Skip to content
Xenops logoXenops
  • About
  • Products
    Qannas

    Interested In Qannas?

    Request a demoGet Your Exposure Report
    ProductsQannasHunt leaked credentials before attackers do.
  • Services
  • Contact
Research
AboutProductsQannasServicesContactResearch
Tag Archive

Reverse Engineering

Behavioral analysis of binaries, firmware, and protocols.

One Byte Is Plenty: Reversing IceWarp CVE-2025-14500
Aug 08, 2026
XENOPS Research

One Byte Is Plenty: Reversing IceWarp CVE-2025-14500

IceWarp's X-File-Operation RCE (CVE-2025-14500) is really a missing null-byte check in the FastCGI parameter builder. One null byte in a request is enough for unauthenticated code execution as root.

  • Reverse Engineering
  • PHP
  • Penetration Testing
Breaking the Cube: Under the Hood of ionCube Loader
Mar 06, 2026
XENOPS Research

Breaking the Cube: Under the Hood of ionCube Loader

Reverse engineering ionCube's Zend VM hooks and the opcode dispatch it drives.

  • Reverse Engineering
  • PHP
  • ionCube
XENOPS logo

Offices

Command hub in Abu Dhabi.

Contact

support@xenops.ae

Links

About XENOPS
Product lineup
Service catalog
Qannas - Exposure Intelligence
Research labs

© 2026 Xenops Security Group. All rights reserved.