Research Library

Everything the Bandits have found, in one place.

Sixteen years of vulnerability research - advisories, papers, write-ups, talks and tools in a single searchable library.
Filter by what you need, or browse the whole body of work.

Advisories & CVEs

Responsibly disclosed vulnerabilities from our team.

CVE-2026-8971: Mozilla Firefox Same-Origin Policy Bypass via JAR URI Null Byte Handling

Exploitation occurs when a target loads a specifically crafted jar:, resource:///, or moz-extension:// URI, whether through direct navigation, a redirect served by attacker controlled web content, or…
Browser
Spoofing
High
IoT text with radio waves icon, symbolizing Internet of Things technology.
Dark gray arrow pointing to the right on a transparent background.Dark gray arrow pointing to the right on a transparent background.
Black triangular area covering the bottom left corner extending diagonally to the top right edge on a white background.

Extplorer Component up to 2.1.15 on Joomla cross site scripting

Successful exploitation allows an attacker to inject malicious JavaScript into a specially crafted URL.
Web / CMS
Cross-Site Scripting (XSS)
Medium
IoT text with radio waves icon, symbolizing Internet of Things technology.
Dark gray arrow pointing to the right on a transparent background.Dark gray arrow pointing to the right on a transparent background.
Black triangular area covering the bottom left corner extending diagonally to the top right edge on a white background.

SAML 2.0 Authentication Bypass in SolarWinds Web Help Desk

Successful exploitation allows a remote unauthenticated attacker to bypass SAML authentication and impersonate an existing privileged user.
Enterprise & Mobile
Authentication & Access Bypass
Critical
IoT text with radio waves icon, symbolizing Internet of Things technology.
Dark gray arrow pointing to the right on a transparent background.Dark gray arrow pointing to the right on a transparent background.
Black triangular area covering the bottom left corner extending diagonally to the top right edge on a white background.
See all Advisories & CVEs
White arrow pointing diagonally upward to the right on a black square background.Dark gray arrow pointing to the right on a transparent background.

Blog & Write-ups

The story behind the findings, in readable form.
Application Security
How a Double-Encoded Null Byte Turns a ZIP File into an XSS Vector – CVE-2026-2790
24 Apr 2026
10 min
Application Security
Security leaders
Researchers
For Security Leaders
Browser Security
Security Operations Center (SOC)
The Chrome Extension That Stole the CEO’s Cookies: A Confession on AI, Trust, and Supply Chain Security
08 May 2026
10 min
Browser Security
Security Operations Center (SOC)
Researchers
Security leaders
For Security Leaders
IoT & hardware
Exploit dev & reverse engineering
Binwalk Path Traversal Vulnerability: Turning Firmware Analysis into Code Execution
10 Jun 2026
8 min
IoT & hardware
Exploit dev & reverse engineering
Security leaders
Researchers
For Security Leaders
Research & disclosures
Read all CVE write-ups
White arrow pointing diagonally upward to the right on a black square background.Dark gray arrow pointing to the right on a transparent background.