About me

Nothing to see here for now…

I’m currently focusing/learning…

  • C++ (and memory bugs)
  • Malware developement
  • DSA
  • Code review on large OSS projects (abt 100k+ SLOC)

Areas of interest

  • Low level stuff
    • OSdev, Kernel, etc
    • C, Assembly (x86 family, ARM)
    • Network protocols (and their implementations)
  • Program security
    • Binary exploitation (mainly on x86 but sometimes ARM)
    • Code review and bug hunting
    • Reverse engineering
  • Video games heh :)

Vulnerability reports

CVE-IDVendorComponentsExploit primitiveSecurity implications
CVE-2024-6044D-LinkEagle pro home routerPath traversalArbitrary file read (Network adjacent)
CVE-2024-6045D-LinkEagle pro home routerHidden functionality, Hardcoded credentialRCE (Network adjacent, Pre-auth)
CVE-2024-45694D-LinkDIR-X home routerStack-based buffer overflowRCE (Pre-auth)
CVE-2024-45695D-LinkDIR-X home routerStack-based buffer overflowRCE (Pre-auth)
CVE-2024-45696D-LinkDIR-X home routerHidden functionality, Hard-coded credentialRCE (Pre-auth)
CVE-2024-45697D-LinkDIR-X home routerMisconfigurationRCE (Pre-auth)
CVE-2024-45698D-LinkDIR-X home routerCommand injectionRCE (Authenticated)
Not assignedMongodblibbson (part of Mongodb C driver)OOB RWUnspecified (Application-specific)

Contact

Feel free to reach out with any feedback:

PGP fingerprint

FD1F BF75 466B FEAB B130 002A 36AD CFB9 63D5 34FA

PGP public key. Download it here

-----BEGIN PGP PUBLIC KEY BLOCK-----
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=n7OW
-----END PGP PUBLIC KEY BLOCK-----