<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>RedTeam@MTU</title><link>https://www.redteam.mtu.edu/officers/noahholl/</link><description>Recent content on RedTeam@MTU</description><generator>Source Themes academia (https://sourcethemes.com/academic/)</generator><language>en-us</language><lastBuildDate>Sat, 30 Aug 2025 00:00:00 +0000</lastBuildDate><atom:link href="https://www.redteam.mtu.edu/officers/noahholl/index.xml" rel="self" type="application/rss+xml"/><item><title/><link>https://www.redteam.mtu.edu/officers/noahholl/</link><pubDate>Sat, 30 Aug 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/officers/noahholl/</guid><description>&lt;p&gt;Noah Holland is a cybersecurity undergraduate at Michigan Tech, pursuing the network &amp;amp; systems security concentration. Accustomed to both digital and physical security, his passions include physical access control systems, locksmithing, and operating system security.&lt;/p&gt;
&lt;p&gt;As President of the MTU RedTeam and MTU Linux Users Group, he fosters an environment for students to gain hands-on experience in cybersecurity and system administration.&lt;/p&gt;</description></item><item><title>DEF CON 33</title><link>https://www.redteam.mtu.edu/posts/defcon33/</link><pubDate>Sat, 30 Aug 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/posts/defcon33/</guid><description>&lt;p&gt;The RedTeam just got back from &lt;a href="https://defcon.org/html/defcon-33/dc-33-index.html"&gt;DEF CON 33&lt;/a&gt;, the world&amp;rsquo;s largest hacking conference, in Las Vegas earlier this August! We attended through the &lt;a href="https://physsec.org/"&gt;Physical Security Village&lt;/a&gt; (PSV), who graciously provided the RedTeam with tickets for the event.&lt;/p&gt;
&lt;p&gt;At the con, everyone from the RedTeam helped host the &amp;ldquo;Saflok Exhibit&amp;rdquo;; a booth dedicated to demonstrating how to hack hotel locks, turning a guest key (or even just access to a single lock) into the master key for the whole facility.&lt;/p&gt;
&lt;p&gt;In addition, Josh (a recent Michigan Tech alum) and &lt;a href="https://www.redteam.mtu.edu/officers/noahholl/"&gt;Noah&lt;/a&gt; gave a DEF CON talk about hacking these locks, named &lt;a href="https://www.youtube.com/watch?v=ZODLZuy6H4U"&gt;&amp;ldquo;Hacking Hotel Locks; The Saflok Vulnerabilities Expanded&amp;rdquo;&lt;/a&gt;, which, according to the organizers, was one of the most popular Creator Stage talks! (The slides can be viewed &lt;a href="https://media.defcon.org/DEF%20CON%2033/DEF%20CON%2033%20villages%20and%20creators/DEF%20CON%2033%20-%20Physical%20Security%20Village%20-%20Noah%20Holland%20%26%20Josh%20Stiebel%20-%20Hacking%20Hotel%20Locks%20-%20The%20Saflok%20Vulnerabilities%20Expanded.pdf"&gt;here&lt;/a&gt;)&lt;/p&gt;
&lt;p&gt;We also met many familiar faces! In the crowd, we spotted: &lt;a href="https://www.youtube.com/@lauriewired"&gt;Laurie Wired&lt;/a&gt;, a reverse-engineering expert from Google, &lt;a href="https://www.youtube.com/@_JohnHammond"&gt;John Hammond&lt;/a&gt;, a popular cybersecurity educator, &lt;a href="https://goetzman.com/"&gt;Michael Goetzman&lt;/a&gt;, the host of many amazing conferences in the Midwest (such as &lt;a href="https://www.redteam.mtu.edu/posts/cyphercon8/"&gt;CypherCon&lt;/a&gt; and &lt;a href="https://www.redteam.mtu.edu/posts/secretcon3/"&gt;SecretCon&lt;/a&gt;), and &lt;a href="https://www.youtube.com/deviantollam"&gt;Deviant Ollam&lt;/a&gt;, the leading figure behind much of the modern Physical Security scene!&lt;/p&gt;
&lt;p&gt;We also stumbled upon Jack Bergman and Stu Kernstock, previous RedTeam presidents that were in town for BlackHat, another cybersecurity conference.&lt;/p&gt;
&lt;p&gt;Finally, near the end of our trip, we got a tour of the &lt;a href="https://shop.redteamalliance.com/"&gt;Red Team Alliance&lt;/a&gt; headquarters (located in Las Vegas) from &lt;a href="https://www.pinerisk.com/babak-javadi/"&gt;Babak Javadi&lt;/a&gt;, where we also discussed our Saflok research as their trainings cover similar technologies.&lt;/p&gt;
