archive

2026 — 11 posts
How to APT EP. 6: Zero-FD Fileless Payload Execution via System V Shared Memory Stealth, malware
Sep 10
How to APT EP. 5: Reusing the loader’s PIE base for userland exec Malware
Sep 10
Analysis of a new windows unpatched 0day (cve-2026-62737) Kernel, windows
Aug 10
How to APT EP. 4: : The Verifier Forgot It Was a Pointer: Commuted-Add Type Confusion and Container Escapes Kernel Exploitation
Aug 10
How to APT EP. 3: Owning Thread Execution with sched_ext Hashmaps Offensive Security, Linux Kernel Security, Cyber Security Research
Aug 8
How to APT EP.2: Lying to the whole netns through BPF_PROG_TYPE_FLOW_DISSECTOR eBPF, kernel
Aug 2
How to APT EP.1: Bypassing XDP and TC: Stealthy Connection Interception via BPF SK_LOOKUP eBPF Security
Jul 30
Cacheghost: Executing code from the kernel page cache Linux, Kernel, shellcode
Jul 30
I Spent a Week Fuzzing the BPF Verifier's New Circular Number System Kernel
Jul 29
DCOM Permission Misconfiguration in WaaSMedicSvc Enables Unprivileged PPL Process Access Security Research or Vulnerability Analysis
Mar 11
How Windows Delivery Optimization's Trust Chain Can Be Broken Before It Starts Windows Internals
Mar 10