<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: EatonZ</title><link>https://news.ycombinator.com/user?id=EatonZ</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 25 Jun 2026 01:47:40 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=EatonZ" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by EatonZ in "Exploiting vulnerabilities in Johnson and Johnson web apps"]]></title><description><![CDATA[
<p>Thank you for the laugh (:</p>
]]></description><pubDate>Thu, 25 Jun 2026 00:17:04 +0000</pubDate><link>https://news.ycombinator.com/item?id=48667179</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=48667179</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48667179</guid></item><item><title><![CDATA[Exploiting vulnerabilities in Johnson and Johnson web apps]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2026/06/24/jnj-webapp-hacks/">https://eaton-works.com/2026/06/24/jnj-webapp-hacks/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=48662347">https://news.ycombinator.com/item?id=48662347</a></p>
<p>Points: 72</p>
<p># Comments: 4</p>
]]></description><pubDate>Wed, 24 Jun 2026 16:33:48 +0000</pubDate><link>https://eaton-works.com/2026/06/24/jnj-webapp-hacks/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=48662347</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48662347</guid></item><item><title><![CDATA[Using cookies to hack into a tech college's admission system]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2026/03/09/skcet-hack/">https://eaton-works.com/2026/03/09/skcet-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=47309169">https://news.ycombinator.com/item?id=47309169</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 09 Mar 2026 14:00:14 +0000</pubDate><link>https://eaton-works.com/2026/03/09/skcet-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=47309169</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47309169</guid></item><item><title><![CDATA[Hacking a pharmacy to get free prescription drugs and more]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2026/02/13/dava-india-hack/">https://eaton-works.com/2026/02/13/dava-india-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=47014391">https://news.ycombinator.com/item?id=47014391</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Sat, 14 Feb 2026 13:30:27 +0000</pubDate><link>https://eaton-works.com/2026/02/13/dava-india-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=47014391</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47014391</guid></item><item><title><![CDATA[I'm The Captain Now: Hijacking a global ocean supply chain network]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2026/01/14/bluspark-bluvoyix-hack/">https://eaton-works.com/2026/01/14/bluspark-bluvoyix-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=46617014">https://news.ycombinator.com/item?id=46617014</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 14 Jan 2026 15:19:25 +0000</pubDate><link>https://eaton-works.com/2026/01/14/bluspark-bluvoyix-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=46617014</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46617014</guid></item><item><title><![CDATA[A Cracker Barrel Vulnerability]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2025/11/17/cracker-barrel-hack/">https://eaton-works.com/2025/11/17/cracker-barrel-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=45954601">https://news.ycombinator.com/item?id=45954601</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 17 Nov 2025 15:45:29 +0000</pubDate><link>https://eaton-works.com/2025/11/17/cracker-barrel-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=45954601</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45954601</guid></item><item><title><![CDATA[New comment by EatonZ in "Hacking India's largest automaker: Tata Motors"]]></title><description><![CDATA[
<p>TruffleHog: <a href="https://trufflesecurity.com/trufflehog" rel="nofollow">https://trufflesecurity.com/trufflehog</a><p>I worked for them a little bit and their product is really impressive and works great.</p>
]]></description><pubDate>Sat, 01 Nov 2025 13:43:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=45781585</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=45781585</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45781585</guid></item><item><title><![CDATA[New comment by EatonZ in "Hacking India's largest automaker: Tata Motors"]]></title><description><![CDATA[
<p>Appreciate the insight!</p>
]]></description><pubDate>Sat, 01 Nov 2025 13:42:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=45781576</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=45781576</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45781576</guid></item><item><title><![CDATA[Hacking India's largest automaker: Tata Motors]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2025/10/28/tata-motors-hack/">https://eaton-works.com/2025/10/28/tata-motors-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=45741569">https://news.ycombinator.com/item?id=45741569</a></p>
<p>Points: 273</p>
<p># Comments: 99</p>
]]></description><pubDate>Wed, 29 Oct 2025 01:31:56 +0000</pubDate><link>https://eaton-works.com/2025/10/28/tata-motors-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=45741569</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45741569</guid></item><item><title><![CDATA[Taking remote control over industrial generators]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2025/10/06/industrial-generator-hack/">https://eaton-works.com/2025/10/06/industrial-generator-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=45492434">https://news.ycombinator.com/item?id=45492434</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 06 Oct 2025 15:27:28 +0000</pubDate><link>https://eaton-works.com/2025/10/06/industrial-generator-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=45492434</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45492434</guid></item><item><title><![CDATA[Intel Outside: Hacking every Intel employee and various internal websites]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2025/08/18/intel-outside-hack/">https://eaton-works.com/2025/08/18/intel-outside-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=44941100">https://news.ycombinator.com/item?id=44941100</a></p>
<p>Points: 16</p>
<p># Comments: 2</p>
]]></description><pubDate>Mon, 18 Aug 2025 14:34:33 +0000</pubDate><link>https://eaton-works.com/2025/08/18/intel-outside-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=44941100</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44941100</guid></item><item><title><![CDATA[New comment by EatonZ in "Exploiting McDonald's APIs to hijack deliveries and order food for a penny"]]></title><description><![CDATA[
