Archive
Everything, in order
Every writeup, note and research fragment, newest first. Filter by tag or search the titles and descriptions.
6 filed 2 years 9 tags last filed 11 Jun 2026
0 matching
Nothing matches.
No entry in the register fits those filters.
2026
5 April
- 1-Day Analysis CVE-2026-3910 V8's Maglev compiler has an inappropriate implementation in CanWriteElideBarrier, leading to a User-after-free vulnerability.
- N-Day Analysis CVE-2023-3079 A logic bug in V8's Inline Cache subsystem that leads to type confusion via incorrect element kind handling for JSArgumentsObject, enabling hole leak and arbitrary read/write.
January
- [PWN COLLEGE] - V8 Exploitation Part 2 Continuing the V8 Exploitation journey — pwn.college Browser Exploitation levels 4–6: setLength OOB, offByOne abusing fast-properties, and functionMap type confusion.
- [PWN COLLEGE] - V8 Exploitation Part 1 New journey into V8 Exploitation — pwn.college Browser Exploitation levels 1–3: environment setup, ArrayRun, GetAddressOf / ArbRead32 / ArbWrite32, GetFakeObject, and JIT spraying.