 松翰科技
OID(Optical ID)
www.sonix.com.tw
The Tiptoi hardware has been analyzed before by multiple people, and there are quite some resources online which give information on how it works.
This page contains information on the encoding of the dot patterns: github.com/entropia/tip...
PEN Optical ID and codes
Trying to understand the file format of Tip Toi. Contribute to entropia/tip-toi-reveng development by creating an account on GitHub.
github.com
Another toy that uses a similar system are the Vtech Magi books.
The system of using small patterns looks similar to the system the Tiptoi books use.
When looking really close at the barcodes they contain a pattern of very tiny dots.
The scanner can scan the barcodes of the mini's but it does not really scan the actual barcode. The barcodes for all minis are the same.
The scanner is made by the same company that created the AH soundbox hardware.
Albert Heijn (AH) has another cool piece of hardware in its newest promotion "Mini winkeltje". They created a working mini handscanner which can scan the small mini products which are part of the promotion.
In the bus to @orangecon.nl, someone's exploit needs a bit more tuning I think.
Awesome, OrangeCon has a CTF! 🥳
Ready to test your skills? OrangeCon 2025 will have a CTF with Beginner & Advanced categories!
Prizes? Win a Flipper or a HackRF! Don’t miss out!
Oh and dont forget to check out our full conference schedule --> orangecon.nl#schedule
OrangeCon
Experience the Hackers Community in The Netherlands! OrangeCon is a community driven, non-profit Cybersecurity Conference in the heart of The Netherlands. Meet old and new friends, listen to talks of…
orangecon.nl
Maar stiekem is Zip best een goede game 😬
Reposted by Thijs Bosschert
Played the @why2025.bsky.social CTF over the weekend 💜 Here's some web challenge writeups 👇

book.cryptocat.me/ctf-writeups...
Web | CTF Writeups
book.cryptocat.me
KLM data breach notification
Reposted by Thijs Bosschert
Lot’s of stuff is already working like toilets and showers! But we need more hands on the field!
Reposted by Thijs Bosschert
⛺️ Phrack at WHY @why2025.bsky.social

🗓️ Sat Aug 9
📰 19:00 Issue #72 print drop (2250 copies!)
🎉 20:30 Party at @milliways.bsky.social (1200 cups. Free beer.)

40 years of hacker history. Be there.
#WHY2025
Is the release party going to be on the 8th or on the 9th? The schedule on the Milliway page shows the 9th:

wiki.why2025.org/Village:Mill...

(I am trying to make sure I can get my hands on one of those cups, the CTF starts at 18:00 and my own talk is at 20:00 on the 8th 😁)
Village:Milliways - WHY2025 wiki
https://wiki.why2025.org/Village:Milliways#20:30_PHRACK_#72_RELEASE_PARTY