&lt;p&gt;With the school year now started, we&amp;rsquo;re gearing up for our &lt;a href="https://www.mtu.edu/student-leadership/traditions/k-day/"&gt;K-Day&lt;/a&gt; demonstration! If you&amp;rsquo;re a student at Michigan Tech (or happen to be in the area), we highly recommend you swing by! We will have some free goodies and things you may find interesting ;)&lt;/p&gt;
&lt;div class="gallery" style="display: flex; flex-wrap: wrap; justify-content: center;"&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/exploring-vegas.jpg" data-caption="The crew scouting out hotels around Vegas for our upcoming talk"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/exploring-vegas_hu_98e39885f63d7361.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/sticker-board.jpg" data-caption="Josh checking out a sticker board before DEF CON 33 begins for the first day"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/sticker-board_hu_2072b7c55f4add8b.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-audience.jpg" data-caption="Noah and Josh&amp;amp;rsquo;s talk was packed! Every seat was filled!"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-audience_hu_b85361d36fcf4b22.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-noah.jpg" data-caption="Noah starts off the talk"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-noah_hu_4b66eb4d906bc4a2.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-josh.jpg" data-caption="Josh takes over!"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/talk-josh_hu_86c959d96db0dcc8.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/lucas-maritime-hacking-village.jpg" data-caption="Lucas checking out the Maritime Hacking Village displays"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/lucas-maritime-hacking-village_hu_9be50a0f4d1252ac.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/josh-phone-phreaking.jpg" data-caption="Josh punching buttons on a phone phreaking demo"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/josh-phone-phreaking_hu_e10a19b5bba58315.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/rivian-car-hacking-village.jpg" data-caption="A Rivian R1T parked in the Car Hacking Village for attendees to hack for Bug Bounty rewards!"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/rivian-car-hacking-village_hu_891f5215596134b1.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/redteam-presidents.jpg" data-caption="Noah Holland (left) standing next to Jack Bergman (middle) and Stu Kernstock (right), two previous RedTeam presidents"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/redteam-presidents_hu_9d8d525ec3770b6.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/lockpicking-village.jpg" data-caption="A table in the Lockpicking Village (hosted by TOOOL)"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/lockpicking-village_hu_284a9f8ba74086dc.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/escaping-handcuffs.jpg" data-caption="The RedTeam crew learning how to shim and pick handcuffs from a fellow PSV member"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/escaping-handcuffs_hu_9419880016304555.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/defcon33/gallery/josh-ice-bucket.jpg" data-caption="Josh cooling off after a long 4 days at PSV&amp;amp;rsquo;s after-party"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/defcon33/gallery/josh-ice-bucket_hu_d1c180c24a345a77.jpg" alt=""&gt;
&lt;/a&gt;
&lt;/div&gt;</description></item><item><title>SecretCon 3</title><link>https://www.redteam.mtu.edu/posts/secretcon3/</link><pubDate>Mon, 23 Jun 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/posts/secretcon3/</guid><description>&lt;p&gt;Just two months after &lt;a href="https://www.redteam.mtu.edu/posts/cyphercon8/"&gt;CypherCon 8&lt;/a&gt; in Milwaukee, the RedTeam from &lt;a href="https://www.mtu.edu/"&gt;Michigan Tech&lt;/a&gt; hosted the Access Control Village at &lt;a href="https://secretcon.com/"&gt;SecretCon 3&lt;/a&gt; in St. Paul!&lt;/p&gt;
