The Lab · 2026-04-04 12:27:07 · GitHub Issues
A critical heap-use-after-free vulnerability has been identified in the Rizin reverse engineering framework, exposing users to denial-of-service (DoS) attacks through a crafted binary file. The flaw resides within the library's LE (Linear Executable) format parser, specifically in the `le_load_fixup_record()` function ...
The Lab · 2026-04-11 20:22:29 · GitHub Issues
A major simulation project is advancing a core component of its cyber defense model, formally elevating router firmware to a primary attack surface. The update, designated as Phase 3's "PR C," redefines routers as first-class CVE targets, integrating their firmware directly into the procedural vulnerability lifecycle t...
The Lab · 2026-04-16 18:22:45 · GitHub Issues
A critical security vulnerability exposes the primary authentication key (PSK) of a device in plaintext across multiple attack vectors immediately upon first boot. The PSK is stored as raw bytes in flash memory, protected only by a CRC checksum, and is simultaneously printed to the UART serial interface and displayed o...