Handcrafting weird machines

Articles
- Writing a fuzzer from scratch: Astra
- Vulnerability root-cause analysis on Linux
- WinAFL - Fuzzing Windows binaries
Talks
- Introduction to Fuzzing
- Hacking Satellites: From SDR to RCE
- Automated Vulnerability Hunting - Where Are We Now
CVE
- CVE-2026-TBD - Use-after-free write in GPAC HTTP input filter error path
- CVE-2026-TBD - Use-after-free write in GPAC ISOBMFF reader (fragmented MP4)
- CVE-2026-TBD - Use-after-free write in GPAC ISOBMFF reader (moof after mdat)
- CVE-2026-TBD - Use-after-free write in GPAC AV1 reframer (OBU parse error)
- CVE-2026-TBD - Use-after-free write in GPAC AV1 reframer (missing temporal delimiter)
- CVE-2026-TBD - Use-after-free in GPAC filter-session process task
- CVE-2026-TBD - Use-after-free read in GPAC filter-session PID init task
- CVE-2026-TBD - Heap buffer overflow in GPAC AC-3 bitstream reader
- CVE-2026-TBD - Heap buffer overflow in GPAC BT/XMT scene loader probe
- CVE-2026-TBD - Heap buffer overflow in GPAC H.264/H.265 NALU reframer probe
- CVE-2025-43254 - OOB-RW in MacOS libmacho.dylib
- CVE-2024-6773 - Type confusion in V8 Turboshaft
- CVE-2024-11612 - Infinite loop DoS in 7-Zip CopyCoder
- CVE-2024-53589 - Buffer overflow in GNU Objdump tekhex