2025
How Shahak Morag and I created a first ever public PoC for CVE-2024-49113 that crashes any Windows Server by reverse engineering its patch
2024
Presented at:
Upcoming:
RSAC 2025
Recon 2025
How Shmuel Cohen and I found 10 vulnerabilities in Quick Share for Windows & Android and managed to assemble a creative and unconventional RCE attack chain
Presented at:
How I found four vulnerabilities including an RCE plus rootkit-like techniques that all exist thanks to a known-issue in Windows
2023
Presented at:
How I turned Windows' local OneDrive agent into a ransomware bypassing all leading EDRs
Presented at:
"One Drive, Double Agent: Clouded OneDrive Turns Sides" Research Update - How I turned the local Google Drive & OneDrive agents on Windows into a ransomware bypassing all leading EDRs
2022
Presented at:
HackCon Online 2023
How I turned EDRs into Wipers using a set of vulnerabilities I found affecting them to delete any file on the system as an unprivileged user