Inside a Rare Kernel Anti-Cheat CTF: Small Mistakes, Huge Attack Surface
TBMKE defends two integers with a game process, a watchdog and a self-signed kernel driver. A handle taken before the driver arms, a record with no authenticator and a hash that turns itself off are enough to take both.
22 minestimated reading time