Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

blog.ret2.io

Ret2 Systems Blog

Get the latest updates from Ret2 Systems Blog directly as they happen.

Follow now 92 followers

Latest posts

Last updated 20 days ago

Streaming Zero-Fi Shells to Your Smart Speaker

20 days ago

In October 2024, RET2 participated in the “Small Office / Home Office”...

Exploiting the Synology DiskStation with Null-byte Writes

2 months ago

In October, we attended Pwn2Own Ireland 2024 and successfully exploited the Synology...

Pwn2Own Automotive: Popping the CHARX SEC-3100

11 months ago

Our previous post explored some of the bugs we discovered in the...

Pwn2Own Automotive: CHARX Vulnerability Discovery

12 months ago

The first Pwn2Own Automotive introduced an interesting category of targets: electric vehicle...

The LDT, a Perfect Home for All Your Kernel Payloads

almost 3 years ago

With the broad adoption of Kernel Address Space Layout Randomization (KASLR) by...

Exploiting Intel Graphics Kernel Extensions on macOS

about 3 years ago

To escape the Safari sandbox for our Pwn2Own 2021 submission, we exploited...

Exploiting an Unbounded memcpy in Parallels Desktop

about 3 years ago

This post details the development of a guest-to-host virtualization escape for Parallels...

What’s New in Tenet v0.2

almost 4 years ago

Tenet is an IDA Pro plugin which enables reverse engineers to explore...

Snapcraft Packages Come With Extra Baggage

almost 4 years ago

Several months ago I found an issue (now CVE-2020-27348) with Ubuntu’s new...

All Your Base Are [Still] Belong To Us

almost 4 years ago

Axel ‘0vercl0k’ Souchet recently open-sourced a promising new snapshot-based fuzzer. In his...

The Oddest Place You Will Ever Find PAC

about 4 years ago

The latest efforts to harden software against exploitable memory corruption vulnerabilities come...

32 bits, 32 gigs, 1 click…

about 4 years ago

In this post we will examine a vulnerability in the WebAssembly subsystem...