Security Research

CVE-2025-59287 WSUS Unauthenticated RCE
A technical WSUS advisory for CVE-2025-59287: unauthenticated unsafe deserialization in Windows Server Update Services that allows remote code execution.

CVE-2025-59287 WSUS Remote Code Execution
A technical WSUS advisory for CVE-2025-59287: unsafe deserialization in Windows Server Update Services that allows remote code execution.

CVE-2025-53772 IIS WebDeploy RCE
A detailed technical analysis and research notes on the vulnerability in msdeployagentservice and msdeploy.axd endpoints of Microsoft Web Deploy, where unsafe deserialization of HTTP header contents allows an authenticated attacker to perform remote code execution.

CVE-2024-12106 WhatsUpGold Pre-Auth
Security research on WhatsUpGold LDAP authentication vulnerability enabling pre-authentication exploitation and credential theft.

SQL Server Smart Admin Agent RCE
Deep dive into SQL Server Smart Admin Agent internals and potential exploitation paths showing how TaskAgent mechanism can be abused for remote code execution.
Showing 5 of 5 posts
