UndecimoDia
Penetration Tester, Application Security Engineer, Independent Security Researcher
Find it. Prove it. Explain it well enough that it gets fixed.
01
Profile
Field of work & current focus.
I'm a penetration tester and application security engineer specializing in web, API, and mobile security. My work centers on white-box audits, static source code review, and findings that map directly to business impact.
I also do independent reverse engineering research on native binaries and Android applications, using Ghidra, Binary Ninja, GDB, and dnSpy.
02
Research & Advisories
Public disclosures.
I do independent vulnerability research across web and API security, plus native and Android reverse engineering. Advisories go public here the moment they clear disclosure, nothing on this page is invented to fill space.
03
Research Log
Write-ups & notes.
Long-form write-ups on reverse engineering, low-level exploitation, and web/API security land here as I finish each one, most recent first.
04
Credentials
Certifications & training.
Certifications
-
Burp Suite Certified Practitioner PortSwigger
Training
-
Jr. Penetration Tester TryHackMe