Fail Of The Week: Hackaday Writer Attempts XBox Repair

Like a lot of Hackaday readers, I pride myself on being “the fix-it guy” in my family. When something breaks, I get excited, because it’s a chance to show off my skills. It’s especially fun when something major breaks, like the fridge or the washing machine — repairs like that are a race against time, since I’ve got to get it fixed faster than it would take to hire someone to do it. I usually win the race; I can’t remember the last time I paid someone to work on something. Like I said, it’s a point of pride.

And so when my son came home on Thanksgiving break from his first semester away at college, eager to fire up his Xbox for some mindless relaxation from his biochemistry studies, only to be greeted with a black screen and no boot-up, it was go-time for me. I was confident that I’d be able to revive the dead box in time for him to have some fun. The fact that he’s back at school and the machine is still torn apart on my bench testifies to my hubris, but to be fair, I did get close to a fix, and may still yet get it done. But either way, the lessons I’ve learned along the way have been really valuable and worth sharing.

Continue reading “Fail Of The Week: Hackaday Writer Attempts XBox Repair”

Spacing Out: Telescopes, Politics, And Spacecraft Design

Let’s launch into a round-up of stories that are out of this world, as we take a look at what’s happening in the realm of space exploration.

Ten Billion Dollars For A Telescope? Don’t Drop It!

Perhaps the most highly anticipated space mission of the moment is the James Webb Space Telescope, an infra-red telescope that will be placed in an orbit around the Earth-Sun L2 Lagrange point from which it will serve as the successor to the now long-in-the-tooth Hubble telescope. After many years of development the craft has been assembled and shipped to French Guiana for a scheduled Ariane 5 launch on the 22nd of December. We can only imagine what must have gone through the minds of the engineers and technicians working on the telescope when an unplanned release of a clamp band securing it to the launch vehicle adapter sent a vibration throughout the craft. Given the fragility of some of its components this could have jeopardised the mission, however after inspection it was found that no damage had occurred and that space-watchers and astronomers alike can breathe easy.

Continue reading “Spacing Out: Telescopes, Politics, And Spacecraft Design”

Twin jet engines mounted on tank treads

Big Wind Is The Meanest Firefighting Tank You Ever Saw

As the Iraqi army retreated at the end of the first Gulf War, they took the term “scorched Earth policy” quite literally. Kuwaiti oil wells were set alight en masse, creating towering infernos that blackened the sky.

As it turns out, extinguishing a burning oil well is no easy feat. In the face of this environmental disaster, however, a firefighting team from Hungary made a name for themselves out on the desert sands, astride a jet-engined tank named Big Wind.

Continue reading “Big Wind Is The Meanest Firefighting Tank You Ever Saw”

Hackaday Links Column Banner

Hackaday Links: December 5, 2021

Sad news from Germany, with the recent passing of a legend in the crypto community: Mr. Goxx, the crypto-trading hamster. The rodent rose to fame in the crypto community for his trades, which were generated at random during his daily exercise routines — his exercise wheel being used like a roulette wheel to choose a currency, and a pair of tunnels determined whether the transaction would be a buy or sell. His trading career was short, having only started this past June, but he was up 20% over that time — that’s nothing to sneeze at. Our condolences to Mr. Goxx’s owners, and to the community which sprung up around the animal’s antics.

It might seem a little early to start planning which conferences you’d like to hit in 2022, but some require a little more lead time than others. One that you might not have heard of is DINACON, the Digital Naturalism Conference, which explores the intersection of technology and the natural world. The con is set for the entire month of July 2022 and will be held in Sri Lanka. It has a different structure than most cons, in that participants attend for a week or so on a rotating basis, much like a biology field station summer session. It sounds like a lot of fun, and the setting couldn’t be more idyllic.

If you haven’t already killed your holiday gift budget buying NFTs, here’s something you might want to consider: the Arduino Uno Mini Limited Edition. What makes it a Limited Edition, you ask? Practically, it’s the small footprint compared to the original Uno and the castellated edges, but there are a bunch of other extras. Each elegant black PCB with gold silk screening is individually numbered and comes in presentation-quality packaging. But the pièce de résistance, or perhaps we should say the cavallo di battaglia, is that each one comes with a hand-signed letter from the Arduino founders. They honestly look pretty sharp, and at $45, it’s really not a bad collector’s piece.

