MobileHackingLab — Runtime Toad Writeup
Exploiting CVE-2025-59489 in Unity's runtime — local and remote RCE via -xrsdk-pre-init-library intent extras.
10 posts
Exploiting CVE-2025-59489 in Unity's runtime — local and remote RCE via -xrsdk-pre-init-library intent extras.
Chaining path traversal in getLastPathSegment() with unverified native library loading for RCE on MobileHackingLab's Document Viewer.
Speedrun of the mobile track at Nahamcon CTF 2024: logcat, strings, Godot script extraction, Flutter instrumentation, and Frida hooking.
Mobile challenge solutions from TCP1P CTF: exported activity exploitation, implicit intent hijacking, and a WebView/JS interface/content provider chain.
Part 1: InsecureShop walkthrough covering insecure logging, hardcoded credentials, insecure data storage, SSL bypass, and URL validation issues.
Part 2: insecure broadcast receivers, implicit intent hijacking, intent redirection to protected components, and WebView file exfiltration.
Part 3: arbitrary code execution via third-party package context loading; vulnerabilities 16-18 listed as stubs.
HackTheBox Pandora: SNMP credential leak → PandoraFMS unauthenticated SQLi to RCE → SUID binary path hijacking for root.
Linux kernel exploitation for K3RN3LCTF 2021: stack buffer overflow in a kernel module, KASLR leak via sread(), ROP chain, and KPTI trampoline bypass.
CoalFire CTF challenge notes covering stack shellcode injection, ret2libc, write-what-where, anti-debug bypass, and Firefox profile forensics.
Nothing matches that.