Blog about my hardware and software projects.

Category: software


  • Finding IDOR vulnerability in ZÁCHRANKA App

    In January 2025, I found an Insecure Direct Object Reference vulnerability in a Czech mobile app for emergency calls “Záchranka“. Below, I share the report (In Czech) I sent immediately after the finding to the Záchranka team. 24. 1. 2025, to fmalenak@zachrankaapp.cz Dobrý den, chtěl bych nahlásit několik zranitelností, které jsem našel v aplikaci Záchranka. …

  • Hisense A9 debloating

    Hisense A9 is a very unique phone that uses an e-ink screen instead of ordinary light-emitting screens. I purchased it to cut down on my phone screen time and to use my phone more intentionally. For past few days I have been trying to debloat the phone. It comes with preinstalled chinese apps. I have…

  • Raspberry camera on Archlinux ARM in 2024

    Update from 12. November 2024: I updated the guide based on a fresh install of Arch Linux ARM on Raspberry Pi 4B (1GB RAM version). To do the fresh install, I followed the installation steps here: https://archlinuxarm.org/platforms/armv8/broadcom/raspberry-pi-4. Then I documented all steps I took to make the camera working. I updated the dependencies, the meson…