Security Audits & Vulnerability Research

Joined August 2019
Photos and videos
Bugscale retweeted
Our second blog post is out here: bugscale.ch/blog/here-we-go-… ! We managed to install arbitrary APKs on the Samsung Galaxy S25 from an app without install permissions. For this, @SachaKozma did most of the work, but it was great looking into Samsung's cloud gaming component with him
1
28
98
13,814
Bugscale retweeted
With @Hacker_Chai we just published our second blog post on Samsung security research! This one is about a local arbitrary APK install in Galaxy Store, combining a few vulns like a broken signature check, a file write, etc. Check it out here: bugscale.ch/blog/here-we-go-…
1
3
5
528
Bugscale retweeted
Our researchers @SachaKozma & @Hacker_Chai are taking the stage at @1ns0mn1h4ck today! 📍 Campus Auditorium B at 13:30 🎯 Shoot for the Galaxies: Our Samsung S25 1-click RCE Journey If you're into mobile attack surface research, this one's not to miss! #INSO2026 #insomnihack
7
19
1,937
Bugscale retweeted
Proud to have published the first ever report to qualify for Samsung's Important Scenario Vulnerability Programme (ISVP)! @SachaKozma @bugscale security.samsungmobile.com/s…
4
29
1,912
Bugscale retweeted
16 Jun 2025
🐞 Bugscale is thrilled to be sponsoring Hexacon again and we look forward to seeing everyone in Paris! Thank you @bugscale for your continued support 🙏
3
7
2,107
Bugscale retweeted
1 Jul 2024
Here is a new blog post, where I wrote about (some of) my recent work with angr, including: - Adding support for Windows debug symbols - Collecting and visualizing real-time coverage - Improving debugging workflows plowsec.github.io/angr-intro…
32
77
8,951
30 May 2023
We're #hiring ! You can check out the job desc on our website: bugscale.ch/careers/ or you can also apply on LinkedIn: linkedin.com/jobs/view/36019…
1
17
25
10,741
Bugscale retweeted
Highlights from #Pwn2Own Toronto Day 2: Team Bugscale vs the #HP printer
3
13
Bugscale retweeted
7 Dec 2022
Ph0wn is brought free to you thanks to our sponsors. We warmly thank our bronze sponsors :)
5
8
Bugscale retweeted
In the first SOHO SMASHUP of the day, we have a unique a known bug! #Pwn2Own #P2OToronto
3
16
Bugscale retweeted
16 Jun 2022
🔥 We are thrilled to announce our first sponsor! 🙏 Thank you @bugscale for helping us make this highly technical conference possible 🐞 To find out more about Bugscale: ➡️ bugscale.ch/ hexacon.fr/sponsors/ #HEXACON2022
10
14
Bugscale retweeted
[TALK ANNOUNCEMENT] Automatically extracting static anti-virus signatures by Vladimir Meier (@PlowSec) insomnihack.ch/confirmed-spe… #INS22 #INSO22 #Talks

5
10
Bugscale retweeted
Team Bugscale continues #Pwn2Own #AfterDark with a successful exploit of the LAN interface of the NETGEAR R6700 router. They combined an auth bypass and a command injection bug to earn $5,000 and 1 Master of Pwn point. #P2OAustin
15
40
Bugscale retweeted
Success! The Bugscale team was able to take over a WD My Cloud Pro Series PR4100. They head off to the disclosure 'room' to provide the details of their demonstration. #Pwn2Own #P2OAustin
5
13
Bugscale retweeted
Coming up next, the Bugscale team targets the Western Digital My Cloud Pro Series PR4100 in the NAS category. #Pwn2Own #P2OAustin
3
5
Bugscale retweeted
Thanks to @bugscale to be Silver sponsor at BlackAlps BBQ 21! blackalps.ch/ba-21/
2
8
Bugscale retweeted
Success! The @bugscale team was able to demonstrate their RCE on the Western Digital NAS. They head off to the disclosure room to dish the details.

ALT Sweet Victory GIF

5
16