AGAR
IDA Plugin for Assisting Go Analysis and Reversing
I'm Jun Rong 👋
I create tools to solve CTF challenges and find vulnerabilities.
IDA Plugin for Assisting Go Analysis and Reversing
A home router implements its own HTTP parser. What could go wrong?
Flare-On Level 7 challenge involving a heavily obfuscated binary
Flare-On Level 9 challenge where I reverse-engineer 10,000 DLLs
Flare-On Level 5 challenge involving alternate data streams and a finite state machine
Patch bypass for CVE-2025-53773 on Windows via uppercased file path
Exploiting a controlled decrement primitive via Dirty Pagetable
Chroot escape
Alcatel AP1361D Command Injection in Web Login
Alcatel AP1361D Command Injection in cluster_cor service
Channels? Did you mean 'fancy pipes'?
Advantech WISE-4060LAN Unauthenticated Firmware Upload
Exploiting a stack buffer overflow in a custom VM
CVE-2023-4911 reimplemented as a CGI service
Is it really a web challenge if there aren't unintended solutions?
Reverse Engineering Unity il2cpp
Improper checks in resizing of hashmap results in OOB access
Crafting malicious binaries that trick LLMs into executing code
Exploiting a vulnerability in a Flare-On challenge
Solution to the final challenge of Flare-On 11
TISC 2024 Level 9 Pwn Challenge
Alternatives for some APIs removed in IDA 9
IDA/Binary Ninja Plugin to automatically identify and set enums for standard functions
An intuitive query API for IDA Pro