JaeRyoung Oh (@h4z3dic) 's Twitter Profile
JaeRyoung Oh

@h4z3dic

Pwn & Security Research

ID: 48946803

linkhttps://www.linkedin.com/in/jaeryoung-oh-035997208 calendar_today20-06-2009 06:41:35

38,38K Tweet

845 Followers

2,2K Following

Huaxiu Yao✈️ICLR 2025🇸🇬 (@huaxiuyaoml) 's Twitter Profile Photo

🧠 Can agent memory scale without losing reasoning? 🔥 We’re excited to share our latest work, SimpleMem, a principled memory framework for LLM agents built around semantic lossless compression. 📉 30× fewer inference tokens 📈 +26.4% avg F1 (vs Mem0) ⚡ 50.2% faster retrieval

ӉѦСҠіИԌ ҬЄѦӍ (@hackingteam777) 's Twitter Profile Photo

CVE-2025-38352 - In-the-wild Android Kernel Vulnerability Analysis + PoC faith2dxy.xyz/2025-12-22/cve… PoC: github.com/farazsth98/poc…

LuemmelSec (@theluemmel) 's Twitter Profile Photo

Fixed a little sth in invoke-AADIntReconAsOutsider by Dr. Nestori Syynimaa. The Tenant Name was missing due to recent changes by MS. You can still get this info via DKIM if they use Exchange Online or authenticated to ANY tenant via Graph in some cases. github.com/Gerenios/AADIn…

Fixed a little sth in invoke-AADIntReconAsOutsider by <a href="/DrAzureAD/">Dr. Nestori Syynimaa</a>.
The Tenant Name was missing due to recent changes by MS.
You can still get this info via DKIM if they use Exchange Online or authenticated to ANY tenant via Graph in some cases.
github.com/Gerenios/AADIn…
Swissky (@pentest_swissky) 's Twitter Profile Photo

If you’re doing security testing and not bookmarking this, you’re missing out 👀 PayloadsAllTheThings has a clean web version 👇 swisskyrepo.github.io/PayloadsAllThe… #bugbounty #infosec

0xedh (@0xedh) 's Twitter Profile Photo

Spent some time porting DumpGuard to C as a BOF. Abuses Remote Credential Guard to pull NTLMv1 hashes without going near LSASS or needing admin. Shoutout to Valdemar Carøe for the original research. github.com/0xedh/dumpguar…

Swissky (@pentest_swissky) 's Twitter Profile Photo

Exploiting a 13-years old bug on QEMU Learn how to cheese kpwn challenges running on a Ubuntu 24.04 container using a nday on QEMU kqx.io/post/qemu-nday/

/ XNL -н4cĸ3r (and @xnl-h4ck3r in the new Sky) (@xnl_h4ck3r) 's Twitter Profile Photo

v6.3 of GAP Burp Extension is available: ✅ A small improvement to the link finding regex ✅ Some small performance improvements ✅ A change to prevent possible memory leaks github.com/xnl-h4ck3r/GAP… #BugBounty 🤘

0x12 Dark Development (@salsa12__) 's Twitter Profile Photo

Evasive Remote Memory Write New Medium post, in this article, I’ve developed a custom technique for remotely writing arbitrary data (such as shellcode) into another process’s memory space without relying on the heavily monitored WriteProcessMemory API medium.com/@s12deff/evasi…

Evasive Remote Memory Write

New Medium post, in this article, I’ve developed a custom technique for remotely writing arbitrary data (such as shellcode) into another process’s memory space without relying on the heavily monitored WriteProcessMemory API

medium.com/@s12deff/evasi…
테크크론탭 (@techcrontab) 's Twitter Profile Photo

수천 개의 API/BATCH 서버를 하나의 설정 체계로 관리하기 작성자 : 출처 : 토스 January 9, 2026 at 01:44PM ift.tt/szROmbD

Md Ismail Šojal 🕷️ (@0x0sojalsec) 's Twitter Profile Photo

Anthropic just dropped their internal 'AI code janitor' for a FREE plugin list + skills Frontend-design Doc-coauthoring Skill-creator Code-simplifier - github.com/anthropics/cla… - github.com/anthropics/ski…

Anthropic just dropped their internal 'AI code janitor' for a FREE plugin list + skills

Frontend-design  Doc-coauthoring  Skill-creator  Code-simplifier

- github.com/anthropics/cla…
- github.com/anthropics/ski…
dominik kundel (@dkundel) 's Twitter Profile Photo

Timely reminder that Codex is open-source and we love a vibrant ecosystem 💖 In case you dealt with a great shutoff today, Codex provides an app-server that lets you wrap all of Codex into your own app including Sign in with ChatGPT. github.com/openai/codex/t…

Tibo (@thsottiaux) 's Twitter Profile Photo

With the Claude Code shutdown. I am proud that we build Codex in the open with our OSS repo and we are 100% invested in supporting a flourishing ecosystem of agentic coding tools out there. You can already build on top of github.com/openai/codex/t… directly, which includes ChatGPT

nikshep (@nikshepsvn) 's Twitter Profile Photo

there's hundreds of different models, with new ones coming out everyday and also multiple providers, all serving them with different throughput, latency, price, quants and context i hated searching through them so had to vibe code a little tool: modelgrep.com

there's hundreds of different models, with new ones coming out everyday

and also multiple providers, all serving them with different throughput, latency, price, quants and context

i hated searching through them so had to vibe code a little tool: modelgrep.com
Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Loki RS is alive 🐍⚡ - High performance YARA & IOC scanner - Multi-threaded - Process memory & filesystem scanning - ZIP scanning - TUI - New YARA-X - IOCs from signature-base + YARA Forge - HTML report - Remote logging - JSONL / Syslog output Personal lab for scanner UX/perf

Loki RS is alive 🐍⚡

- High performance YARA &amp; IOC scanner
- Multi-threaded
- Process memory &amp; filesystem scanning
- ZIP scanning
- TUI
- New YARA-X
- IOCs from signature-base + YARA Forge
- HTML report
- Remote logging
- JSONL / Syslog output

Personal lab for scanner UX/perf
Smukx.E (@5mukx) 's Twitter Profile Photo

Malware development basics 0xf00sec.github.io/0x4a TLDR; This blog focus on execution flow hijacking, dynamic API, and stealth execution via low-level OS structures. Core concepts include direct access to the (PEB), evasion through runtime decryption, and shellcode injection.

Malware development basics 

0xf00sec.github.io/0x4a

TLDR; This blog focus on execution flow hijacking, dynamic API, and stealth execution via low-level OS structures. Core concepts include direct access to the (PEB), evasion through runtime decryption, and shellcode injection.
𝕏 Bug Bounty Writeups 𝕏 (@bountywriteups) 's Twitter Profile Photo

CRLF Injection in HTTP header values allows arbitrary header injection hackerone.com/reports/3505557 #bugbounty #bugbountytips #bugbountytip

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

yarGen-Go is out - full Go rewrite of yarGen - CLI + local web UI - generates YARA rules from malware samples - filters strings using large goodware databases - ASCII + UTF-16 string extraction - opcode extraction (PE + ELF) - detects base64, hex, reversed strings - magic header

yarGen-Go is out

- full Go rewrite of yarGen
- CLI + local web UI
- generates YARA rules from malware samples
- filters strings using large goodware databases
- ASCII + UTF-16 string extraction
- opcode extraction (PE + ELF)
- detects base64, hex, reversed strings
- magic header