blogs

// writings on security research, exploits, and tools

2026
Chaining ISC DHCP Server Features for Unauthenticated Root Remote Code Execution
2025
Watch Your AI! Using Replit AI to Mask Your C2 Traffic PandoraFMS v7.0NG.777.3 Remote Command Execution (CVE-2024-11320)
2023
Froxlor v2.0.6 Remote Command Execution (CVE-2023-0315)
2022
Oh my API, abusing TYK cloud API management to hide your malicious C2 traffic DNSStager v1.0 stable: Stealthier code, DLL agent & much more
2021
Unveiling DNSStager: A tool to hide your payload in DNS Unveiling BugHound: a static code analysis tool based on ElasticSearch
2020
Defeat Bitdefender Total Security Using Windows API Unhooking to Perform Process Injection Octopus v1.2 stable: shellcode generation, spoofed args agent & much more! In-Memory shellcode decoding to evade AVs/EDRs OCS Inventory NG v2.7 Remote Command Execution (CVE-2020-14947) Automate Octopus C2 RedTeam Infrastructure Deployment Open-AudIT v3.3.1 Remote Command Execution (CVE-2020-12078) Octopus v1.0 stable: Cobalt Strike deployment & much more! Cacti v1.2.8 Authenticated Remote Code Execution (CVE-2020-8813) PandoraFMS v7.0NG authenticated Remote Code Execution (CVE-2019-20224)
2019
Unveiling Octopus: The pre-operation C2 for Red Teamers rConfig v3.9.2 authenticated and unauthenticated RCE (CVE-2019-16663) and (CVE-2019-16662) FusionPBX v4.4.8 authenticated Remote Code Execution (CVE-2019-15029) Centreon v19.04 Remote Code Execution (CVE-2019-13024) LibreNMS v1.46 Remote Code Execution (CVE-2018-20434)