Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Reports — Curated collection of cybersecurity research reports covering CVE analysis, exploit research, threat intelligence, and offensive security from 2023-2026. | Kitploit
Tools/GitHubGitHub/j4ck3lsyn-gen2/reports
IoT SecurityVulnerability AnalysisExploitationMalware AnalysisThreat IntelligenceSupply Chain SecurityPapers & ResearchRed TeamingIncident ResponseCurated ResourcesBinary Exploitation
211 month agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
GitHub
j4ck3lsyn-gen2/reports

Reports

Curated collection of cybersecurity research reports covering CVE analysis, exploit research, threat intelligence, and offensive security from 2023-2026.

View Repository

Cybersecurity Research & Threat Intelligence Reports

This repository contains a collection of technical reports, threat intelligence briefs, and offensive security research focused on the 2025-2026 cybersecurity landscape.

Project Structure

Reports are categorized using the following prefix system:

  • OS: Offensive Security (Exploit research, lab PoCs, and red teaming tactics)
  • IS: Information Security (Threat intelligence, incident post-mortems, and defensive strategy)
  • LS: Landscape (Broad industry trends, projections, and situational awareness)

Report Index

2026 Reports

FileTypeDescription
OS-IS-CVE-2026-58457-07-2026.mdOS/ISShenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) Unauthenticated OS command injection
OS-IS-CVE-2026-13768-07-2026.mdOS/ISAzure IoT Hub RCE via shared key access
OS-IS-CVE-2026-39047-07-2026.mdOS/ISEpson L14150 (firmware FL27PB) a remote buffer overflow in Epson multifunction printers (notably the L14150 FL27PB) when processing malformed or oversized payloads over the RAW TCP printing protocol (typically port 9100).
OS-IS-CVE-2026-48558-07-2026.mdOS/ISSimpleHelp OIDC Auth Bypass a critical authentication bypass vulnerability in SimpleHelp Remote Monitoring and Management (RMM) software.
OS-IS-CVE-2026-6307-07-2026.mdOS/ISV8 Security (Longinus) Report Analysis of CVE-2026-6307, nicknamed "Longinus", a critical vulnerability in V8's TurboFan compiler affecting JavaScript-to-WebAssembly call inlining and FrameState merging.
OS-IS-IPV6FRAGESCAPE-06-2026.mdOS/ISipv6 LPE Analysis the ipv6_frag_escape proof‑of‑concept (PoC) exploit released in June 2026
OS-IS-CHAOS-OP-06-2026.mdOS/ISEngagement Report Details the offensive security operations conducted against the Supabase Edge Functions associated with the chaosfoundry.digital infrastructure
OS-IS-DIRTYSPLOITS-06-2026.mdOS/ISA Mix of Linux Exploits Analysis of recent DirtyClone, DirtyFrag, Fragnesia, pedit-cow, PinTheft, CopyFail, dirtycbc, ssh-keysign-pwn, nft-catchall-uaf and pintheft(non uring_io)
OS-IS-EXPLOITARIUM-RESEARCH-06-2026.md(.yar)OS/ISExploitarium Research: Analysis of Exploitarium 0-day exploits. Source: https://github.com/bikini/exploitarium
IS-LS-Q1-Q2-05-2026.mdLS/IS

2025 Reports


Formatting & Syntax Notices

To maintain a high level of technical clarity, these reports utilize specific formatting standards. Ensure your markdown viewer supports the following extensions for the best experience:

1. Mathematical Notation

Several reports (specifically the DDoS and Kernel research) use LaTeX/KaTeX for expressing amplification factors, execution flows, and cryptographic projections.

  • Inline: $ \text{Factor} = \frac{\text{Response}}{\text{Request}} $
  • Block: $$ \text{Command: } \texttt{esxcli vm process kill} \quad \longrightarrow \quad \text{Encryption} $$

2. Specialized Callouts (Alerts)

We use GitHub-style callouts to highlight critical warnings, especially regarding legal ethical boundaries and lab safety.

root@kitploit:~
> [!WARNING]
> This document is authorized exclusively for internal red-team exercises within air-gapped laboratory networks.

