<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Binary Exploitation — Blog</title>
    <link>https://www.binaryexploitation.org/en/blog</link>
    <description>Latest from Blog</description>
    <language>en</language>
    <lastBuildDate>Mon, 28 Sep 2026 16:01:12 GMT</lastBuildDate>
    <atom:link href="https://www.binaryexploitation.org/en/blog/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>A Binary Exploitation Learning Path Through CTFs</title>
      <link>https://www.binaryexploitation.org/en/blog/ctf-learning-path</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/ctf-learning-path</guid>
      <description>A staged, legal path from C and assembly to CTF pwn challenges: what to learn in which order, practice platforms built for it, lab rules, and how it leads to defensive careers.</description>
      <author>Florian Amette</author>
      <pubDate>Mon, 28 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Memory-Safe Languages and a Realistic Migration Strategy</title>
      <link>https://www.binaryexploitation.org/en/blog/memory-safe-languages</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/memory-safe-languages</guid>
      <description>Why memory-safe languages remove whole bug classes, what Rust&apos;s ownership model guarantees, where unsafe code and FFI remain risky, and how to harden the C++ you keep.</description>
      <author>Florian Amette</author>
      <pubDate>Mon, 28 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Coverage-Guided Fuzzing with libFuzzer and AFL++</title>
      <link>https://www.binaryexploitation.org/en/blog/fuzzing-libfuzzer-aflplusplus</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/fuzzing-libfuzzer-aflplusplus</guid>
      <description>Write a fuzz harness, build it with sanitizers, run libFuzzer and AFL++, manage corpora and dictionaries, and run continuous fuzzing in CI with OSS-Fuzz or ClusterFuzzLite.</description>
      <author>Florian Amette</author>
      <pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Reading Crash Reports: Signals, Backtraces and Core Dumps</title>
      <link>https://www.binaryexploitation.org/en/blog/reading-crash-reports</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/reading-crash-reports</guid>
      <description>Triage native crashes like a defender: what SIGSEGV and SIGABRT mean, glibc abort messages, gdb and core dumps, ASan reports, WinDbg, and how to prioritise memory-safety crashes.</description>
      <author>Florian Amette</author>
      <pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>AddressSanitizer, UBSan and Friends: A Practical Guide</title>
      <link>https://www.binaryexploitation.org/en/blog/sanitizers-asan-ubsan</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/sanitizers-asan-ubsan</guid>
      <description>How ASan, UBSan, MSan, TSan and HWASan work, which flags and runtime options to use, how to read an ASan report line by line, and how to run sanitizers in CI.</description>
      <author>Florian Amette</author>
      <pubDate>Sat, 26 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Control-Flow Integrity: CFI, Intel CET and Arm PAC/BTI</title>
      <link>https://www.binaryexploitation.org/en/blog/control-flow-integrity</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/control-flow-integrity</guid>
      <description>How forward-edge and backward-edge control-flow integrity work, from Clang CFI and Microsoft CFG to Intel CET shadow stacks and Arm pointer authentication, and their limits.</description>
      <author>Florian Amette</author>
      <pubDate>Fri, 25 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Stack Canaries, NX, ASLR/PIE, RELRO and FORTIFY_SOURCE</title>
      <link>https://www.binaryexploitation.org/en/blog/binary-hardening-flags</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/binary-hardening-flags</guid>
      <description>What each classic exploit mitigation protects, the GCC and Clang flags that enable it, what it costs, and how to verify a binary with checksec and readelf.</description>
      <author>Florian Amette</author>
      <pubDate>Thu, 24 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Integer Overflows and Format-String Bugs, Explained</title>
      <link>https://www.binaryexploitation.org/en/blog/integer-overflows-format-strings</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/integer-overflows-format-strings</guid>
      <description>How integer overflow, truncation and signedness errors turn into memory corruption, why user-controlled format strings are dangerous, and the checks and warnings that prevent both.</description>
      <author>Florian Amette</author>
      <pubDate>Thu, 24 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Heap Overflows, Use-After-Free and Double Free</title>
      <link>https://www.binaryexploitation.org/en/blog/heap-corruption-use-after-free</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/heap-corruption-use-after-free</guid>
      <description>How heap memory bugs corrupt allocator metadata and object state, why use-after-free is so dangerous, and the allocator hardening, sanitizers and ownership rules that stop them.</description>
      <author>Florian Amette</author>
      <pubDate>Wed, 23 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Stack Buffer Overflows Explained for Defenders</title>
      <link>https://www.binaryexploitation.org/en/blog/stack-buffer-overflows</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/stack-buffer-overflows</guid>
      <description>Why writing past a stack buffer is dangerous, the C patterns that cause it, how compilers and sanitizers catch it, and the fixes and mitigations that contain it.</description>
      <author>Florian Amette</author>
      <pubDate>Tue, 22 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>How a Process Lays Out Memory: Stack, Heap and ELF Segments</title>
      <link>https://www.binaryexploitation.org/en/blog/process-memory-layout</link>
      <guid isPermaLink="true">https://www.binaryexploitation.org/en/blog/process-memory-layout</guid>
      <description>A defender&apos;s tour of a Linux process&apos;s address space: ELF segments, the stack and calling conventions, the heap, mmap, and why permissions and randomization matter.</description>
      <author>Florian Amette</author>
      <pubDate>Mon, 21 Sep 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>