Sign in

Victor Fresk0

@hacefresko.com
58 followers 69 following 10 posts

hacking for fun ~ likes bug hunting and vuln research hacefresko.com

PostsRepliesMedia
Victor Fresk0 @hacefresko.com · 08/06/2026
After 6 months of extensive research, I have finally published a new blog post! It describes the journey from breaking into my router using a couple of command injections to finding and exploiting a remote heap overflow in a MediaTek kernel driver :D www.hacefresko.com/posts/rce-on...
hacefresko.com
From breaking into my ISP router to finding a MediaTek kernel 0day
000
Victor Fresk0 @hacefresko.com · 21/05/2025
Finally, the CVE for the buffer overflow I found on the TP-Link Archer AX50 router has been published! It has been assigned CVE-2025-40634 and I've also published the exploit that I made back then for it :) github.com/hacefresko/C...
github.com
GitHub - hacefresko/CVE-2025-40634: Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router
Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router - hacefresko/CVE-2025-40634
010
Reposted by Victor Fresk0
Jack Rhysider @jackrhysider.bsky.social · 06/05/2025
Ep 158: MalwareTech Yes @malwaretech.com joins us. Tells us one of the most insane stories ever. Do not miss this one. darkentdiaries.com/episode/158
713130
Reposted by Victor Fresk0
Gynvael Coldwind @gynvael.bsky.social · 29/03/2025
Paged Out! #6 is out! pagedout.institute Totally free, 80 pages, best issue so far! 'nuff said, enjoy! (please repost to help spread out the news!)
02419
Reposted by Victor Fresk0
tmp0ut @tmpout.sh · 21/03/2025
Would you look at that, it's tmp.0ut Volume 4! Happy Friday, hope you enjoy this latest issue! tmpout.sh/4/
table of contents for tmp.0ut volume 4
212163
Victor Fresk0 @hacefresko.com · 14/03/2025
I want to get into mastodon. Any recommended hacking/bug hunting/vuln research server to join?
000
Victor Fresk0 @hacefresko.com · 10/03/2025
Wow! Thanks so much :)
110
Victor Fresk0 @hacefresko.com · 26/02/2025
Good news! I've uploaded a new post about the most complex and beautiful vulnerability I've ever found, involving patching and uploading deprecated .jar libraries to get RCE on a big target. It's a very technical post, but I hope you like it ! :) www.hacefresko.com/posts/rce-on...
hacefresko.com
A very fancy way to obtain RCE on a Solr server
12911
Victor Fresk0 @hacefresko.com · 06/02/2025
🥰🥰👾👾
000
Victor Fresk0 @hacefresko.com · 03/02/2025
I've spent this weekend taking a closer look into Solr and ended up finding a bug in a big BB program which allowed me to modify the Solr database and configuration files via replication! I will spend the following days trying to escalate it to RCE
000
Reposted by Victor Fresk0
Nick Land Acknowledgement 🇵🇸🏳️‍🌈 @lonestartallboi.bsky.social · 08/01/2024
20 years ago we were suing teenagers for millions of dollars because they were torrenting a single Metallica album and now billionaires are demanding the free right to every work in history, so that they can re-sell it. The law only ever serves capital.
1862704413595
Victor Fresk0 @hacefresko.com · 10/12/2024
About to start a new save in Fallout New Vegas while I wait for Saturday, when I will take the CRTO exam. Also waiting for my local CVE provider to respond about a TP-Link RCE I reported back in October. Blog post coming soon :)
000
Victor Fresk0 @hacefresko.com · 01/12/2024
Last week I got my first mechanical keyboard (a rainy 75) and the experience is being amazing. It feels really great to hack on this thing
020
Victor Fresk0 @hacefresko.com · 26/11/2024
Finally uninstalled X for now :)
010