I am a french cybersecurity and low level enjoyer. I like to pwn everything even if I can't pwn everything yet.. You can find my posts on my blog and my tools here.
Pwn:
- initramfs-toolkit : Toolkit that allows to extract and compress initramfs cpio, useful for Linux kernel exploitation.
Web:
- WConsole Extractor : Automatically exploits a Werkzeug development server in debug mode with an arbitrary file read
- CSPass : Automatically test for Content Security Policy bypass payloads.
writeups:
-
Pwn - FCSC 2024 Zarby Write : 3 arbitrary writes with given libc leak
-
Pwn - FCSC 2024 Holy Cow : v8 exploit with given hole leak
-
Reverse - VikeCTF 2024 Blackjack : blackjack game with time seed
-
Web - FCSC 2022 Cloud Password Manager : CSS Injection to leak admin password
-
Web - XMASCTF 2021 Quotehub : Clickjacking to leak admin CSRF token
You can reach me on twitter or on discord:
- Twitter: @Ruulian_
- Discord: ruulian