
CVE-2016-1734
Binary diff and analysis of AppleUSBNetworking.kext for CVE-2016-1734, a macOS kernel USB networking vulnerability. Includes patch verification and…

Binary diff and analysis of AppleUSBNetworking.kext for CVE-2016-1734, a macOS kernel USB networking vulnerability. Includes patch verification and…

Ghidra-based tool for detecting and analyzing the Log4j vulnerability (CVE-2021-44228) in binary files, enabling reverse engineering of affected…

Technical analysis of CVE-2021-25801 in VLC's AVI parser, demonstrating an out-of-bounds read via crafted sub-index chunks and providing a…

In-depth technical analysis of CVE-2021-25804, a VLC AVI parser vulnerability. Includes root cause, patch diff, and exploitation primitives for…

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar pointer is dereferenced…

N-DAY VULNERABILITY RESEARCH (FROM PATCH TO EXPLOIT ANALYSIS OF CVE-2021-41081)

Public Disclosure of CVE-2024-10930

Custom version of sudo 1.8.3p1 with CVE-2021-3156 patches applied

C library for stack unwinding and backtrace generation across multiple architectures, providing APIs for programmatic inspection of call stacks and…

In-depth reverse engineering analysis of Lumma Stealer, an info-stealer using process hollowing, Native API calls, and C2 communication. Includes…

C++ library to load DLLs directly from memory without touching disk, with exception handling support, enabling stealthy code execution and evasion of…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

A revival of the classic and legendary KsDumper

Proof-of-concept exploit for CVE-2026-85769, a heap out-of-bounds read in libtpms TPM 2.0 state deserialization, demonstrating denial of service via…

Root-cause analysis and patch validation of CVE-2023-52356 in libtiff using AddressSanitizer and GDB.

Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.