z0v3r1n's blog
blog/ about/
  • VolgaCTF Quals 2025 – pwn/babuin2

    Full chain challenge which has two parts: get userland code execution and then exploit a vulnerability within the custom piccall syscall handler!

    January 4, 2026
    35 min read
    pwn full-chain uaf kernel merge sort
  • From Zero to Segfault: My First Year in PWN

    A look back at my first year in pwn ... story of how I started, lessons learned and where I want to go from here.

    December 28, 2025
    7 min read
    diary
  • Blackhat MEA CTF Final 2025 – pwn/stack-prelude

    Forcing recv() to return early by sending urg tcp packet!

    December 3, 2025
    13 min read
    pwn blackhat-mea
  • Blackhat MEA CTF Final 2025 – pwn/verifmt

    Leaking stack via partial format strings %*N$

    December 2, 2025
    10 min read
    pwn blackhat-mea
  • Buckeye 2025 – pwn/bashtille

    Abused the server misconfiguration in the user-namespace mapping which gave us effective root inside the container to escape chroot by using a exploit that chroots inside the chroot to escape the jail.

    November 9, 2025
    4 min read
    buckeye pwn
See all posts →
© 2026 z0v3r1n