Red team operator and offensive security researcher with a deep obsession for low-level Windows internals. I spend most of my time at the intersection of kernel exploitation, hypervisor research, and reverse engineering — tearing apart security mechanisms to understand how they work and where they fail.
My current focus is Windows kernel and hypervisor
security: VBS/Hyper-V architecture, VTL isolation
boundaries, and the internals of
securekernel.exe. When I'm not staring at
IDA or WinDbg, I'm probably writing about what I found.
"Consider your origin; you were not born to live like brutes, but to follow virtue and knowledge."
Inferno, Canto XXVI