Vulnerability research

Security Research & Disclosures

I study the trust boundaries that privileged software quietly depends on: caller identity, authorization checks, memory ownership, and the assumptions between a public interface and the code that acts with greater authority.

This page contains public research only. Vendor-coordinated findings appear here after the corresponding security update is available; technical details follow the applicable disclosure and patch-adoption window.

Public work

Methods, internals, and vulnerability analysis

Reproducible lab methods and analysis of already-public vulnerabilities. These pieces show the research process without previewing a finding under coordination.

Research practice

Publish the method. Coordinate the finding.

A live vulnerability stays private while the vendor investigates and prepares a fix. Public work during that period is limited to reusable methods that do not identify the affected product or make the finding reversible. After remediation, the public record begins with the vendor advisory and grows into a technical teardown only after the relevant patch-adoption window.