Nafiez

Interested in x86 Reverse Engineering and Vulnerability Research.

Security Research


  1. Nitro Pro 13 - From Fuzzing to Multiple Heap Corruption (CVE-2020-10222 & CVE-2020-10223) » 05 Mar 2020
  2. Nitro PDF 12 - Multiple Remote Code Execution Vulnerability » 12 Dec 2019
  3. (0-Day) Kyrol Internet Security (2015) - kyrld.sys Driver Invalid Pointer Vulnerability » 04 Dec 2019
  4. POC Conference 2019 - Hunting Vulnerability of Antivirus product » 22 Nov 2019
  5. (0-Day) Kyrol Internet Security (2015) - Multiple Vulnerability » 19 Nov 2019
  6. (0-Day) Kyrol Internet Security (2015) - Multiple Vulnerability in Kernel Driver » 16 Nov 2019
  7. (MSRC Case 54347) Microsoft Windows Service Host (svchost) - Elevation of Privilege » 05 Nov 2019
  8. CVE-2019-15512 - Total Defense Antivirus - Elevation of Privilege (Arbitrary File Creation) Vulnerability » 25 Aug 2019
  9. G Data Total Security - ACLs Bypass Vulnerability » 12 Mar 2019
  10. Emsisoft Anti-Malware - ACLs Bypass » 08 Jan 2019
  11. Microsoft Edge - Out-of-Memory Error Issue (MSRC Case 47790) » 02 Jan 2019
  12. Microsoft Windows win32k.sys - Invalid Pointer Vulnerability (MSRC Case 48212) » 09 Nov 2018
  13. NanoSec Conference 2018 (KUL) - Exploitation Era: Past, Present and Future » 20 Oct 2018
  14. Adobe Flash ActiveX - NULL Pointer Dereference » 25 Sep 2018
  15. HITB GSEC 2018 - Software Security Era: Past, Present and Future » 20 Sep 2018
  16. CVE-2018-1000097 - Sharutils (unshar) - Buffer Overflow » 19 Sep 2018
  17. CVE-2017-1000414 - JPEGSnoop “JfifDecode.cpp” - Integer Division by Zero » 19 Sep 2018
  18. CVE-2018-10717 - MiniUPnP ngiflib 0.4 - Buffer Overflow » 18 Sep 2018
  19. Microsoft Windows Kernel - Win32k.sys Integer Overflow » 18 Sep 2018
  20. SlimPDF Reader - NULL Pointer Dereference » 18 Sep 2018