---
title: "Blog - Red Balloon Security"
language: "en-US"
canonical_url: "https://xckd6kzuxte054o.onstatic.studio/category/blog/"
source_url: "https://xckd6kzuxte054o.onstatic.studio/category/blog/"
content_type: "text/markdown"
---

# Category: Blog







## [Hacking Randomized Linux Kernel Images at the DEF CON 33 Car Hacking Village](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)

[![Disassembly view highlighting CodeRegion 0x402000–0x402028 and ELF section .shellcode during firmware analysis.](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/2025/08/image7_2025-08-20_02_24_49.634949.png-1024x368.png)](https://xckd6kzuxte054o.onstatic.studio/2025-def-con-chv-ctf/)

Red Balloon Security’s DEF CON 33 Car Hacking Village CTF write-up: unpacking firmware, cracking a repeating-key XOR, and exploiting a buffer overflow on ARM64 to ROP into mprotect() and execute shellcode—despite randomized Linux syscall numbers.





## [Introducing RASPUTIN: Automated Hardware Reversing by Red Balloon Security](https://xckd6kzuxte054o.onstatic.studio/introducing-rasputin/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/2025/04/Untitled-72-1024x550.png)](https://xckd6kzuxte054o.onstatic.studio/introducing-rasputin/)

Introducing RASPUTIN: the human-on-the-loop automated hardware reversing platform from Red Balloon Security. Launched in May 2025, RASPUTIN revolutionizes hardware analysis and firmware extraction by combining advanced automation with human oversight.





## [Hacking Secure Software Update Systems at the DEF CON 32 Car Hacking Village](https://xckd6kzuxte054o.onstatic.studio/dc32-car-hacking-ctf/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/2024/08/defcon-banner-e1724022044824-1024x374.jpg)](https://xckd6kzuxte054o.onstatic.studio/dc32-car-hacking-ctf/)

Read about Red Balloon’s CTF at DEF CON 32’s Car Hacking Village, highlighting secure software updates.





## [Red Balloon Security Identifies Critical Vulnerability in Kratos NGC-IDU](https://xckd6kzuxte054o.onstatic.studio/red-balloon-security-identifies-a-critical-vulnerability-in-the-kratos-ngc-idu/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/KRATOS-NGC-Vuln-Header-Image-1-1024x581.png)](https://xckd6kzuxte054o.onstatic.studio/red-balloon-security-identifies-a-critical-vulnerability-in-the-kratos-ngc-idu/)

Red Balloon Security Researchers discover and patch vulnerabilities regularly. One such recent discovery is CVE-2023-36670, which affects the Kratos NGC-IDU 9.1.0.4 system. Let’s dive into the details of this security issue.





## [Hacking In-Vehicle Infotainment Systems with OFRAK 3.2.0 at DEF CON 31](https://xckd6kzuxte054o.onstatic.studio/ofrak-at-defcon31/)

[![OFRAK interface displaying the layered structure of an Intel HEX firmware image](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/ihex-1024x542.png)](https://xckd6kzuxte054o.onstatic.studio/ofrak-at-defcon31/)

Red Balloon Security attended DEF CON 31 in Las Vegas, Nevada where we contributed two challenges to the Car Hacking Village Capture the Flag (CTF) competition.





## [Brief Tour of OFRAK 3.1.0](https://xckd6kzuxte054o.onstatic.studio/ofrak-310/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/Screenshot-2023-06-20-at-4.00.21-PM-e1687291368191-1024x569.png)](https://xckd6kzuxte054o.onstatic.studio/ofrak-310/)

The latest version of OFRAK 3.1.0 on PyPI includes a range of new and experimental features. Click here t our full breakdown and demo clip.





## [The Power of ChatGPT, in the Palm of My OFRAK](https://xckd6kzuxte054o.onstatic.studio/the-power-of-chatgpt-in-the-palm-of-my-ofrak/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/image-75-1024x666.png)](https://xckd6kzuxte054o.onstatic.studio/the-power-of-chatgpt-in-the-palm-of-my-ofrak/)

Transform Cisco output strings into engaging visuals with ChatGPT and OFRAK. Elevate your network troubleshooting skills – learn how in our latest blog.





## [In OFRAK 3.0.0, the App Writes the Code for You](https://xckd6kzuxte054o.onstatic.studio/ofrak-3-0-0/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/OFRAK-3.0.0-Blog-Post-Image-1-1024x640.png)](https://xckd6kzuxte054o.onstatic.studio/ofrak-3-0-0/)

One of the neat features we’ve had in mind for the OFRAK GUI, almost since it came out, is to be able to show you a Python script version of your actions in the GUI.

This is helpful for a few reasons: remembering what you did, learning the Python API, generalizing your work in the GUI to a reusable script or component, and probably more.

Well, now this feature is here!





## [How to Patch Functions with OFRAK’s FunctionReplacementModifier](https://xckd6kzuxte054o.onstatic.studio/how-to-patch-functions/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/Screenshot-2023-04-06-at-4.56.23-PM-1024x685.png)](https://xckd6kzuxte054o.onstatic.studio/how-to-patch-functions/)

OFRAK’s FunctionReplacementModifier provides an easy-to-use API that leverages the PatchMaker to replace one or more functions in a binary. This post will walk through how this works.





## [Brief Tour of OFRAK 2.2.1](https://xckd6kzuxte054o.onstatic.studio/brief-tour-of-ofrak-2-2-1/)

[![](https://xckd6kzuxte054o.onstatic.studio/wp-content/uploads/ofrak_gui_1-1024x592.png)](https://xckd6kzuxte054o.onstatic.studio/brief-tour-of-ofrak-2-2-1/)

We published OFRAK 2.2.1 to PyPI on March 8, 2023. As always, a detailed list of changes can be viewed in the OFRAK Changelog.
