~/incogbyte
Rodolfo Tavares
Research notebook
Latest writing
Jailbreaking the iPhone 3GS from Scratch, Part 3: Bypassing the Boot Chain
Jailbreaking the iPhone 3GS from Scratch, Part 3: Bypassing the Boot Chain Note: I am always learning. This series is a study project, not a definitive guide, and I will certainly …
Jailbreaking the iPhone 3GS from Scratch, Part 2: Reverse Engineering the BootROM
Jailbreaking the iPhone 3GS from Scratch, Part 2: Reverse Engineering the BootROM Note: I am always learning. This series is a study project, not a definitive guide, and I will …
Jailbreaking the iPhone 3GS from Scratch, Part 1: initial access
Jailbreaking the iPhone 3GS from Scratch, Part 1: initial access Note: I am always learning. This series is a study project, not a definitive guide, and I will certainly make …
phpIPAM 1.7.4 - Second Order SQL Injection via subnetOrdering
Second Order SQL Injection in phpIPAM 1.7.4 (CVE-2026-4189) Back in 2022, I found a SQL injection in phpIPAM 1.4.4 (CVE-2022-23046) via the BGP mapping search feature. That was a …
Runner Mobile Hacking Labs
In this challenge, you’ll be working with a fictitious app called Run Time, which tracks your steps while running. Your objective is to bypass the app’s protections, inject a …
Captain No Hook Mobile Hacking Labs
Introduction The Captain No Hooks lab provides an in-depth exploration of iOS RASP (Runtime Application Self-Protection) defenses. This comprehensive guide focuses on how we can …
Time Trap Mobile Hacking Labs
Introduction In this challenge, you will explore the vulnerabilities in an internally used application named Time Trap, focusing on Command Injection. Time Trap is a fictional …
Gotham Times Mobile Hacking Labs
Introduction The Gotham Times lab provides an in-depth exploration of iOS webviews and their security implications. This comprehensive guide focuses on how vulnerabilities in …