klydz
writing
research
about
search
rss
◑
☰
writing
research
about
search
rss
◑ theme
archive
2026 — 11 posts
How to APT EP. 6: Zero-FD Fileless Payload Execution via System V Shared Memory
Stealth, malware
Sep 10
How to APT EP. 5: Reusing the loader’s PIE base for userland exec
Malware
Sep 10
Analysis of a new windows unpatched 0day (cve-2026-62737)
Kernel, windows
Aug 10
How to APT EP. 4: : The Verifier Forgot It Was a Pointer: Commuted-Add Type Confusion and Container Escapes
Kernel Exploitation
Aug 10
How to APT EP. 3: Owning Thread Execution with sched_ext Hashmaps
Offensive Security, Linux Kernel Security, Cyber Security Research
Aug 8
How to APT EP.2: Lying to the whole netns through BPF_PROG_TYPE_FLOW_DISSECTOR
eBPF, kernel
Aug 2
How to APT EP.1: Bypassing XDP and TC: Stealthy Connection Interception via BPF SK_LOOKUP
eBPF Security
Jul 30
Cacheghost: Executing code from the kernel page cache
Linux, Kernel, shellcode
Jul 30
I Spent a Week Fuzzing the BPF Verifier's New Circular Number System
Kernel
Jul 29
DCOM Permission Misconfiguration in WaaSMedicSvc Enables Unprivileged PPL Process Access
Security Research or Vulnerability Analysis
Mar 11
How Windows Delivery Optimization's Trust Chain Can Be Broken Before It Starts
Windows Internals
Mar 10