Shezmu Incident Response: A Journey to Duat
Incident Response · RecoveryLeading the live response to a protocol exploit, and returning millions of dollars to their rightful owner.
My long-form writing has shifted toward academic publications. The pieces below are an archive of earlier work on offensive security and tooling, served from the Wayback Machine. Some of it shows its age, but the core techniques hold up. Newer, less formal notes go on my blog.
Leading the live response to a protocol exploit, and returning millions of dollars to their rightful owner.
Reverse-engineering and exploiting a critical Samba bug used at Pwn2Own.
A critical authentication bypass in Razer's customer support portal.
A critical bug in a VPN provider, exploited to earn CVE-2020-12828.
Critical findings from the penetration test of a country-scale service provider.
Discovery, analysis, and PoC reproduction of CVE-2019-19844 in Django.
Reverse-engineering the Agent Tesla malware and finding an RCE in its web panel.
An advanced XSS via SPF/DMARC records and a WAF bypass, found on a bug-bounty platform itself.
Exploiting smart contracts through a selection of Paradigm CTF 2022 challenges.
One of my earliest posts, on getting into infosec as an offensive engineer.
Building a personal automation pipeline: scraping, storage, reporting, and a small GUI.
An evidence-board tool to automate OSINT workflows; a genuinely underrated one.
Using asyncio to build a fast, efficient asynchronous web crawler.
Building a tool to find misconfigured cloud buckets across providers.
Crawling and extracting smart contracts at high speed.
How we built an aggregator for the on-chain security ecosystem.
Leading a team to build a full-stack dApp for the Avalanche hackathon.
Building a threat-intelligence pipeline to automate the workflow end to end.