Hacking Randomized Linux Kernel Images at the DEF CON 33 Car Hacking Village

Red Balloon Security’s DEF CON 33 Car Hacking Village CTF write-up: unpacking firmware, cracking a repeating-key XOR, and exploiting a buffer overflow on ARM64 to ROP into mprotect() and execute shellcode—despite randomized Linux syscall numbers.
Hacking Secure Software Update Systems at the DEF CON 32 Car Hacking Village

Read about Red Balloon’s CTF at DEF CON 32’s Car Hacking Village, highlighting secure software updates.