
ghostlock — Updated!
Tracking GhostLock (CVE-2026-43499), the rtmutex/futex stack use-after-free
Short editorial updates from published cybersecurity tools.

Tracking GhostLock (CVE-2026-43499), the rtmutex/futex stack use-after-free

Incident Response (IR) case study documenting the investigation of an exploitation attempt targeting CVE-2024-24919 (Arbitrary File Read) on a Check…

A critical vulnerability affecting Fastjson versions 1.2.68 – 1.2.83.

Kankun Smart Socket Hijacker and Sniffer. The kankun smart socket and its mobile app use a hardcoded AES 256 bit key to encrypt and decrypt…

Full VAPT writeup of OWASP CICD-Goat — 9 CTFd flags captured, 4 critical + 5 high findings (incl. CVE-2024-23897) mapped to the OWASP Top 10 CI/CD…

CVE-2026-8347 is an Insecure Direct Object Reference (IDOR) combined with a wrong authorization level vulnerability in Concrete CMS versions 9.5.0…

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

SQL Injection vulnerability in MikroORM

VisualCodeGrepper - Code security scanning tool.

A brute force program to test weak accounts configured to access a JMX Registry

IPMI stuff from DARPA work

Undocumented RCE in PLY via `picklefile` Parameter