---
title: "Brief Tour of OFRAK 2.2.1 Red Balloon Security"
description: "We published OFRAK 2.2.1 to PyPI on March 8, 2023. As always, a detailed list of changes can be viewed in the OFRAK Changelog."
author: "Neil Durkin"
date: "2023-03-20T16:31:53+00:00"
language: "en-US"
canonical_url: "https://xckd6kzuxte054o.onstatic.studio/brief-tour-of-ofrak-2-2-1/"
source_url: "https://xckd6kzuxte054o.onstatic.studio/brief-tour-of-ofrak-2-2-1/"
content_type: "text/markdown"
---

[![CHV CTF — ELF “.shellcode” section highlighted (syscall randomization)](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/2025/08/image7_2025-08-20_02_24_49.634949.png-1024x368.png)](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)










###

                                        [Hacking Randomized Linux Kernel Images at the DEF CON 33 Car Hacking Village](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)





                                    [Conferences](https://xckd6kzuxte054o.onstatic.studio/category/blog/conferences/), [Research](https://xckd6kzuxte054o.onstatic.studio/category/blog/research/)















###

                            [Hacking Randomized Linux Kernel Images at the DEF CON 33 Car Hacking Village](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)







                            August 21, 2025






                            Red Balloon Security’s DEF CON 33 Car Hacking Village CTF write-up: unpacking firmware, cracking a repeating-key XOR, and exploiting a buffer overflow on ARM64 to ROP into mprotect() and execute shellcode—despite randomized Linux syscall numbers.







                            [Read More](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)
