Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

starlabs.sg

Blog on STAR Labs

Get the latest updates from Blog on STAR Labs directly as they happen.

Follow now 40 followers

Latest posts

Last updated about 1 month ago

CimFS: Crashing in memory, Finding SYSTEM (Kernel Edition)

about 1 month ago

Introduction Many vulnerability writeups nowadays focus on the exploitation process when it...

STAR Labs Windows Exploitation Challenge 2025 Writeup

about 2 months ago

STAR Labs Windows Exploitation Challenge Writeup Over the past few months, the...

Mali-cious Intent: Exploiting GPU Vulnerabilities (CVE-2022-22706 / CVE-2021-39793)

3 months ago

Imagine downloading a game from a third-party app store. You grant it...

CVE-2024-26230: Windows Telephony Service - It's Got Some Call-ing Issues (Elevation of Privilege)

3 months ago

Executive Summary CVE-2024-26230 is a critical vulnerability found in the Windows Telephony...

Celebrating 7 Years of STAR Labs SG

4 months ago

πŸŽ‰πŸŽŠ Cheers to 7 Amazing Years! πŸŽŠπŸŽ‰ On 8th January 2018, STAR...

STAR Labs 2025 New Year Exploitation Challenge

4 months ago

Think you’ve got what it takes to pop shells and snag your...

Behind the Scenes: Understanding CVE-2022-24547

4 months ago

TL;dr Vulnerabilities can often be found in places we don’t expect, and...

All I Want for Christmas is a CVE-2024-30085 Exploit

4 months ago

TLDR CVE-2024-30085 is a heap-based buffer overflow vulnerability affecting the Windows Cloud...

#BadgeLife @ Off-By-One Conference 2024

10 months ago

Introduction As promised, we are releasing the firmware and this post for...

Send()-ing Myself Belated Christmas Gifts - GitHub.com's Environment Variables & GHES Shell

about 1 year ago

Earlier this year, in mid-January, you might have come across this security...

Route to Safety: Navigating Router Pitfalls

about 1 year ago

Introduction Wi-Fi routers have always been an attractive target for attackers. When...

CS-Cart PDF Plugin Unauthenticated Command Injection

about 2 years ago

Summary A command injection vulnerability exists in CS-Cart’s HTML to PDF converter...