Cybersecurity, AI & Python Programming Blog
Cybersecurity blog featuring artificial intelligence projects, Python programming tutorials, CTF writeups, and security research by Mark LaCore.
Recent Posts
Pokémon TCG Pocket: Paradox Drive Expansion Coming Soon
I am looking forward to this! This evening?
Paradox Pokémon drift into Pokémon TCG Pocket as part of this new expansion coming May 27, 2026.
2026-05-27 14:58:00 | thanks
Essential Intel: Decoding the Recent Windows 11 BitLocker Bypass
This Ars Technica breakdown offers a great resource for understanding the new YellowKey exploit, which exposes critical security flaws in default Windows 11 BitLocker.
2026-05-25 05:49:25 | thanks
Contain Me If You Can CTF: Container Escape via a Plaintext Postgres Connection
Wiz Cloud Security Championship #2 writeup: sniff a plaintext PostgreSQL credential with tcpdump, get superuser RCE via COPY FROM PROGRAM, abuse passwordless sudo, and mount the host block device...
2026-05-24 12:00:00 | ctf
Synaptic Sync CTF: AES-GCM Nonce Reuse and the Forbidden Attack
LevelUpCTF Synaptic Sync writeup: a deterministic AES-GCM nonce derived from the Node ID leaks the GHASH authentication key via the Joux forbidden attack, enabling arbitrary tag forgery and a...
2026-05-23 16:00:00 | ctf
RouteGuard Structural Audit CTF: CBC Bit-Flipping for Privilege Escalation
LevelUpCTF RouteGuard Structural Audit writeup: AES-CBC session tokens with no MAC, escalate guest to admin via a 5-byte IV XOR flip, brute-force 3 blocks x 12 offsets to locate the role field.
2026-05-23 15:00:00 | ctf