Vojtěch Hron
Security researcher / Red teamer / Exploit developer
I am a cybersecurity student. I hunt for vulnerabilities in software, dig into red team techniques, write my own exploits and pull malware apart. Alongside that I solve Hack The Box machines, play CTFs, build my own tools and write about the certifications I take. Everything here is my own work.
Featured
Conditional arbitrary file read in DIR-825ACG1
Analysis of a vulnerability I discovered in a router that was exploited using a double path traversal
Read more →Psyduck - PowerShell RAT
A Detailed Analysis of a RAT (Remote Access Trojan) Written in PowerShell from Malware Bazaar
Read more →From Physical Memory Read/Write to SYSTEM
Deep dive: how to use the vulnerable ktapi.sys driver and a custom PoC to gain physical memory read/write access and subsequently escalate privileges to SYSTEM, mechanism explanation, and mitigation
Latest Articles
CRTO
Red team certification focused on AD tradecraft and working with Cobalt Strike.
Read more →Living off the Land
How hackers hide and gain access to the kernel. A detailed analysis and PoC of LOLBAS, LOLDrivers, and GTFOBins from a purple team perspective.
Read more →Analysis of a Fake Cloudflare Authentication and a macOS Infostealer
Fake Cloudflare Authentication Attack on macOS: Malware Analysis
Read more →