&lt;p&gt;SecretCon, like CypherCon, is organized by &lt;a href="https://goetzman.com/"&gt;Michael &amp;ldquo;Monster&amp;rdquo; Goetzman&lt;/a&gt;, a Midwesterner with years of experience in the security industry. There were many familiar faces from SecretCon&amp;rsquo;s of years past, as the RedTeam has attended every one since its inception.&lt;/p&gt;
&lt;p&gt;This year, attendees got hands-on access to poke and prod at Physical Access Control Systems (PACS) through the RedTeam&amp;rsquo;s labs.&lt;/p&gt;
&lt;p&gt;Participants ranged from Access Control Integrators who manage these products at a high-level but never understood how they operate at the low-level, to skilled hackers who have dabbled in physical security before, and all the way in-between.&lt;/p&gt;
&lt;p&gt;Many thanks to Brian from BITS, who agreed to send the RedTeam very useful gear from &lt;a href="https://saltosystems.com/en-us/"&gt;Salto&lt;/a&gt; and other access control manufacturers so members could learn more about otherwise hard to come by systems!&lt;/p&gt;
&lt;p&gt;With this conference behind us, we&amp;rsquo;re gearing up for our final conference before the 25–26 school year begins this fall: specifically &lt;a href="https://defcon.org/"&gt;DEF CON 33&lt;/a&gt;—the largest hacker conference in the world—this August! Be sure to swing by the &lt;a href="https://physsec.org/"&gt;Physical Security Village&lt;/a&gt; at DEF CON and say hi, and if you&amp;rsquo;re interested, don&amp;rsquo;t miss &lt;a href="https://www.redteam.mtu.edu/officers/noahholl/"&gt;Noah&lt;/a&gt; and &lt;a href="https://shell.lug.mtu.edu/~jhstiebe/"&gt;Josh&lt;/a&gt;&amp;rsquo;s DEF CON talk: &lt;em&gt;Hacking Hotel Locks; The Saflok Vulnerabilities Expanded&lt;/em&gt;.&lt;/p&gt;
&lt;div class="gallery" style="display: flex; flex-wrap: wrap; justify-content: center;"&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/vandalia-tower.jpg" data-caption="Vandalia Tower, outside SecretCon&amp;amp;rsquo;s venue (Lake Monster Brewing Company)."&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/vandalia-tower_hu_688fcf4e1e7ca0c5.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/secretcon-badge.jpg" data-caption="The awesome badge for this year&amp;amp;rsquo;s SecretCon! Included toggleable animations for the holographic display and a MUD-like puzzle that could be accessed over serial."&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/secretcon-badge_hu_63b6275f7673e06a.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-helping-saflok.jpg" data-caption="Noah helping out an attendee with the Saflok hacking lab"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-helping-saflok_hu_ffe1af31aea22f3b.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/saflok-lab.jpg" data-caption="An attendee going through the Saflok lab"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/saflok-lab_hu_4cad86e279600837.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/decoding-wiegand.jpg" data-caption="An attendee hard at work decoding binary Wiegand signals by hand in the signals lab"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/decoding-wiegand_hu_8045733d2b24c616.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/tapping-saflok-lab.jpg" data-caption="An attendee tapping the reset key on the Saflok demo lock"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/tapping-saflok-lab_hu_e435165ec06a5dc3.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/mifare-lab.jpg" data-caption="An attendee attacking the employee badge in the MIFARE lab"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/mifare-lab_hu_480aa6c117a401f1.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-talking-to-integrators.jpg" data-caption="Noah talking to Access Control integrators about security in the hospitality industry"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-talking-to-integrators_hu_c5287d770ead9803.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-explaining-saflok.jpg" data-caption="Noah explaining the problems with hotel locks to web developers"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/secretcon3/gallery/noah-explaining-saflok_hu_bc1b0a0146eb9ffd.jpg" alt=""&gt;
