RSSAmplifier

Blog

suidpit

weird machines engineer | word generator

suidpit.shRSS feed ↗17 posts

Latest posts

Fuzzing Rust projects with `cargo-fuzz` and libfuzzer

Rust's iter->map->collect

Quick review: Project Hail Mary by Andy Weir

TIL: NVIDIA DLSS

Freat - writing a game hacking birdfeeder for fun and...fun

Can we mash together frida, Python and Godot to write an ugly CheatEngine clone and learn more about game hacking?

Modding and distributing mobile apps with frida

Walkthrough of how to embed frida scripts in apps to distribute proper mods. Supports frida 17+.

A journey from `sudo` iptables to local privilege escalation

You’ve landed on a network appliance and you need those fancy privileges? Don’t worry, I’ve got your back!

AlcaWASM challenge writeup - Pwning an in-browser Lua interpreter

Gamedevs of the world, unite! Your favourite language is in danger – the l33t wrongdoers have figured out how to BYOB (Bring Your Own Bytecode) and pwn the Lua v5.4 interpreter!

Element Android CVE-2024-26131, CVE-2024-26132 - Never take intents from strangers

Wild trips with intent redirections to compromise an end-to-end encrypted messaging chat.

Hunting for (Un?)authenticated n-days in Asus routers

Firmware analysis, reverse engineering and binary exploitation shenanigans on Asus routers.

CVE-2023-33466 - Exploiting healthcare servers with polyglot files

N-day exploit for Orthanc. Now featuring polyglot files!

IceCTF 2018 - Twitter writeup

You can play 8-bit emulators if you want, but isn’t it pwning them more fun?

IceCTF 2018 - Fermat string writeup

How much space do you need to exploit a format string?

GSoC 2018 - Final report

Recap of my experience in the Google Summer of Code with mitmproxy

GSoC week 3....4 - Passing the exam

Week 3 and 4 of hacking at mitmproxy for the Google Summer of Code

GSoC week 2 - The quest for performances

Week 2 of hacking at mitmproxy with the Google Summer of Code

GSoC week 1 - Staging

Week 1 of hacking at mitmproxy with the Google Summer of Code