//
sign in
Profile
by @danabra.mov
Profile
by @dansshadow.bsky.social
Profile
by @jimpick.com
AviHandle
by @danabra.mov
AviHandle
by @dansshadow.bsky.social
AviHandle
by @katherine.computer
EventsList
by @katherine.computer
ProfileHeader
by @dansshadow.bsky.social
ProfileHeader
by @danabra.mov
ProfileMedia
by @danabra.mov
ProfilePlays
by @danabra.mov
ProfilePosts
by @danabra.mov
ProfilePosts
by @dansshadow.bsky.social
ProfileReplies
by @danabra.mov
Record
by @atsui.org
Skircle
by @danabra.mov
StreamPlacePlaylist
by @katherine.computer
+ new component
Profile
Loading...
| CyberSecurity | Reverse Engineering | C and Rust | Exploit | Linux kernel | PhD | Only My Opinions :) |
0xor0ne









Loading...
DirtyCBC: Local root shell on Linux using a page-cache poisoning primitive in AF_RXRPC’s RxGK path delphoslabs.com/blog/3614237... #infosec
Taxonomy of Android software protection techniques + APKiD analysis of ~2.5M apps blog.quarkslab.com/practical-an... #infosec
24d
3d
Linux kernel page-cache poisoning via AES-256 chosen-plaintext on the RxGK RESPONSE path and why authenticated encryption did not stop it.
delphoslabs.com
DirtyCBC: When Linux Kernel Decrypt-Before-MAC Turns Authenticated Encryption Into a Page-Cache Write → Delphos Labs
0xor0ne
0xor0ne
FreeBSD 14.x kernel local privilege escalation via setcred(2) fatgid.io #infosec
DirtyFree: Linux kernel Data-Oriented Programming ()DOP exploitation via the arbitrary free primitive (paper) leeyoochan.github.io/assets/pdf/D... #Linux #infosec
Exploiting a page Use-After-Free in Qualcomm's AI Accelerator Linux Kernel Driver (qaic) lukasmaar.github.io/posts/qaic-p... Credits Lukas Maar #infosec
Reverse engineering and exploiting TP-LINK TAPO security cameras labs.taszk.io/articles/pos... #infosec
Single-stepping attack on TrustZone-M via interrupt-latency leakage (Usenix paper) www.usenix.org/system/files... #infosec
Static Devirtualization of Themida back.engineering/blog/09/05/2... #infosec
HDD firmware hacking: dumping/analyzing/modifying the drive firmware and debugging via JTAG icode4.coffee?p=1465 Credits Ryan Miceli #infosec
Cisco Catalyst SD-WAN Controller auth bypass in vdaemon DTLS via spoofed vHub device type (CVE-2026-20182) www.rapid7.com/blog/post/ve... #infosec
18d
17d
8d
1mo
16d
1mo
27d
26d
FatGid - FreeBSD 14.x kernel LPE
A four-byte type, an eight-byte stride, one root shell.
fatgid.io
lukasmaar.github.io
Exploiting Qualcomm's QAIC Kernel Driver | Lukas Maar
Exploiting TP-Link Home Security Smart Cameras
labs.taszk.io
TAPOcalypse Now: Exploiting TP-Link Smart Devices From Anywhere
This article demonstrates devirtualization of CodeVirtualizer/Themida protected code, however the techniques described here apply to pretty much every virtual machine based obfuscator. Only requiring ...
back.engineering
Static Devirtualization of Themida
Do you know how a hard drive works? Come find out with me as I dump, reverse engineer, and modify the firmware on various HDDs and SSDs.
icode4.coffee
HDD Firmware Hacking Part 1
0xor0ne
0xor0ne
0xor0ne
0xor0ne
0xor0ne
0xor0ne
0xor0ne
0xor0ne