Research Worth Reading Week 22/2025

Published: 01 Jun 2025

Request Tunnelling and o3-powered zero-day hunting!

🚇 The Single-Packet Shovel: Digging for Desync-Powered Request Tunnelling

Check out this in-depth article on request tunnelling:  The Single-Packet Shovel: Digging for Desync-Powered Request Tunnelling.

🐧 How I Used o3 to Find CVE-2025-37899, a Remote Zero-Day in the Linux kernel’s SMB Implementation

Curious whether AI can uncover zero-days in the Linux kernel? Read:  How I Used o3 to Find CVE-2025-37899, a Remote Zero-Day Vulnerability in the Linux kernel’s SMB Implementation.

Photo of PentesterLab
Written by PentesterLab
The platform to learn web hacking and security code review