> [!NOTE]
> Information generated via A.T.L.A.S assisted research.

3. Technical Diagrams

Architecture and attack flow diagrams are provided in ASCII format to ensure compatibility across all terminal-based and web-based markdown editors.

root@kitploit:~
[Attacker] ---> [OIDC Token Abuse] ---> [Cloud Environment]

4. Code Blocks & Diffs

Code samples are provided with language-specific syntax highlighting. Offensive samples often include "Production-Quality" annotations to explain evasion mechanics line-by-line.


Consolidated CVE Index

The following table summarizes all vulnerabilities discussed across the research reports, sorted by year.


Lab Safety & Legal Disclaimer

All offensive security content within these reports is for academic and defensive research only.

The techniques described—including kernel-level exploitation, workflow poisoning, and DDoS amplification—can cause significant damage if used outside of controlled environments. Unauthorized access to computer systems is a violation of international law.

Author: J4ck3LSyN Github: https://github.com/J4ck3LSyN-Gen2/
X: https://twitter.com/J4ck3LSyN
Assistance: A.T.L.A.S (Advanced.Transmit.Logic.Analysis.Systems)

Download Tool
2026 Mid-Year Landscape: Analysis of Agentic AI, npm supply chain attacks (Axios/TanStack), and the Canvas LMS breach.
IS-REPORT-05-2026.mdISSupply Chain & Workflow Poisoning: Deep dive into TeamPCP, GitHub internal breaches, and Linux "Dirty Frag" vulnerabilities.
IS-IRAN-APT-03-2026.mdISIranian Cyber Update: Coverage of the Stryker Corporation attack and the KadNap P2P botnet.
OS-REFAMPv2-02-2026.mdOSDDoS & Botnets: Implementation of Reflection/Amplification attacks and Mirai-family C2 evasion.
IS-LS-PROJECTION-Q1-01-2026.mdLS2026 Projections: Early 2026 forecasts regarding Cloud infrastructure and polymorphic malware.
FileTypeDescription
OS-IS-BYOVD-11-2025.mdOS/ISKernel Research: Bring Your Own Vulnerable Driver (BYOVD) tactics and Linux eBPF rootkit development.
OS-LS-ADVANCED-RCE-WEBVULN-11-2025.mdOS/LSWeb Vulnerabilities: Advanced RCE chains, V8 Type Confusion, and modern GraphQL/SAP exploitation.
IS-IRAN-0119-2025.mdISIranian Capabilities: Comprehensive overview of IRGC/MOIS TTPs and their malware arsenal (MuddyWater, OilRig, etc.).
CVE IDAffected System / ProductVulnerability Type / DescriptionSource Report
2026
CVE-2026-58457Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02)The vulnerability resides in the smacfilter_conf handler where user-supplied input via the name, enable, or mac GET parameters is passed unsanitized into a sprintf() call, which is subsequently executed via doSystemCmdComlib(). An unauthenticated attacker can inject arbitrary shell commands and execute them with root privileges on the device.OS-IS-CVE-2026-58457-07-2026.md
CVE-2026-13768Azure IOT Hubexposure of an owner-level Shared Access Key enables unauthenticated remote code execution (RCE) against connected IoT devicesOS-IS-CVE-2026-13768-07-2026.md
CVE-2026-39027EpsonA critical stack-based buffer overflow (CWE-121) in the EPSON L14150 (firmware FL27PB) RAW Printing Service (JetDirect-compatible, TCP port 9100).OS-IS-CVE-2026-39047-07-2026.md
