ResearchThoughtsExperiments
Security research, application security, reverse engineering and technical experiments.
01 / Research Areas
What I research
Android security research and mobile application testing.
iOS security research and reverse engineering.
Web application security research and testing.
Instrumentation, binary analysis and runtime research.
Cloud infrastructure and identity security research.
API testing, authorization and business logic research.
LLM security, prompt injection and AI application research.
Network reconnaissance and application-layer research.
SAST, secrets, containers and secure delivery pipelines.
02 / Latest Research
Recent experiments
HTTP Toolkit to Solve the Simcard required application proxy
A simple technique to intercept Android application traffic when the app works only over mobile data and ignores traditional proxy settings.
Understanding HTTP Request Smuggling
A methodology for analyzing parser inconsistencies between HTTP components.
Getting Started With Frida
An introduction to runtime instrumentation for authorized application research.
03 / Portfolio