&lt;/a&gt;
&lt;/div&gt;</description></item><item><title>CypherCon 8</title><link>https://www.redteam.mtu.edu/posts/cyphercon8/</link><pubDate>Sat, 05 Apr 2025 00:00:00 +0000</pubDate><guid>https://www.redteam.mtu.edu/posts/cyphercon8/</guid><description>&lt;p&gt;The RedTeam from &lt;a href="https://www.mtu.edu"&gt;Michigan Tech&lt;/a&gt; just finished wrapping up at &lt;a href="https://cyphercon.com/"&gt;CypherCon 8&lt;/a&gt;!&lt;/p&gt;
&lt;p&gt;Thanks to everyone who helped out with running the event, all the other wards for attending, and &lt;a href="https://goetzman.com/"&gt;Michael Goetzman&lt;/a&gt; for putting it all together.&lt;/p&gt;
&lt;p&gt;We all had a great time hosting our &lt;a href="https://accessvillage.net"&gt;Access Control Village&lt;/a&gt; at CypherCon again this year, we learned even more this second time around!&lt;/p&gt;
&lt;p&gt;This year we had more space, enabling even more attendees to participate in our labs geared towards teaching often-overlooked vulnerabilities in &lt;a href="https://www.avigilon.com/blog/physical-access-control"&gt;Physical Access Control Systems&lt;/a&gt; and locking hardware.&lt;/p&gt;
&lt;p&gt;Some convention attendees even brought their own tools to find new &lt;a href="https://en.wikipedia.org/wiki/Zero-day_vulnerability"&gt;0-day vulnerabilities&lt;/a&gt; in our hotel lab hardware.&lt;/p&gt;
&lt;p&gt;We&amp;rsquo;re extremely grateful to Michael and our University for making this trip possible, and are excited about coming back next year!&lt;/p&gt;
&lt;div class="gallery" style="display: flex; flex-wrap: wrap; justify-content: center;"&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/redteam-minivan.jpg" data-caption="RedTeam en route to CypherCon, HPC Blitz in hand!"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/redteam-minivan_hu_965c1e611088e97a.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/redteam-at-ward.jpg" data-caption="The Redteam around the Access Control Ward!"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/redteam-at-ward_hu_670074670191d840.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/allen-blitz.jpg" data-caption="Allen churning out freshly-cut keys on the HPC Blitz"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/allen-blitz_hu_b7833b4eaf624a3e.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/blitz-closeup.jpg" data-caption="Closeup of our HPC 1200 Blitz key cutting machine"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/blitz-closeup_hu_38a6dfb7a446eeab.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/explaining-saflok.jpg" data-caption="Noah explaining hacking hotel locks to a journalist"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/explaining-saflok_hu_3812db3837b11fec.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/attendees-on-credential-labs.jpg" data-caption="Attendees working on the credential-based labs"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/attendees-on-credential-labs_hu_8ea3a9e076c967bd.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/osdp-lab-closeup.jpg" data-caption="Closeup of an attendee working on a signals lab"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/osdp-lab-closeup_hu_b47db4fd4f68fcb3.jpg" alt=""&gt;
&lt;/a&gt;
&lt;a data-fancybox="gallery-gallery" href="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/saflok-oscilloscope.jpg" data-caption="Security researchers from Praetorian hunting for 0days in our hotel lock hardware"&gt;
&lt;img src="https://www.redteam.mtu.edu/posts/cyphercon8/gallery/saflok-oscilloscope_hu_957f433ad0c82c5b.jpg" alt=""&gt;
&lt;/a&gt;
&lt;/div&gt;</description></item></channel></rss>