Reading Kernel Source Code - Analysis of an Exploit @LiveOverflow
Reading Kernel Source Code - Analysis of an Exploit  @LiveOverflow
Uploaded January 2021 | Updated September 2026, 2 weeks ago
After examining a SerenityOS kernel exploit, this video digs into the SerenityOS and Linux kernel source to understand why the ptrace()/execve() race condition exists. It then attempts new vulnerability research and shows why reading more code matters even when an experiment fails.

LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-system-hacking/serenity-os-kernel-exploits
Join the Hextree Discord: discord.gg/xgQpCQCpvy

RELATED VIDEO
Part 1 - The Kernel Exploit: youtube.com/watch?v=qUh507Na9nk

CHAPTERS
00:00 - Intro
00:27 - Part 1 - Linux vs. Serenity
01:17 - Finding ptrace() in Linux
01:31 - Finding ptrace() in Serenity
02:12 - Comparing Linux and Serenity ptrace() Code
04:07 - Architecture Specific Code in Linux
04:45 - Continue Comparing Linux vs. Serenity ptrace() Code
05:08 - Conclusion of Part 1
05:57 - Part 2 - hxp wisdom2 Exploit Analysis
06:44 - Reading ptrace() again
07:26 - Reading execve() code
08:46 - The Critical execve() code
09:30 - Do You Notice The Vulnerability?
10:17 - Race Condition Exploit Strategy
11:48 - Part 3 - Doing Own Research
13:15 - Doing an Experiment
15:44 - Kernel Changes for Experiment
16:00 - Failed Experiment
16:26 - Asking Andreas Kling About Scheduler Code
17:45 - Conclusion - Read More Code
18:38 - Outro

SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com

WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog

#LinuxSecurity #LiveOverflow

(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.
Reading Kernel Source Code - Analysis of an ExploitWriting a Simple Buffer Overflow ExploitResearching MissingNo Glitch in PokemonCannot access memory at address // Debugging PIE Binaries affected by ASLR - bin 0x2EDid an AI Really Hack Hugging Face?Exploiting Java Tomcat With a Crazy JSP Web Shell - Real World CTF 2022Public Penetration Test Reports - Learning ResourceMinecraft Reach HackKernel Root Exploit via a ptrace() and execve() Race ConditionExploit Fails? Debug Your Shellcode - bin 0x2BDeepdive Containers - Kernel Sources and nsenterPentesting vs. Bug Bounty vs. Pentesting ???
LiveOverflow |

Reading Kernel Source Code - Analysis of an Exploit

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER