I am a security researcher, author, and writer seeking for work. I offer two main type of services: reverse engineering and code audit. My background is on Computer Engineering, specializing into Information Security with a particular glance for abstract interpretation and static analysis.
I've been passionate about reverse engineering since I was at high school, when I got my first job involving the recovering of an algorithm used to obfuscate an input of industrial machine. Since then I've been working on a lot of projects related to RE (unfortunately under nda) that ranges from automotive to home appliance. My main stack includes IDA pro, Ghidra and BinaryNinja to ensure the high quality of the analysis and crosscheck the hypothesis via debuggers (LLDB). The main target architecture: arm and x86, but I've worked on some others specific architecture that required a different approach, like rewriting a disassembler based on the information of a specs sheet. My work includes malware analysis, and source code recovering. I've worked also on analysis of firmwares for IoT, writing security reports on common bad practices producers used to have in their devices. (Different from reverse engineering, but I can sure work with you if you need that type of service).
Code audit instead relies on analysis of source code looking for undefined conditions, bad code practice and patterns, and, naturally, security issues. The final work is a detailed analysis on the issues found in the code, optionally including fixes or the patch if needed. The programming language I usually work with includes most of imperative languages: C, C++, Python, Java, Go (and more others).
If you want to read the type of analysis I perform, you can look at my blog or request the reports I did for the clients via e-mail.
I am a security researcher, author, and writer seeking for work. I offer two main type of services: reverse engineering and code audit. My background is on Computer Engineering, specializing into Information Security with a particular glance for abstract interpretation and static analysis.
I've been passionate about reverse engineering since I was at high school, when I got my first job involving the recovering of an algorithm used to obfuscate an input of industrial machine. Since then I've been working on a lot of projects related to RE (unfortunately under nda) that ranges from automotive to home appliance. My main stack includes IDA pro, Ghidra and BinaryNinja to ensure the high quality of the analysis and crosscheck the hypothesis via debuggers (LLDB). The main target architecture: arm and x86, but I've worked on some others specific architecture that required a different approach, like rewriting a disassembler based on the information of a specs sheet. My work includes malware analysis, and source code recovering. I've worked also on analysis of firmwares for IoT, writing security reports on common bad practices producers used to have in their devices. (Different from reverse engineering, but I can sure work with you if you need that type of service).
Code audit instead relies on analysis of source code looking for undefined conditions, bad code practice and patterns, and, naturally, security issues. The final work is a detailed analysis on the issues found in the code, optionally including fixes or the patch if needed. The programming language I usually work with includes most of imperative languages: C, C++, Python, Java, Go (and more others).
If you want to read the type of analysis I perform, you can look at my blog or request the reports I did for the clients via e-mail.
Blog: https://serhack.me
Contact me for a quote: hi@serhack.me