CODE WHITE - FINEST HACKING
Intelligence Driven Security
Initial Assessment
Security Intelligence Service
About us
PUBLIC VULNERABILITY LIST
Multiple Unauthenticated Remote Memory Corruptions in agentlink_server Service in Vinchin Backup & Recovery
Unauthenticated Remote Code Execution via Deserialization of Untrusted Data in Lobster Data Platform
FileViewer Path Traversal File Read in MailEnable
...
CAREERS
Challenge
Senior Red Teamer
Senior Penetration Tester
n-day Researcher
Vulnerability Intelligence Analyst
BLOG
Unauthenticated RCE in NetSupport Manager - A Technical Deep Dive
A Retrospective Analysis of CVE-2025-59287 in Microsoft WSUS
Analyzing the Attack Surface of Ivanti's DSM
...
>
CODE WHITE | Red Teaming & Attack Surface Management
>
Authors
>
Matthias Kaiser
LethalHTA - A new lateral movement technique using DCOM and HTA
Marshalling to SYSTEM - An analysis of CVE-2018-0824
Exploiting Adobe ColdFusion before CVE-2017-3066
Return of the Rhino: An old gadget revisited
Infiltrate 2016 Slidedeck: Java Deserialization Vulnerabilities
CVE-2015-3269: Apache Flex BlazeDS XXE Vulnerabilty
Exploiting the hidden Saxon XSLT Parser in Ektron CMS
How I could (i)pass your client security