React2Shell (CVE-2025-55182): Active Exploitation Analysis
Deep dive into the CVSS 10.0 RCE in React Server Components. Analysis of active campaigns dropping MINOCAT tunnelers and XMRig miners.
Read MoreVulnerability Analysis | Threat Intel | Research
A deep dive into an IDOR vulnerability I discovered in Deezer's legacy API. This logic flaw allowed authenticated users to bypass privacy controls and access full metadata of private playlists belonging to other users.
Read Full ReportDeep dive into the CVSS 10.0 RCE in React Server Components. Analysis of active campaigns dropping MINOCAT tunnelers and XMRig miners.
Read MoreMastering the climb. Exploring common Linux misconfigurations, SUID binaries, and kernel exploits to elevate privileges in a compromised environment.
Read MoreMoving from logs to alerts. A practical guide to crafting effective detection rules in Splunk and ELK to spot malicious activity like brute-force attacks.
Read More