As a vulnerability researcher and reverse engineer, I specialize in discovering and analyzing security weaknesses in software and hardware systems. My work involves extensive reverse engineering across multiple architectures and the development of proof-of-concept exploits to demonstrate security issues.
I have experience with responsible vulnerability disclosure and have contributed to improving the security of various open-source projects. My research has resulted in CVE assignments and coordinated fixes with development teams and security organizations.
In addition to security research, I maintain expertise in system automation, broadcast engineering, and live event production, bringing a diverse technical background to complex security challenges.
Vulnerability research and responsible disclosure of security issues in open-source projects.
Discovered a denial of service vulnerability in Apache bRPC that could allow attackers to crash the service. Worked with the Apache Security Team for responsible disclosure.
Identified and reported a one-byte stack overflow vulnerability in the popular network discovery tool Nmap. The issue was promptly fixed by the development team.
Discovered an arbitrary file upload vulnerability in simple-http-server that could allow attackers to upload malicious files. Coordinated with the maintainer for a security release.
Research project demonstrating authenticated remote code execution vulnerabilities. Developed proof-of-concept and documentation for security awareness and testing purposes.
All vulnerabilities were reported through proper channels and coordinated disclosure processes. I believe in working with maintainers and security teams to improve software security for everyone.
A curated list of vulnerability research and reverse engineering writeups, resources, and learning materials for security researchers.
Created challenges for a Capture the Flag competition covering web security, reverse engineering, forensics, and cryptography.
A typing test game implemented in x86 assembly language using the Irvine library.
A Docker container for running a latency test and reporting to InfluxDB and Grafana.
A Python script for downloading configuration files from Peplink InControl2 devices.
Automated notification system for monitoring Scribd content and updates.
Rust API wrapper for FlightRadar24 data access and flight tracking functionality.
Research software and hardware systems to identify security vulnerabilities. Conduct reverse engineering analysis and develop security assessments for various platforms and architectures.
Working for two and a half years developing, testing, debugging, and managing multiple installation and upkeep scripts. Writing technical documentation for code projects and setup procedures for both internal and external recipients. Solving problems across a wide range of technical issues and assisting in managing cloud solutions for remote live video production.
Contact me for my full resume.
3.91 GPA
Relevant coursework: Cybersecurity, Assembly Language, Networking, Programming Language Concepts, Big Data, Systems Programming.
Want to collaborate on a project or just say hello? Feel free to reach out through any of these platforms.
Check out my latest posts at tylzars.github.io
Visit Party Parrot memorial!