Low Level - Videos
Back to Channeli didn't expect to see this...
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?id=3e0ae02ba831da2b707905f4e602e43f8507b8cc π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ...
exploiting buffer overflows is too simple. (do it with me)
In this video we explore the dangers of buffer overflows and learn how to write an exploit for the vulnerability ourselves! (educational) π« MY COURSES Sign-up for my FREE 3-Day C Course: https://l...
this is the worst case scenario
https://github.com/msanft/CVE-2025-55182 Go check out Flare's new collection tab in your free trial at https://go.lowlevel.tv/flare-dec π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lo...
the npm malware is a hacking masterpiece
The Shaihulud worm is honestly amazing. Go pick up a Yubikey and secure yourself with 2FA! Get a HUGE discount until December 1st @ https://go.lowlevel.tv/yubikey-blackfriday https://www.wiz.io/...
did rust take down the internet?
Sort of... https://blog.cloudflare.com/18-november-2025-outage/ π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join my new C...
they installed linux. thats the hack.
https://businessinsights.bitdefender.com/curly-comrades-evasion-persistence-hidden-hyper-v-virtual-machines π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOU...
why everyone is mad at google (this time)
Google found sound bugs in ffmpeg, what does this mean for open source (today and in the future). Go try ChainGuard and secure your infrastructure with containers built securely from source https:...
I Never Thought Iβd See This
RCE? in THIS economy? Go try Flare FOR FREE and manage your exposure online! https://go.lowlevel.tv/flare-nov https://edera.dev/stories/tarmageddon π« MY COURSES Sign-up for my FREE 3-Day C Cours...
Every Level of Reverse Engineering Explained
Wanna learn to hack? Join: https://stacksmash.io π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π₯COME HANG OUT Check out my other stuff: https://lowlevel.tv
ChatGPT's Altas Browser is a Security Nightmare
AI Bad. https://www.ibm.com/think/topics/prompt-injection https://brave.com/blog/unseeable-prompt-injections/ π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK ...
this isn't great...
Cl0p deez? idk. https://www.sentinelone.com/anthology/clop/ https://cloud.google.com/blog/topics/threat-intelligence/oracle-ebusiness-suite-zero-day-exploitation https://www.bleepingcomputer.com/...
The BEST Util For CTF Challenges
π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join my new CTF platform: https://stacksmash.io π₯COME HANG OUT Check out my...
it doesn't get worse than this (CVSS 10.0)
CVSS 10.0 in Redis because of a bug in Lua. Truly beautiful. https://redis.io/blog/security-advisory-cve-2025-49844/ https://redrays.io/blog/poc-for-cve-2025-49844-cve-2025-46817-and-cve-2025-4681...
cisco situation keeps getting worse
Cisco just had a few majors CVEs drop and the ratings are sort of confusing. In this video I break down the CVEs and talk about what it means for you and your networks. Go try Flare and get ahead ...
Hackers are Exploiting This and Nobody's Stopping it
Exploits are getting more complicated! Is software getting more secure? https://www.draytek.com/about/security-advisory/ π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy...
rust is causing a lot of problems...
I love Rust, but not THAT much. https://blog.qualys.com/vulnerabilities-threat-research/2021/01/26/cve-2021-3156-heap-based-buffer-overflow-in-sudo-baron-samedit https://github.com/uutils/coreutil...
this was genuinely interesting
WhatsApp? nm u? Anyway today it looks like a really interesting bug came out targeting people using WhatsApp on iOS. https://www.whatsapp.com/security/advisories/2025?lang=en_US Go to https://go....
literally the dumbest thing I've ever read
Please stop. https://hackerone.com/reports/3340109 π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join: https://stacksmash.i...
everything is open source if you know reverse engineering (hack with me!)
Thanks again Hex Rays for sponsoring todays video! Get 50% off IDA Products at https://go.lowlevel.tv/idapro with code LOWLEVEL50 Get 30% off IDA Training at https://go.lowlevel.tv/idatraining wi...
they can't keep getting away with this
javascript good? npm good? in this video we see why maybe yes sometimes no https://medium.com/@_jaydeepkarale/largest-npm-hack-in-history-f953acf82b76 https://github.com/Qix- (go show his repos so...
it only took 2 lines of code...
Docker is a great technology, but like any technology sometimes there are mistakes. Check out this crazy docker escape from Docker Desktop. Go check out over 1700 of chainguards CVE free images at...
well this isn't great...
π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join my new CTF platform: https://stacksmash.io π₯COME HANG OUT Check out my...
fortinet is having a rough week...
https://pwner.gg/blog/2025-08-13-fortiweb-cve-2025-52970 π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join: https://stacksm...
So thatβs why itβs free..
WinRAR is a GREAT piece of software, but every piece of software can have bugs. In this video we're talking about WinRAR exploits seen in the wild. Get a free trial of ThreatLocker and learn how z...
i was right (again).
Wanna learn to hack? Check out: https://stacksmash.io Kernel mode anti-cheat is problematic again and I hate it. https://pbs.twimg.com/media/GyDIMLhW4AAsiti?format=jpg&name=large https://archie-o...
We Keep Falling For This...
With new AI comes new AI coding tools, and with new AI coding tools comes new AI coding vulnerabilities. Today we're checking out a bug in the Gemini CLI. Go try Flare and get ahead of cyber threa...
