Browser JIT Type Confusion Lab

2025 Q4 · Research Lead

Built reproducible V8/JSC primitives and documented crash triage workflow.

  • browser
  • reverse
  • exploit-dev
  • C++
  • Python
  • Docker
  • LLDB
  • Published debugging playbook for in-the-wild crash reports.
  • Reduced triage time with a custom testcase minimizer.

Mobile Hooking Playground

2025 Q2 · Builder

Dynamic analysis toolkit for Android native libraries with Frida and custom loaders.

  • mobile
  • reverse
  • Frida
  • Android
  • TypeScript
  • Python
  • Added scripted anti-root bypass modules.
  • Turned repetitive reversing tasks into reusable recipes.

CTF Pwn Auto-Notes Pipeline

2024 Q4 · Maintainer

Automated exploit attempt logging and markdown writeup generation.

  • pwn
  • automation
  • ctf
  • pwntools
  • Python
  • tmux
  • Structured exploit sessions for faster postmortems.
  • Exported templates to accelerate writeups.

Web Auth Surface Mapper

2024 Q3 · Solo Researcher

Crawled auth flows and visualized token lifecycle risk points.

  • web
  • auth
  • recon
  • Go
  • Playwright
  • SQLite
  • Flagged dangerous refresh token storage patterns.
  • Generated architecture diagrams for reports.

Embedded Firmware Diff Toolkit

2023 Q4 · Contributor

Binary diff and symbol recovery helper for router firmware research.

  • reverse
  • embedded
  • Ghidra
  • Python
  • Bash
  • Automated changelog extraction across firmware releases.
  • Improved vulnerable function discovery speed.