// COMPLETE RESEARCH ARCHIVE
Chronological index of all published CVE research, exploit writeups, and offensive security dispatches.
2026 RESEARCH LOG
MEMO #006 // 2026-08-15
OFFENSIVE SECURITY
DropoutJeep: The Phishing Simulator That Refuses to Drop Out
Why a phishing-simulation platform ships 80-plus modules — OSINT, pretext crafting, payload generation, C2, evasion, persistence, and the long, humbling fight for inbox deliverability.
MEMO #005 // TBD
OFFENSIVE SECURITY
Stored XSS in a Widely Deployed CMS Plugin
Unauthenticated stored XSS found while diffing an unrelated patch. Vendor and plugin withheld pending coordinated disclosure.
MEMO #004 // 2026-08-15
OFFENSIVE SECURITY
GrandScream: From One Desk Phone to a Root PBX
Recon methodology and full-chain automation against Grandstream UCM/GXP — blind-oracle SQLi to root in one command.