Head of Research
at afine, specializing in π macOS security. Passionate about π οΈ Vulnerability Research, π― Exploit Development, and π Reverse Engineering. My work focuses on macOS internals and advancing research in offensive security.
While research is my primary focus, I also work as an Offensive Security Engineer, identifying πΎ security flaws and developing π€ tools to enhance security operations. This includes π₯οΈ Desktop Application Security, πΈοΈ Web Application Security, π Active Directory, and creating π¦ malware to bypass π‘οΈ EDRs.
I created some tools helpful for Offensive Security work, but there are two that I am the proudest of:
- Snake&Apple - The code repository for the Snake&Apple article series documents my macOS security research.
- Crimson - This was my first big thing. Currently, I am not focusing on this tool. However, it is still powerful. My friends and I are using it to this day. This is also a great place to start your journey with Application Security.
As part of my daily work and free-time research, I am looking for bugs π. I have caught many of them so far, and some have even received a public CVE. I am particularly proud of CVE-2023-35359: Windows - Kernel Elevation of Privilege Vulnerability.
In 2024, I wrote only on Medium. Now I am writing on Patreon. Sometimes I post Proof of Concepts as short recordings on my YouTube channel. You can subscribe to me using the banners below to receive notifications of the latest blogs or videos.
I have participated in multiple Capture the Flag (CTF) events, completed various courses, and obtained certifications through multiple platforms. Below are links that demonstrate some of these small accomplishments:
- Certs - OSCEΒ³, eWPTxv2, OSCP, various OpenSecurityTraining2 certs
- Pentesterlab - various web hacking courses & CTFs.
- RPISEC/MBE - Modern Binary Exploitation - CSCI 4968
- HTB - CTFs & Pro Labs
- CS50 - Harvard University - Introduction to Computer Science
Feel free to reach me on any of the platforms below. I also share new articles there, so you can stay up-to-date by following me.
If you enjoy my work and want to help me grow, you can sponsor me using any of the options below:
βBy subscribing to my Patreon, you will receive access to all of my published articles, and I've also been working on some exclusive content for my Elite Patrons - my "thank-you" to the folks who support me. I'm still building that out. You can read more about it here.