MongoDB: Exploiting MongoBleed Vulnerability CVE-2025-14847

In this post, I’ll walk you through a stealthy evasion technique that involves modifying the Sysmon driver’s altitude. how altitudes affect kernel monitoring, and how attackers can abuse this mechanism to disable or crash security tools, without ever touching the EDR itself. ...

December 27, 2025 · 1 min · Bhagavan Bollina

Ollama's Platform's API: Authentication Bypass Vulnerability CVE-2025-63389

In this post, I’ll walk you through a stealthy evasion technique that involves modifying the Sysmon driver’s altitude. how altitudes affect kernel monitoring, and how attackers can abuse this mechanism to disable or crash security tools, without ever touching the EDR itself. ...

December 18, 2025 · 1 min · Bhagavan Bollina

Exploiting React2Shell Vulnerability {CVE-2025-55182/66478}

In this post, I’ll walk you through a a critical vulnerability in React Server Components (RSC). Tracked as CVE-2025-55182 and widely known as React2Shell, the flaw enables unauthenticated remote code execution (RCE) in applications using the React Server Components Flight protocol. ...

December 8, 2025 · 3 min · Bhagavan Bollina

Abusing Sysmon Driver Altitude to Evade Detection

In this post, I’ll walk you through a stealthy evasion technique that involves modifying the Sysmon driver’s altitude. how altitudes affect kernel monitoring, and how attackers can abuse this mechanism to disable or crash security tools, without ever touching the EDR itself. ...

June 9, 2025 · 4 min · Bhagavan Bollina