Fuzzing GoldSrc: Weaponizing Network Packets for RCE in Counter-Strike 1.611/06/2026How I used the WTF fuzzing framework to find bugs in the GoldSrc engine and exploit a stack buffer overflow for RCE in Counter-Strike 1.6.Read more
Performance over security: Speculative execution vulnerabilities (Spectre & Meltdown)09/05/2026A deep dive into Spectre and Meltdown, two hardware-level vulnerabilities that traded security for performance.Read more
Discovering a zero-day vulnerability in the Argus Monitor driver20/10/2024Bypassing security mechanisms to exploit an arbitrary physical memory read vulnerability in a temperature monitoring software driver.Read more