| CVE-2025-58364 | CUPS - Linux Printing Stack | Remote DoS via a fake printer response | Fuzzing IPP packet deserialization | write-up, including fuzzing & exploitation |
| CVE-2025-61915 | CUPS - Linux Printing Stack | Stack Underflow when parsing config with a ROP chain exploit | Fuzzing config parser | write-up, including fuzzing & exploitation |
| CVE-2025-61915 (2) | CUPS - Linux Printing Stack | Local DoS when parsing config due to null dereference | Fuzzing config parser | write-up, including exploitation/README.md) |
| CVE-2026-27447 | CUPS - Linux Printing Stack | Authorization Bypass due to case insensitive user name comparison | Static code analysis of the user auth component | write-up, including demo of chaining with CVE-2025-61915 to get unprivileged-to-root LPE |
| CVE-2026-23246 | Linux Kernel | Stack based OOB write in the mac80211 | CodeQL + Static code analysis | Commit & report |
| CVE-2026-31405 | Linux Kernel | Stack based OOB read in dvb-net | self-developed AI tool; may be released in the future | Commit & report |
| CVE-2026-25883 | Vexa AI | SSRF - authenticated users to configure an arbitrary URL that receives HTTP POST requests | self-developed AI tool; may be released in the future | report |
|