
Understanding safeguards/guardrails for cybersecurity work to not get blocked
Hitting AI guardrails on frontier models is annoying, therefore this blog explains them and describes how to work around them.

Hitting AI guardrails on frontier models is annoying, therefore this blog explains them and describes how to work around them.

Updates to the MS-RPC fuzzer includes fuzzing over complex structures and logging using ETW and we found a way to escalate to nt authority\system!

Showcasing a vulnerability in Windows that causes the Spooler service to crash remotely.

CVE-2025-59253: Demonstrating a vulnerability in Windows that leads to a low privileged user being able to delete the boot configuration data (BCD) through COM.

Diving into COM/DCOM and how to automate vulnerability research using a fuzzing approach.

Showcasing some different ways to craft exploits for vulnerabilities over MS-RPC

Partially solving the problem for procedures that need valid complex parameter types to fuzz, and open sourcing the tool

Diving into the MS-RPC protocol and how to automate vulnerability research using a fuzzing approach.

CVE-2025-26651: Revealing a vulnerability in Windows Local Session Manager (LSM), that causes it to crash

Having fun with Pass the Certificate and Kerberos errors and how to work around them