LiveOverflow posts
Unity Multiplayer/MMO Game - Game Devlog #3
My technical thoughts on building a MMO Game. I have no professional experience in this area, and try to come up with an architecture that is simple to implement but also scalable enough for my needs. Part 1 - How To Learn Something New?: https://www.youtube.com/watch?v=LTlBElDPDDMPart 2 - Igniting ...
LiveOverflow's Marketing Department
Hey! Several of you have already seen the LiveOverflow marketing department but I wanted to share it clearly for everybody again.If you have a Discord account connected to Patreon, you should be automagically get added to the "LiveOverflow's Marketing Department" Discord server. If you h...
Igniting Creativity - Game Devlog #2
How to be creative and get ideas for making a game? In the last video I talked about how I got started with GamDev in in Unity. This video I share the game design aspect and what I do to be creative, in order to come up with hacking challenges.The first game "Follow the White Rabbit" has two...
How To Learn Something New? - Game Devlog #1
I got inspired by Pwn Adventure and made a game that is intended to be hacked! But I have never made a game before, so I had to learn game development first. In this devlog I talk about my journey into gamedev with Unity. I describe how I approach a new topic I want to learn. So while it's not d...
CTFs are AWESOME/TERRIBLE!
Hey, this week I have something special(?)/different(?)I have made two videos - one exploring arguments why CTFs are terrible, and the other video argues why CTFs are awesome. This is a bit of an experiment how to present both sides. I find the discussion about CTFs often oversimplified and I want t...
USA Sales Tax Changes on Patreon
Hey everyone,Patreon is changing sales tax for the USA.(Patreons from the EU have already been paying sales tax so doesn't apply there.)Depending on what kind of rewards are provided, and depending on your state, different sales tax apply. Because I mentioned many times that the "Bonus Conte...
Why MissingNo Multiplies Items!
In this part two we investigate how encountering a glitch pokemon will cause the 6th item to multiply. For this we are using Ghidra and SameBoy to debug and reverse engineer the code.part 1: https://www.youtube.com/watch?v=p8OBktd42GI
Researching MissingNo Glitch in Pokemon
We are using an emulator to research what triggers MissingNo and come up with a hypothetical story how one could have found and analyzed this glitch.The full GameBoy Hacking Playlist: https://www.youtube.com/watch?v=ix5yZm4fwFQ&list=PLniOzp3l9V82onKsktyyKlIenAAUj45MkAlso checkout Stacksmashing's...
DLL Injection to Create a Fly Hack - Pwn Adventure 3
We finally managed to make a fly hack to zoom around the map and we learned a lot about Windows game hacking in the process. This is the last video in the PwnAdventure game hacking series.Full playlist watch here: https://www.youtube.com/playlist?list=PLhixgUqwRTjzzBeFSHXrw9DnQtssdAwgGPrevious Episo...
Dissecting Pokemon Red Savegame - GameBoy Hax
Reverse engineering the savegame data of Pokemon Red for the GameBoy. stacksmashing: https://www.youtube.com/channel/UC3S8vxwRfqLBdIhgRlDRVzw GBDev: https://gbdev.gg8.se/ Bulbapedia: https://bulbapedia.bulbagarden.net/wiki/Save_data_structure_in_Generation_I
Reverse Engineered old Compression Algorithm for Frogger
Kneesnap reverse engineered an old compression algorithm for his modding tool FrogLord. It can be used to unpack and repack game assets.Highway Frogs Forum: https://highwayfrogs.net/Modding Tool: https://github.com/Kneesnap/FrogLord
Mindmapping a Pwnable Challenge - intro_pwn/pwn1 CSCG 2020
For our CTF I made a video writeup for the first part of our intro pwnable challenge. I'm trying to draw the mindmap of my thought process while solving a challenge.Feel free to copy the solution, and then tackle part 2 and part 3 yourself!You can find the challenge here: https://earth.2020.cscg...
$100k Hacking Prize Nominations - Google Cloud Platform
In 2019, Google announced the GCP Prize. 100.000$ for the best bug bounty report for the Google Cloud Platform. Today we will have a technical look at the nominations. We look for patterns and analyze the type of bugs.Blog: https://security.googleblog.com/2020/03/announcing-our-first-gcp-vrp-prize.h...
Deepdive Containers - Kernel Sources and nsenter
Let's play around with Docker a bit more. We learn about the nsenter command, how kernel code execution allows escaping from docker and we look at Linux Kernel source code of getpid(). Daniel Mitre's blog: https://medium.com/@flag_seeker/linux-container-from-scratch-339c3ba0411dbocker: https...
How Docker Works - Intro to Namespaces
Let's figure out how Docker works! We will investigate docker by tracing the syscalls to find the Linux Kernel feature called Namespaces. We also learn about the different ones like process id, network or mount namespaces.docker → dockerd → containerd → runC → unshare syscall Part 1: htt...
