

Local Linux binary analysis tool. Zero cloud. Zero root. See exactly what a binary does before you run it.

Academic research repository analyzing CVE-2025-47812, a critical RCE vulnerability in Wing FTP Server via Lua injection, including static/dynamic…

A core dump debugging murder mystery.

"In-depth reverse engineering analysis of Vidar Stealer 2.0 covering Task Scheduler tampering (1999 timestamps), Explorer.exe process hollowing, and…

Red team operator and malware developer specializing in evasion techniques, reverse engineering, and initial access operations. Active CVE researcher…

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

CVE-2025-61155 — arbitrary process termination in GameDriverX64.sys (Tower of Fantasy anti-cheat). Original IDA Pro teardown, PoC, YARA, IOCs,…

Technical writeup for CVE-2024-20154

CVE-2026-31431 (Copy Fail) — Análisis y desarrollo en Ensamblador x86-64 | Analysis and development in x86-64 Assembly

Makes IDA (all versions) to crash upon opening it.

A critical local privilege escalation vulnerability has been discovered in Acer NitroSense software (PSAdminAgent.exe). The vulnerability allows any…

BlackLotus-Z2A-Challenge, Nothing to see here 4 now , please move along

Comprehensive reverse engineering and exploitation of CVE-2019-17147, a stack buffer overflow in TP-Link TL-WR841N routers. Includes firmware…

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

CVE-2025-55177 + CVE-2025-43300: reverse-engineering the WhatsApp-ImageIO zero-click iOS chain, with interactive labs.

Analysis for stage1 shellcode loader from hacking

From deobfuscating code.js to root, CVE-2023-0386