A Silly Satellite Wi-Fi Router Bug - Redport Pre-Auth RCE
Pre-auth RCE over LAN in the RedPort wXa-223 satellite Wi-Fi router, found within minutes of unpacking the firmware.
A blog focused on vulnerability research, exploit development and general security topics.
Pre-auth RCE over LAN in the RedPort wXa-223 satellite Wi-Fi router, found within minutes of unpacking the firmware.
Using PRIZM ZERO's AI-driven binary analysis to reproduce known CVEs and find new memory-corruption bugs in a TOTOLINK router's cstecgi.cgi.
Chaining a vulnerability and misconfigurations into a remotely installable, 0-click rootkit on the SuperNote Nomad E-ink tablet (CVE-2025-32409).
Turning the FiiO M6 kernel stack overflow into a working local privilege escalation exploit.
Using the world's worst fuzzer to find a kernel stack overflow in the FiiO M6's procfs debug interface.
A format string leak, a UAF heap leak, and a House of Force attack to pop a shell in the ROMHack CTF Swordmaster pwn challenge.
An unauthenticated command injection in the Wavlink WL-WN531P3 router API, exploitable from the internet via CSRF.
Exploiting a JWT verification flaw and an SSTI vulnerability to get RCE in the CyberSanta CTF Naughty or Nice web challenge.