Introduction to Docker for CTFs
I'm using Docker more often for CTFs, but it's also useful to host challenges. More CTFs share Dockerfiles to run it locally, so I figured it's time to give an introduction to docker.Example challenge and CTF container: https://github.com/LiveOverflow/pwn_docker_exampleNext video will be...
No Videos? - Update February 2020
Hey everybody!Because there were no uploads since December, some of you were a bit worried. But everything is fine :) Since I dropped the pressure to deliver weekly videos, I have fallen out of the rhythm creating them; combined with some lack of motivation, I didn't feel super excited working o...
Haxember Videos #14-19
As mentioned in the post last month [0], I'm bundling 6 of the lower effort videos into one "charged post" on Patreon. So here is the third set of six videos of Haxember!Full Playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjzTvVyL_8H-DJBf8VT3uiu2 Self-aware Video: it knows its...
Haxember Videos #7-13
As mentioned in the post last month [0], I'm bundling 6 of the lower effort videos into one "charged post" on Patreon. So here is the second set of six videos of Haxember!Full Playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjzTvVyL_8H-DJBf8VT3uiu2 WHY YOUR HACKING QUESTIONS AR...
Finding iOS Kernel Exploit // SockPuppet Jailbreak - CVE-2019-8605
Today I have one of the promised typical LiveOverflow videos for you! It's a collaboration with Ned Williamson and has been in the making for a while.He also has released a blog post about it on the Google Project Zero blog: https://googleprojectzero.blogspot.com/2019/12/sockpuppet-walkthrough-o...
Haxember Videos #1-6
As mentioned in my previous post [0], I will bundle 6 of the lower effort videos into one "charged post" on Patreon. So here are the first six videos of Haxember!Full Playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjzTvVyL_8H-DJBf8VT3uiu2There were 4 technical videos that compleme...
WARNING! Haxember is coming!
I'm planning a small experiment in December, by uploading 24 videos. That's why I wanted to give you a heads up about my plans with charging "per video" on Patreon.At least 2 videos will be regular full LiveOverflow videos that took a lot of effort - so there will be 2 "charged p...
Zero-day vulnerability in Bash - Suidbash Google CTF Finals 2019 (pwn)
New video about the suidbash challenge from the Google CTF Finals 2019. It's about an actual zero-day in /bin/bash - CVE-2019-18276What do you think about interviews like this for CTFs?https://www.youtube.com/watch?v=-wGtxJ8opa8
Next VLOG Preview - my road becoming a travel vlogger influencer #instagram #ad #sponsored
Don't worry, technical videos are still coming! But as I mentioned in my Test VLOG, I was going to travel to an event and I'm just having a bit of fun experimenting.As some might have already figured out, I was invited by Google to attend the Google CTF finals, as well es a Google bug bounty...
Reading Player Position with DLL Injection - Pwn Adventure 3
Another PwnAdventure episode. We are very close to a fly hack! But this time I got some help with creating a .dll for a DLL injection. And then we can use the pointer paths we have found last video, to read the player position from the Pwn Adventure 3 game process.🌴 Playlist: https://www.youtube....
Test VLOG / Channel Updates / Building PC
I have created a test VLOG including some info about the past few months.I was very busy with my master thesis, but I'm finally done. I don't know yet if I will pass, but for now I am free again :DI will also travel this week and try to VLOG it, that's why I attempted a test VLOG.Let me ...
Google Paid Me to Talk About a Security Issue!
I think this video is really cool. Google reached out to me to make a video about a vulnerability a bug hunter found in one of their products!What do you think about it?
Finding Player and Camera Position for Fly Hack - Pwn Adventure 3
We continue doing some Cheat Engine work to find the player's and camera's position. This will help us to implement a fly hack in a future episode.blog: https://liveoverflow.com/player-and-camera-position-for-fly-hack-pwn-adventure-3-2/playlist: https://www.youtube.com/playlist?list=PLhixgUq...
How Speedrunners Use Game Hacking Tools
We continue our journey in Windows Game hacking with Pwn Adventure 3, by looking at Pointer Scans from Cheat Engine. And surprisingly the same techniques are being used by speedrunners to implement automatic time splitters.blog: https://liveoverflow.com/why-speedrunners-are-hackers-and-cheaters/
Windows Game Hacking with Ghidra and Cheat Engine
We are going to learn basic game hacking on Windows with Cheat Engine and Ghidra.Pwn Adventure 3 Playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjzzBeFSHXrw9DnQtssdAwgGblog: https://liveoverflow.com/getting-started-with-windows-game-hacking-pwn-adventure-3/























