I specialize in identifying complex logic flaws and resource management vulnerabilities in core libraries and frameworks. My work involves deep-dive analysis of memory handling and input sanitization mechanisms.
| Status | Target / Package | Vulnerability Class | Report |
|---|---|---|---|
| @adonisjs/bodyparser | Remote Memory Exhaustion (DoS) | View | |
| jsPDF (Core) | PDF Object Injection (Sandbox Escape) | View | |
| jsPDF (GIF Module) | Resource Exhaustion (Heap Overflow) | View |
Languages & Environments:
Specialized Expertise:
- Exploit Development: Crafted PoCs for OOM (Out-of-Memory) and Injection attacks.
- Security Auditing: Manual code review of Node.js and PHP ecosystems.
- Web Security: Bypassing complex sanitization layers and WAFs.
"The quieter you become, the more you are able to hear."
