RCE in Marimo CVE-2026-39987: exploit in 9 hours https://sudonull.com/rce-in-marimo-cve-2026-39987-exploit-in-9-hours
Critical pre-auth RCE in Marimo up to 0.23.0 gives root-shell via WebSocket. Sysdig: attack 9 hours after advisory. Update, rotate secrets, protect AI toolchain. Detailed analysis and measures.
Running Linux containers on Android without root: Podroid and Podman https://sudonull.com/running-linux-containers-on-android-without-root-podroid-and-podman
How to run Podman and Linux containers on Android without root. Overview of the architecture, installation, and usage scenarios of the Podroid project.
Cascadeur 2026 and Unity 6: gamedev updates https://sudonull.com/cascadeur-2026-and-unity-6-gamedev-updates
Breakdown of Cascadeur 2026.1 with Root Motion, Outline in Unity 6 URP, TTF-DOOM and indie sales. Technical cases for middle/senior dev. Study the features and optimizations.
Zapret 2 GUI: Analysis of Spyware and Privacy Threats https://sudonull.com/zapret-2-gui-analysis-of-spyware-and-privacy-threats
Detailed technical analysis of Zapret 2 GUI revealed hidden malware: disabling Windows Defender, installing Root CA for MitM attacks, data exfiltration. Learn how to protect yourself.
Backdoor in wait4(): Linux kernel vulnerability https://sudonull.com/backdoor-in-wait4-linux-kernel-vulnerability
Analysis of a real backdoor in the Linux kernel from 2003: how an assignment error in wait4() opened root access. Lessons for developers: code review, Git, fuzzing. Study the details of the attack.