💻 fuzz researcher & aspiring magician ♠️

Joined May 2009
8 Photos and videos
Pinned Tweet
24 Jun 2021
Read my blog post on how I unexpectedly discovered CVE-2021-21702 PHP's SOAP extension: datto.engineering/post/how-i…

2
3
12
thapr0digy retweeted
He said in this video that finding 0-days with Claude wasn’t possible 3–4 months ago but at @0dinai we were already doing it back in Feb/March 2025. We called the technique “OH LAWWWD.” We talked about it multiple times on podcasts and even demoed it live at @ekoparty last October. We asked the crowd to pick any target someone said Discord. We found 10 zero days in under 15 minutes. 1k retweets and I will release the monolithic prompt!
someone at ANTHROPIC just showed CLAUDE finding ZERO DAY vulnerabilities in a live conference demo claude has found zero day in Ghost, 50,000 stars on github, never had a critical security vulnerability in its entire, history... it found the blind SQL injection in 90 minutes, stole the admin api key, then did the exact, same thing to the linux kernel
14
71
390
55,062
thapr0digy retweeted
Say hello to Eternal Tux🐧, a 0-click RCE exploit against the Linux kernel from KSMBD N-Days (CVE-2023-52440 & CVE-2023-4130) willsroot.io/2025/09/ksmbd-0… Cheers to @u1f383 for finding these CVEs the OffensiveCon talk from gteissier & @laomaiweng for inspiration!
11
199
753
81,686
thapr0digy retweeted
5 Jun 2025
IP whitelisting is fundamentally broken. At @assetnote, we've successfully bypassed network controls by routing traffic through a specific location (cloud provider, geo-location). Today, we're releasing Newtowner, to help test for this issue: github.com/assetnote/newtown…
15
263
991
58,612
13 Nov 2024
Excellent article on using graph theory in security
Excited to share my latest blog post: "Breaking Control Flow Flattening: A Deep Technical Analysis" I showcase usage of formal proofs and graph theory to automate CFF deobfuscation, among other things ! Might make it a talk...? 👀 zerotistic.blog/posts/cff-re…
1
87
thapr0digy retweeted
6 Jun 2024
The libarchive e8 vulnerability is actually really cool, but the ZDI advisory doesn't explain why it's so wild lol. For some reason, I know about RAR filters, so let me provide the background. 🧵 1/n
3
173
597
116,718
12 Jun 2023
This is awesome!!!!
Curious about how a project on OSS-Fuzz is doing? Check out introspector.oss-fuzz.com/ ! This provides runtime/statically-reachable coverage stats for all supported (C/ ,Python,Java) OSS-Fuzz projects, as well as a neat function database to search through.
210
thapr0digy retweeted
27 Apr 2023
#Fuzzing still faces many challenges when applied to Android native system services. Eric Le Guevel tested AFL 's Frida mode to fuzz directly on Android devices and reports the process and results in today's #blog post: bit.ly/445VWn7
1
24
61
5,993
24 Apr 2023
After looking at @hackerpinup's post on @Fox0x01's ARM assembly book, I had to get a copy myself. Ready to dig deep into some ARM assembly internals and do some reversing 😁
5
584
thapr0digy retweeted
19 Apr 2023
Today we share our Alibaba Cloud research for the first time, where we gained unauthorized access to other customers' databases in two different services 🚨 This complex research involved RCE, PE, Container escape, K8s lateral movement, and supply chain attack. Check it out 🧵
13
395
1,272
195,247
thapr0digy retweeted
27 Feb 2023
New details on the 2nd LastPass incident are fun: - got into Sr DevOp's home via vuln media software - installed keylogger - got master pass to corp vault (seemingly because it was being accessed from home computer) Cool to see that LastPass is sharing this level of detail. Most companies are vulnerable to an attack like this. Main post: support.lastpass.com/downloa… Incident 1 details: support.lastpass.com/help/in… Incident 2 details: support.lastpass.com/help/in…

25
325
1,298
343,923
12 Feb 2023
Didn't know about this. Makes me wonder how many bugs have been missed because of it
10 Feb 2023
New blog post: One Weird Trick to Improve Bug Finding With ASAN landaire.net/one-weird-asan-…
199
thapr0digy retweeted
Finding one vulnerable kernel driver is cool, but finding multiple vulnerable drivers it’s even better! I’m excited to share my blog post about an interesting vulnerable driver code base that many different vendors tend to share. cyberark.com/resources/threa…
3
62
135
15,199
22 Jan 2023
This is a simple but effective idea to reduce the amount of data ingested into data collection platforms.
21 Jan 2023
Introducing LogSlash! A project I've been working on for a long time. This new method doubles the efficiency and value of all log platforms, cutting costs in half. blog.foxio.io/introducing-lo…
1
4
387
17 Jan 2023
Fix the database integration and I'm in! The local Cayley graph is useful, but I want to store it in a Postgres or Neo4j db if possible.
15 Jan 2023
There's no better time to get involved with @owaspamass, since we're planning the next six months of enhancements with @ZeroFox engineers so the project will address an even larger set of needs expressed by the #infosec community. Join our Discord! #osint discord.gg/TMMyYtBMTR
2
213
10 Jan 2023
Whoa ty!
5 Jan 2023
🦀📕 All chapters of my book, Rust Atomics and Locks, are now freely available online: marabos.nl/atomics/ Enjoy! ✨
2
534
thapr0digy retweeted
Here are some of the presentations I found the most interesting within the macOS/iOS Kernel Security research space in 2022! 🧵 alexplaskett.github.io/macos…
3
65
217
44,751
29 Dec 2022
A ton of valuable techniques here for those looking for ideas outside of standard email phishing
Out of the inbox and into the fire. Modern and highly effective phishing techniques for 2022 and beyond. praetorian.com/blog/moderniz…
94
29 Dec 2022
Everyone knows about Bloodhound for the offensive side, but what about the defensive side? Well, look no further! A thought I've had for the past two years was implemented by the great team at @ZeroNetworks called BlueHound. github.com/zeronetworks/Blue… and youtu.be/IMeZ66ZI_kM
2
128
thapr0digy retweeted
Check out our new blog post on exploiting PDF reader vulnerabilities! Part 2 features a use-after-free vulnerability in Foxit Reader which we exploited using JIT spraying. Blog: hacksys.io/blogs/foxit-reade… Github: github.com/hacksysteam/CVE-2… cc: @shsirk

1
66
148
21,223