CVE-2026-48558SimpleHttpA critical authentication bypass vulnerability in SimpleHelp Remote Monitoring and Management (RMM) software. Affected versions (5.5.15 and prior, 6.0 pre-releases) fail to verify the cryptographic signature of OIDC ID Tokens (JWTs) during the authentication callback.OS-IS-CVE-2026-48558.md
CVE-2026-6307v8A critical vulnerability in V8's TurboFan compiler affecting JavaScript-to-WebAssembly call inlining and FrameState mergingOS-IS-CVE-2026-6307-07-2026.md
CVE-2026-46331act_peditRace condition in net/sched act_pedit partial copy-on-write page-cache write.OS-IS-DIRTYSPLOITS-06-2026.md
CVE-2026-23111nf_tablesUse-after-free in the nf_tables subsystem due to missing reactivation on the netlink abort path.OS-IS-DIRTYSPLOITS-06-2026.md
CVE-2026-43503Linux KernalLinux kernel local privilege escalation via insufficient flag propagation in __pskb_copy_fclone() when cloning socket buffers carrying spliced, file-backed page-cache fragments.OS-IS-DIRTYSPLOITS-06-2026.md
CVE-2026-55200libssh2 <= 1.11.1Buffer Overflow via unchecked packet_length field in SSH2 packet parsing leading to RCEOS-IS-EXPLOITARIUM-RESEARCH-06-2026.md
CVE-2026-45115MyBB <= 1.8.40Priv-Esc via insufficient permissions checks in the Admin Control Panel's user-management moduleOS-IS-EXPLOITARIUM-RESEARCH-06-2026.md
CVE-2026-46300Linux KernelFragnesia: XFRM ESP-in-TCP reassembly bypassIS-REPORT-05-2026
CVE-2026-43500Linux KernelDirty Frag: rxrpc fragment heap corruptionIS-REPORT-05-2026
CVE-2026-43284Linux KernelDirty Frag: IPsec ESP (esp4/esp6) heap corruptionIS-REPORT-05-2026
CVE-2026-32922OpenClawPath Traversal leading to Admin RCEIS-LS-Q1-Q2-05-2026
CVE-2026-31976GitHub ActionsTag Poisoning / Backdoored action.yml patternIS-REPORT-05-2026
CVE-2026-28472OpenClawWebSocket Gateway Authorization BypassIS-LS-Q1-Q2-05-2026
CVE-2026-27941OpenlitWorkflow Poisoning via pull_request_targetIS-REPORT-05-2026
CVE-2026-27001OpenClawAI Agentic Security VulnerabilityIS-LS-Q1-Q2-05-2026
CVE-2026-26327OpenClawDNS Service Discovery & TLS Pin BypassIS-LS-Q1-Q2-05-2026
CVE-2026-25593OpenClawAI Framework VulnerabilityIS-LS-Q1-Q2-05-2026
CVE-2026-24763OpenClawSandbox Escape via PATH Command InjectionIS-LS-Q1-Q2-05-2026
2025
CVE-2025-66478Legacy EncryptionCryptographic vulnerability / "Harvest Now, Decrypt Later" riskIS-LS-PROJECTION-Q1-01-2026
CVE-2025-64446FortiWebPath Traversal to Admin RCEOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-59287Microsoft WSUSUnauthenticated RCE via .NET DeserializationOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-57751Citrix NetScaler ADCICCP RCE via arbitrary file writeOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-55182React Web FrameworkReact2Shell: Remote Code ExecutionIS-LS-PROJECTION-Q1-01-2026
CVE-2025-53770SharePointViewState Deserialization WebshellOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-49844RedisLua UAF Remote Code ExecutionOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-49706Access ControlsIdentity compromise / Authentication bypassIS-LS-PROJECTION-Q1-01-2026
