RC RANDOM CHAOS

Articles

Long-form writing on tech, culture, and the edges of the internet.

Canvas breachdata exposure

The number on the screen is a guess

The Canvas hack scope is not confirmed. A senior operator breakdown of what failed, what is rumour, and what users must now do.

7 min read
linux-kernelprivilege-escalation

User namespaces are still a root pipe

Dirty Frag is a Linux kernel UAF in IP fragment reassembly reachable via unprivileged user namespaces. CVSS 7.8. Mechanism, telemetry gaps, patch boundary.

6 min read
CVE-2026-44843credential theft

Your inbox is now your credential store.

CVE-2026-44843 turns a chat message into credential theft. Operator briefing on what failed, what is not confirmed, and what must now be true.

7 min read
linux-kernelprivilege-escalation

Your patched kernel is still vulnerable

Dirty Frag - CVE-2026-31337, CVSS 7.8 - is a UAF in the Linux kernel's IPv4 fragment reassembly path. Container-to-host root on every major distro.

6 min read
breach analysisincident response

Z3R0DAY refuses to model unconfirmed Canvas breach

A breach claim referencing Canvas has been raised. Scope, vector, and data classes are not confirmed. Exposure cannot be quantified from the input.

6 min read
gtfobinsprivilege escalation

GTFOBins catalogues privilege misconfiguration

GTFOBins documents a structural property of Unix privilege: grants bind to binaries, not operations, and the gap is the escalation surface.

8 min read
linux kernel securityvulnerability management

The kernel commit lands. Your fleet is exposed.

Linux kernel CVEs publish without distro pre-notice. The exposure window opens at upstream commit, not at advisory. Measure the right number.

6 min read
cybersecuritynetworking

The router is signing its own logs

Iran's claim about US backdoors in networking equipment describes an exposure pattern already present. The device is an actor, not infrastructure.

6 min read
windows defenderredsun

RedSun turned Defender into a write primitive

RedSun turned Windows Defender's remediation path into a SYSTEM-level write primitive. The mechanism, the class, and what it exposes.

6 min read
ransomwarewiper

Paying the ransom buys nothing here.

A ransomware build that destroys files is a wiper. The defensive failure is execution authority over data, not cryptography.

8 min read
windows securityprivilege escalation

Unknown party drops funnyapp.exe Windows zeroday

A zeroday privilege escalation binary named funnyapp.exe exposes the Windows default trust model. What failed, what it exposes, what must change.

7 min read
chrome zero-dayv8 exploitation

Chrome's fourth 2026 zero-day ships mid-cycle

Google's fourth exploited Chrome zero-day of 2026 patches a V8 type confusion bug. The real risk is the patch-to-deployment window.

6 min read