This Goes Deeper Than Your Operating Systemβ¦
Wanna learn to hack? Check out: https://stacksmash.io Hackers can attack anything, but even your motherboard? In this video we break down what a motherboard exploit looks like, and what you can do...
Arch Linux Is Under Attack...
Arch linux is great, but the AUR is sort of scary. In this video we talk about malicious packages found in the AUR last week. https://www.reddit.com/r/linux/comments/1m3wodv/malware_found_in_the_a...
the tea app situation keeps getting worse
π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join: https://stacksmash.io π₯COME HANG OUT Check out my other stuff: https:...
i cant believe they let this ship...
Containers are hard. Getting multi-tenant container isolation right is even harder. In this video we talk about a bug in NVIDIA's container toolkit, and the dangers of LD_PRELOAD. Get a free trial...
sharepoint hacking situation is completely insane
SharePoint's all over are getting hacked, and the exploit is pretty crazy. https://github.com/rapid7/metasploit-framework/pull/20409 https://github.com/MuhammadWaseem29/CVE-2025-53770 π« MY COURSE...
someone just dropped 4 INSANE VMware exploits
Pwn2Own hackers drop 4 crazy 0-day's around VMware products. Absolutely crazy. https://www.zerodayinitiative.com/blog/2025/5/16/pwn2own-berlin-2025-day-two-results π« MY COURSES Sign-up for my FRE...
the curl situation keeps getting worseβ¦
Bug bounty is getting WEIRD. And unfortunately, it all comes down to AI. In this video were talking about the AI plague on bug bounty and what can be done about it. Go checkout Flare.io at https:/...
how does this keep happening?
They found another bug in sudo, and this time it's pretty bad. https://nvd.nist.gov/vuln/detail/CVE-2025-32462 https://github.com/pr0v3rbs/CVE-2025-32463_chwoot π« MY COURSES Sign-up for my FREE ...
This Was Bound To Happen...
Call of Duty? More like Call of Hackers haha roasted. https://momo5502.com/posts/2017-12-14-game-hacking-reinvented-a-poc-cod-hack/ https://github.com/momo5502/cod-exploits/blob/master/huffman/sr...
another day, another linux privilege escalation
Privilege escalations are some of the coolest vulnerabilities in hacking, and the most dangerous. Hackers can use these to bump their privileges to a dangerous level. Go check out Flare at https:/...
hackers exploit trivial command injection (1000s of devices)
ASUS... seriously? https://www.greynoise.io/blog/stealthy-backdoor-campaign-affecting-asus-routers π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER...
No, the biggest password leak of all time didnβt happen
No. No they did not. π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join my new CTF platform: https://stacksmash.io π₯COME HA...
google crashed the internet with a single pointer
The internet took a dump last week, what happened? How did the internet just go offline? In this video, we break it down. https://status.cloud.google.com/incidents/ow5i3PPK96RduMcb1SsW π« MY COURS...
one click RCE in preinstalled ASUS garbage
ASUS has been sketchy these last couple of years. And even worse, I have this motherboard! In this video were talking about a bug found in ASUS motherboards that allowed people to get RCE. Go say ...
they're re-writing sudo in Rust (why?)
BIG changes coming to Linux. But people are mad. Why? π« MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy π§ββοΈ HACK YOUR CAREER Wanna learn to hack? Join my new CTF platform...
its already happening...
They said the Switch 2 was unhackable... but IS IT REALLY? In this video I talk about the status of the Switch 2 hack and what it'll take for a full jailbreak. π« MY COURSES Sign-up for my FREE 3-...
this virtual box escape exploit is absolutely nuts
Are virtual machines safe? In theory, a virtual machine protects us from hackers, but how true is that really? In this video we'll talk about CVE-2025-30712 Writeup: https://github.com/google/secu...
vulnerability research just got easier (scarier?)
Can AI find 0-day vulnerabilities? Well... it look's like it just did. In this video we break down the 0-day that Sean Heelan found with o3. Go show Sean some love: https://sean.heelan.io/2025/...
the most magical exploit i've ever seen
Branch prediction? Never heard of her. In this video we talk about a new vulnerability disclosed in every intel CPU that takes advantage of a hardware race condition in the intel processor's branc...
AI devs are in trouble after this..
Is software security going backwards? Maybe. In this video we breakdown a CVE on the CISA KVE list, and why AI might be a problem. https://horizon3.ai/attack-research/disclosures/unsafe-at-any-spe...
How Does This KEEP Happening?
Go is one of those languages that forces you to put a lot of trust in other people's code. How do we balance this trust with skepticism? Let's talk about it. https://socket.dev/blog/wget-to-wipeou...
this is a huge problem for cybersecurity...
AI generated bug reports are becoming a serious problem? Is this incompetence? Or malicious? https://hackerone.com/reports/3125832 https://www.linkedin.com/feed/update/urn:li:activity:732482089386...
this might be the biggest bug of the year
This bug is one of the most dangerous types of bugs that exist, a wormable RCE in the apple airplay protocol. In this video we break down what a UAF is, what a Type Confusion is, and how Rust may h...
Ticketmaster Sucks So He Hacked It
Ticketmaster, a controversial company, and the maker of annoying DRM. In this video we react to an article where conduition broke the ticketmaster DRM. Go show conduition some love: https://condui...