<p>There are certainly more things I could have done to get more $/hour. I ultimately find these things enjoyable and help keep my skills sharp.</p>
]]></description><pubDate>Fri, 20 Dec 2024 17:44:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=42473135</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=42473135</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42473135</guid></item><item><title><![CDATA[New comment by EatonZ in "Exploiting McDonald's APIs to hijack deliveries and order food for a penny"]]></title><description><![CDATA[
<p>It would be nice to see rewards that scale with severity. Ultimately they did accomodate me by sending a gift card I can use instead of coupons I would likely have given away, so I appreciate that. Most companies don't offer me anything!</p>
]]></description><pubDate>Fri, 20 Dec 2024 00:23:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=42467162</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=42467162</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42467162</guid></item><item><title><![CDATA[Exposed Honeywell API Gave Us Control over an Internal Engineering System]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.traceable.ai/blog-post/how-1-exposed-honeywell-api-gave-us-control-over-an-internal-engineering-system">https://www.traceable.ai/blog-post/how-1-exposed-honeywell-api-gave-us-control-over-an-internal-engineering-system</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=41329909">https://news.ycombinator.com/item?id=41329909</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 23 Aug 2024 15:40:08 +0000</pubDate><link>https://www.traceable.ai/blog-post/how-1-exposed-honeywell-api-gave-us-control-over-an-internal-engineering-system</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=41329909</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41329909</guid></item><item><title><![CDATA[Patching clientside React JavaScript to gain admin access to a Siemens cloud app]]></title><description><![CDATA[
<p>Article URL: <a href="https://thenewstack.io/plug-security-holes-in-react-apps-that-can-lead-to-api-exploitation/">https://thenewstack.io/plug-security-holes-in-react-apps-that-can-lead-to-api-exploitation/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=41123411">https://news.ycombinator.com/item?id=41123411</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 31 Jul 2024 21:00:22 +0000</pubDate><link>https://thenewstack.io/plug-security-holes-in-react-apps-that-can-lead-to-api-exploitation/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=41123411</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=41123411</guid></item><item><title><![CDATA[Hacking into an insurance company by exploiting their premium calculator]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2024/01/17/ttibi-email-hack/">https://eaton-works.com/2024/01/17/ttibi-email-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=39030302">https://news.ycombinator.com/item?id=39030302</a></p>
<p>Points: 459</p>
<p># Comments: 101</p>
]]></description><pubDate>Wed, 17 Jan 2024 16:57:29 +0000</pubDate><link>https://eaton-works.com/2024/01/17/ttibi-email-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=39030302</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=39030302</guid></item><item><title><![CDATA[Tapping into a telecommunications company's office cameras]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2023/11/14/telecom-camera-hack/">https://eaton-works.com/2023/11/14/telecom-camera-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=38267990">https://news.ycombinator.com/item?id=38267990</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 14 Nov 2023 19:11:28 +0000</pubDate><link>https://eaton-works.com/2023/11/14/telecom-camera-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=38267990</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=38267990</guid></item><item><title><![CDATA[Compromising Honda's entire dealer eCommerce platform and 1k dealer websites]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2023/06/06/honda-ecommerce-hack/">https://eaton-works.com/2023/06/06/honda-ecommerce-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=36214726">https://news.ycombinator.com/item?id=36214726</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 06 Jun 2023 15:53:18 +0000</pubDate><link>https://eaton-works.com/2023/06/06/honda-ecommerce-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=36214726</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=36214726</guid></item><item><title><![CDATA[Insecure Toyota CRM exposed Mexican customer information]]></title><description><![CDATA[
<p>Article URL: <a href="https://eaton-works.com/2023/03/06/toyota-c360-hack/">https://eaton-works.com/2023/03/06/toyota-c360-hack/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=35045143">https://news.ycombinator.com/item?id=35045143</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 06 Mar 2023 18:18:50 +0000</pubDate><link>https://eaton-works.com/2023/03/06/toyota-c360-hack/</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=35045143</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=35045143</guid></item><item><title><![CDATA[New comment by EatonZ in "Ask HN: Who wants to be hired? (March 2023)"]]></title><description><![CDATA[
<p>Location: Florida, USA<p>Remote: Yes<p>Willing to relocate: No<p>Résumé/CV: <a href="https://eaton-works.com/resume/" rel="nofollow">https://eaton-works.com/resume/</a><p>Email: eaton@eaton-works.com<p>I am an experienced C# / .NET Windows desktop developer of more than 15 years with an interest in file systems, reverse-engineering, and security. Some of my recent security disclosures have been front-page news on major media outlets such as Automotive News[1] and TechCrunch[2].<p>Currently seeking new opportunities in the C# / .NET and/or security space.<p>Please see my website for a full catalog of my notable work: <a href="https://eaton-works.com/" rel="nofollow">https://eaton-works.com/</a><p>[1] <a href="https://www.autonews.com/mobility-report/how-toyotas-supplier-portal-got-hacked" rel="nofollow">https://www.autonews.com/mobility-report/how-toyotas-supplie...</a><p>[2] <a href="https://techcrunch.com/2022/06/22/jacuzzi-flaws-admin-exposed-users/" rel="nofollow">https://techcrunch.com/2022/06/22/jacuzzi-flaws-admin-expose...</a></p>
]]></description><pubDate>Wed, 01 Mar 2023 17:33:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=34985337</link><dc:creator>EatonZ</dc:creator><comments>https://news.ycombinator.com/item?id=34985337</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=34985337</guid></item></channel></rss>