Fuzzing Sudo (Part I): From NSS to Heap Overflow — Linking CVE-2025-4802 with Baron Samedit (CVE-2021-3156)
Posted on 4 days ago
A journey for bug hunting in Linux binary fuzzing
Heap exploitations
A journey for bug hunting in Linux binary fuzzing
Steal memory from libc to hijack symbol resolution logic for RCE
Attack on Tcache Structures for Heap Exploitation in Modern Glibc
ORW ROP chain with magic gadgets to pwn a Sandbox
LargeBin Attack is the future for heap exploitation.
Safe-linking is a mitigation but also a weapon in some cases.