This year, I created several challenges for #balsnctf
One of my favorite is the Unicorn’s Aisle series, which features escaping emulator and gaining host arbitrary code execution with unicorn features and 0day
Here’s the writeup for it, enjoy : )
github.com/jwang-a/CTF/tr…
I organized my notes and made it into slides when I learn about segment heap .
If you find something wrong, please let me know.
Hope it can be helpful fo those who want to learn segment heap in windows kernel.
speakerdeck.com/scwuaptx/windo…
My exploit for my challenges at HITCON CTF 2020 github.com/scwuaptx/CTF/t…
Lucifer challenge is a segment heap challenge in windows kernel.
You need to use named pipe to spray in nonpaged pool and use it to do arbitrary memory reading.
Hope everyone can learn more from our CTF.
Balsn CTF 2020 has ended!
Congratulations to the top 3:
🥇 Super⚔️Blue
🥈 The Flat Network Society
🥉 10sec
Thanks to all teams for participating in Balsn CTF! We hope you enjoy this party!
Last week, Ubuntu 20.10 was released. Feel free to read my post on how I fuzzed eBPF, as well as a vulnerability breakdown of CVE-2020-27194 which is exploitable on the new Ubuntu release. (You can just skip to the vuln write up). scannell.me/fuzzing-for-eb…
I tried to collect the resources available for someone to get started in macOS security. If I missed something please let me know.
theevilbit.github.io/posts/getting_…
6K Followers 3K FollowingCTFer / APT hunter / RedTeam / BlueTeam
the member of @r3kapig
the leader of @ShadowChasing1
CVE-2022-30190
find job opportunities
opinions are own not group
517 Followers 1K FollowingCS Master in NCTU, Taiwan. Majoring in Infrastructure and Networking. Now working on free5GC project for next generation core network.
0 Followers 169 FollowingRecruiting webshell engineers to penetrate websites, with a mont hly salary of up to $100,000. If interested, please contact https://t.co/djcgYphd0z
3K Followers 1K FollowingMobile Security R&D by day | Saudi nationalist politician by night, whose ambition is to see his country 🇸🇦 lead the region #the_saudi_cyber_arms_company_2035
83 Followers 1K FollowingPwn / ♥️Red Team / OSCP+ / Not affiliated with pwn2own competition / CTF with B33F 50μP & @thehackerscrew1 / opinions are on my own
83K Followers 16 FollowingTrend Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
6K Followers 3K FollowingCTFer / APT hunter / RedTeam / BlueTeam
the member of @r3kapig
the leader of @ShadowChasing1
CVE-2022-30190
find job opportunities
opinions are own not group
9K Followers 18 FollowingA Singapore company that discovers vulnerabilities to help customers mitigate the risks of cyber attacks. Organisers of @offbyoneconf
20K Followers 271 FollowingOffensive security company. Dojo of many ninjas. Red teaming, reverse engineering, vuln research, dev of security tools and incident response.
11K Followers 258 Followingsecurity enthusiast that loves hunting for bugs in the wild. co-founder and player of @justCatTheFish.
infosec at @google. opinions are mine.
1K Followers 1 FollowingCreator of REVEN - Timeless Debugging & Analysis Platform.
Software Reverse-Engineering for Vulnerability & Malware Analysis
Now part of eShard
56K Followers 1K FollowingONE autonomous platform to prevent, detect, respond, and hunt. Do more, save time, secure your enterprise: https://t.co/N75g1HAnCs 🐱💻
19K Followers 1 Following🍎 🛡️
🛠️ Open-Source Tools
📚 "The Art of Mac Malware" books
🫂 "Objective by the Sea" conference
Support us on https://t.co/tuGceSeyiC 🙏
65K Followers 2 FollowingThis is an unofficial HackerOne public disclosure watcher who keeps you up to date about the recently disclosed bugs. By @NOBBD
12K Followers 1 FollowingWe strive to reimagine vulnerability research, program analysis, and security education as it exists today. An @RPISEC corporation.
35K Followers 256 FollowingWe help secure the world’s most targeted organizations and products. We combine security research with an attacker mentality to reduce risk and fortify code.
803 Followers 487 FollowingAssociate Professor at UCR. Security, System, PL. Gatech & PKU alumnus. What are the important problems in your field? Opinions are mine own.
2K Followers 2K FollowingProfessor (full) of computer insecurity @s3eurecom. Can be seen sometimes procrastinating on Twitter.
@[email protected]
@aurelsec.bsky.social
No recent Favorites. New Favorites will appear here.