And finally, the YouTube algorithm giveth again, when this infrastructure gem popped up in our feed. You wouldn’t think there’d be much of interest to see in a water main repair, but you’d be wrong, especially when that main is 50′ (15 m) below the surface, and the repair location is 600′ (183 m) from the access hatch. Oh yeah, and the pipe is only 42″ (1 m) in diameter, and runs underneath a river. There’s just so much nope in this one, especially since the diver has to swim into a special turning elbow just to get pointed in the right direction; how he turns around to swim out is not worth thinking about. Fascinating tidbits include being able to see the gravel used to protect the pipe in the riverbed through the crack in the pipe, and learning that big water mains are not completely filled, at least judging by the small air space visible at the top of the pipe. Those with claustrophobia are probably best advised to avoid this one, but it’s still amazing to see how stuff like this is done.

Continue reading “Hackaday Links: December 5, 2021”

Finally, A Use For Old Cellphones

In what is now a three-year long search, I’ve finally found the perfect use for an old cellphone. And with it, the answer to a burning question: Why aren’t we hacking cellphones?

First, the application. The Octo4a project lets you use an old Android phone as a 3D printer server, web interface, and even time-lapse camera to make those nice movies where the print seems to grow up out of nothing before your eyes. It’s the perfect application for an old phone, making use of the memory, WiFi, graphics capabilities, and even the touch-screen if you want local control of your prints.

Connecting to the phone was the main hurdle that I’ve always seen in developing for cellphone projects, because I have robotics applications in mind. But Octo4a gets around this with low or no effort. Most 3D printers are designed to run on USB anyway, so connecting it to the phone is as simple as buying a USB OTG cable. With the USB port taken over, powering the phone long-run becomes a tiny problem, which can be solved with a Y-cable or a little solder. Keep the OS from going to sleep, somehow, and it’s problem solved!

But here’s why this isn’t a solution, and it points out the deeper problem with cellphone hacking that many pointed out in the comments three years ago. Octoprint is written in Python, and because of this is very easy to write extensions for and to hack on, if that’s your thing. When I first saw Octo4a, I thought “oh great, a working Android Python port”. Then I went to dig into the code.

Octo4a is written in Kotlin and uses the Gradle framework. It’s a complete port of Octoprint, not just to a different platform, but to a different programming language and to an almost entirely different programming paradigm. My hat is off to [feelfreelinux] for doing it, but my guess is that the community of other people fluent enough in Kotlin and Python to help port across upstream changes in Octoprint is a lot smaller than the community of Python programmers would have been. Octo4a is a great project, but it’s not a walk in the park to develop on it.

So all of you who wrote in the comments to my previous piece that it’s the Android software ecosystem that’s preventing phone reuse, well here’s the exception that proves your rule! A dedicated and talented, multi-lingual developer community could pull it off, but the hurdle is so high that few will rise to it.

Anyway, thanks [Feelfree Filip] for your great work! I’ll be putting this on my old S4.

Hackaday Podcast 147: Animating Traces, Sucking And Climbing, Spinning Sails, And Squashing Images

Hackaday editors Mike Szczys and Elliot Williams get caught up on the week that was. You probably know a ton of people who have a solar array at their home, but how many do you know that have built their own hydroelectric generation on property? Retrocomputing software gurus take note, there’s an impressive cross-compiler in town that can spit out working binaries for everything from C64 to Game Boy to ZX Spectrum. Tom took a hard look at the Prusa XL, and Matthew takes us back to school on what UEFI is all about.

Take a look at the links below if you want to follow along, and as always, tell us what you think about this episode in the comments!

Direct download (55 MB)

Continue reading “Hackaday Podcast 147: Animating Traces, Sucking And Climbing, Spinning Sails, And Squashing Images”

This Week In Security: GoDaddy, Tardigrade, Monox, And BigSig

After the Thanksgiving break, we have two weeks of news to cover, so hang on for an extra-long entry. First up is GoDaddy, who suffered a breach starting on September 6th. According to an SEC filing, they noticed the problem on November 17th, and determined that there was unauthorized access to their provisioning system for their WordPress hosting service. For those keeping track at home, that’s two months and eleven days that a malicious actor had access. And what all was compromised? The email address and customer number of the approximate 1.2 million GoDaddy WordPress users; the initial WordPress password, in the clear; the SFTP and database passwords, also in the clear; and for some customers, their private SSL key.

The saving grace is that it seems that GoDaddy’s systems are segregated well enough that this breach doesn’t seem to have led to further widespread compromise. It’s unclear why passwords were stored in the clear beyond the initial setup procedure. To be safe, if you have a WordPress instance hosted by GoDaddy, you should examine it very carefully for signs of compromise, and rotate associated passwords. The SSL keys may be the most troubling, as this would allow an attacker to impersonate the domain. Given the length of time the attack had access, it would not surprise me to learn that more of GoDaddy’s infrastructure was actually compromised. Continue reading “This Week In Security: GoDaddy, Tardigrade, Monox, And BigSig”