About
An archive of technical ramblings, exploit writeups, low-level C, and whatever I took apart this month. All views here are my own, not my employer's or my company's.
- Since
- 2001. Before it was a career.
- By day
- APT cosplay. Someone hands me a budget and a target list.
- By night
- Same skills, no invoice, way better coffee.
- Writes about
- Bugs with names, bugs without, and whatever I took apart that would rather I hadn't.
About me
I'm a long-time hacker and tinkerer who has never worked a single day in his life. That is not a brag about money, it is a confession about how much fun I'm having. It started in 2001 at 15yo, installed Red Hat 7.2 and jumped into a vortex I never got out of. 25 years on, still in it, still loving it. During the day someone hands me a budget and a target list, which means I cause chaos with a scoping document and deliver trauma as a PDF. After dark the scope expires and I turn to research and projects of my own.
Disclaimer
Read this before you use anything here
Everything on this blog is for education and research. Cybersecurity should be a normal subject for anyone who uses a computer, and the material here is written so you can understand these techniques from the defender's side and protect yourself from the people who use them for real.
All of it was produced in a controlled environment: my own routers, servers, websites and machines, plus platforms built for this such as TryHackMe, HackTheBox and VulnHub. Nothing here describes activity against systems I wasn't authorised to test.
I don't promote, encourage or incite unauthorised access of any kind. Hacking anything without written permission is illegal in most places and stupid in all of them. If that's your plan, this blog won't help you, and I'm not responsible for what you do with what you read