CVE-2025-49704Edge DevicesWMI/PowerShell abuse vulnerabilityIS-LS-PROJECTION-Q1-01-2026
CVE-2025-48633Android FrameworkMobile-based reconnaissance vulnerabilityIS-LS-PROJECTION-Q1-01-2026
CVE-2025-42925SAP SRMStored XSS leading to session hijackingOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-31324SAP NetWeaverInvokerServlet Deserialization RCEOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-16379SNMP ProtocolInformation disclosure in network managementIS-LS-PROJECTION-Q1-01-2026
CVE-2025-13223Chromium V8Type Confusion leading to RCEOS-LS-ADVANCED-RCE-WEBVULN-11-2025
CVE-2025-1316Botnet TargetLifecycle infection vectorOS-REFAMPv2-02-2026
2024
CVE-2024-50302Linux Kernelhiddev vulnerability utilized in rootkitsOS-IS-BYOVD-11-2025
CVE-2024-30085Windows KTMKernel Transaction Manager Object Race → UAFOS-IS-BYOVD-11-2025
CVE-2024-30078Windows / dxgkrnlWi-Fi RCE via GPU context corruptionOS-IS-BYOVD-11-2025
CVE-2024-24919Check Point GatewaysAuthentication bypass / Information disclosureIS-IRAN-0119-2025
CVE-2024-21887Pulse Secure / IvantiCommand InjectionIS-IRAN-0119-2025
CVE-2024-21405Intel iGPUOut-of-bounds read leading to info leakOS-IS-BYOVD-11-2025
CVE-2024-6765Windows CLFSLog manipulation / Arbitrary writeOS-IS-BYOVD-11-2025
CVE-2024-6047Botnet TargetLifecycle infection vectorOS-REFAMPv2-02-2026
CVE-2024-4671AMD GPUShader compiler heap overflowOS-IS-BYOVD-11-2025
CVE-2024-3400Palo Alto PanOSOS Command InjectionIS-IRAN-0119-2025
CVE-2024-0085NVIDIA GPUnvhda64v.sys heap overflow → kernel EoPOS-IS-BYOVD-11-2025
2023
CVE-2023-39780ASUS RoutersEdge device vulnerability (KadNap botnet)IS-IRAN-APT-03-2026
CVE-2023-3519Citrix NetscalerUnauthenticated RCEIS-IRAN-0119-2025
CVE-2023-31083Linux Kernelsnd-rawmidi Use-after-freeOS-IS-BYOVD-11-2025
CVE-2023-28252Windows CLFSPrivilege Escalation (BYOVD chain)OS-IS-BYOVD-11-2025
Pre-2023
CVE-2022-0847Linux KernalDirtyFrag(Variant) Linux kernel page-cache write vulnerability in the IPsec ESP input processing path.OS-IS-DIRTYSPLOITS-06-2026.md
CVE-2022-1388F5 BIG-IPiControl REST Authentication BypassIS-IRAN-0119-2025
CVE-2021-44228Log4j2Log4Shell RCEIS-IRAN-0119-2025
CVE-2021-21551Dell dbutil_2_3.sysMemory corruption in IOCTL (BYOVD)OS-IS-BYOVD-11-2025
CVE-2021-1732Windows Win32kPrivilege Escalation (BYOVD accessory)OS-IS-BYOVD-11-2025
CVE-2021-0512Linux Kernelhiddev OOB writeOS-IS-BYOVD-11-2025
CVE-2020-36158Linux Kernelmwifiex heap overflowOS-IS-BYOVD-11-2025
CVE-2020-5902F5 BIG-IPTMUI Remote Code ExecutionIS-IRAN-0119-2025
CVE-2020-1472MS AD / ZeroLogonActive Directory Privilege EscalationIS-IRAN-0119-2025
CVE-2019-19781Citrix NetscalerPath Traversal / RCEIS-IRAN-0119-2025
CVE-2019-16098MSI RTCore64.sysArbitrary MSR read/write (BYOVD)OS-IS-BYOVD-11-2025
CVE-2019-11510Pulse Secure VPNArbitrary File ReadIS-IRAN-0119-2025
CVE-2018-20250WinRARDirectory Traversal (ACE format)IS-IRAN-0119-2025
CVE-2018-13379Fortinet FortiOSPath Traversal (Credential Leak)IS-IRAN-0119-2025
CVE-2017-11882MS OfficeEquation Editor buffer overflow (RCE)IS-IRAN-0119-2025
CVE-2015-2291Intel EthernetArbitrary kernel R/W (BYOVD)OS-IS-BYOVD-11-2025