EN KR

Portfolio
Research & Experience

Download Portfolio

Targets & Skills

Targets
Windows Kernel Android Kernel GomSpace EnduroSat TinyGS DJI PX4 Satellite Browser Office RDP Antivirus Viewer
Skills
Reverse Engineering Exploit Vulnerability Research Kernel Debugging RF / SDR GNU Radio Firmware Analysis Bug Bounty CTF
C / C++ Python IDA Pro GDB WinDbg Wireshark Procmon USRP / HackRF QEMU

Projects

๐Ÿ›ฐ๏ธ ์œ„์„ฑ OBC ๋ณด์•ˆ ๋„๊ตฌ ๊ฐœ๋ฐœ

2025.07 ~ 2026.03

GMO IERAE์™€ ํ˜‘์—…ํ•˜์—ฌ GomSpace, EnduroSat OBC ์œ„์„ฑ ์˜จ๋ณด๋“œ ์ปดํ“จํ„ฐ ์‹œ์Šคํ…œ ๋ณด์•ˆ ์ ๊ฒ€ ๋„๊ตฌ ๊ฐœ๋ฐœ.
DEFCON 25 Las Vegas, Bahrain Aerospace ๋ถ€์Šค ๋ฐœํ‘œ. SCI๊ธ‰ ๋…ผ๋ฌธ ์ œ์ถœ.

GomSpaceEnduroSatOBCGMO IERAEDEFCONSCI

๐Ÿค– Android Kernel MTE Bypass ์—ฐ๊ตฌ

2025.12 ~ 2026.02

Android Kernel MTE(Memory Tagging Extension) ์šฐํšŒ ์—ฐ๊ตฌ ๋ฐ ์ทจ์•ฝ์  ๋ถ„์„.

Android KernelMTEBypass

๐ŸชŸ Windows Kernel LPE ์—ฐ๊ตฌ

2025.04 ~ 2025.12

Windows Kernel Local Privilege Escalation ์ทจ์•ฝ์  ์—ฐ๊ตฌ ๋ฐ exploit ๊ฐœ๋ฐœ.

Windows KernelLPEExploit

๐Ÿ“ก ์œ„์„ฑ ์‹ ํ˜ธ ์ˆ˜์‹  ๋ฐ ์ง€์ƒ๊ตญ ๋ณด์•ˆ ์—ฐ๊ตฌ

2025.03 ~ 2025.12

SDR(USRP, HackRF), GNU Radio, Antenna๋ฅผ ํ™œ์šฉํ•˜์—ฌ X/S-band ์œ„์„ฑ ์‹ค์ œ ์‹ ํ˜ธ ์ˆ˜์‹  ๋ฐ ๋ณต์กฐ. ์ง€๊ตฌ ๊ด€์ธก ์ด๋ฏธ์ง€ ๋ณตํ˜ธํ™”.
๋ฏธ๊ตญ ํ…์‚ฌ์Šค ์ƒ์šฉ ์œ„์„ฑ ์ง€์ƒ๊ตญ ์‹œ์Šคํ…œ ๊ตฌ์กฐ ๋ถ„์„ ๋ฐ ์ทจ์•ฝ์  ์—ฐ๊ตฌ. ํ”„๋กœํ† ์ฝœ ๋ฐ RF ๊ธฐ๋ฐ˜ ๊ณต๊ฒฉ ํ‘œ๋ฉด ์‹๋ณ„.

SDRGNU RadioX/S/UHF/VHFAntennaGround StationNASA

๐Ÿ›ฉ๏ธ ๋“œ๋ก  ์ทจ์•ฝ์  ๋ถ„์„ ๋ฐ ๋ณด์•ˆ ๋„๊ตฌ ๊ฐœ๋ฐœ

2024.03 ~ 2024.12

DJI, PX4 ๋“œ๋ก  ํŽŒ์›จ์–ด ๋Œ€์ƒ replay attack ๋ฐ memory corruption ์—ฐ๊ตฌ. ์ž„๋ฒ ๋””๋“œ ํŽŒ์›จ์–ด ๊ตฌ์กฐ ๋ถ„์„ ๋ฐ ์ทจ์•ฝ์  ์‹๋ณ„.

DJIPX4Replay AttackMemory Corruption

๐Ÿ“ก ์˜คํ”ˆ์†Œ์Šค ์ง€์ƒ๊ตญ ๋ณด์•ˆ ์—ฐ๊ตฌ

2024.03 ~ 2024.12

์˜คํ”ˆ์†Œ์Šค UHF ๋Œ€์—ญ ์ง€์ƒ๊ตญ ํŽŒ์›จ์–ด ์‹œ์Šคํ…œ ๊ตฌ์กฐ ๋ถ„์„ ๋ฐ Memory Corruption ์ทจ์•ฝ์  2๊ฑด ๋ฐœ๊ฒฌ.
LoRa ์œ„์„ฑ ํ”„๋กœํ† ์ฝœ ๋ถ„์„ ๋ฐ ํŽŒ์›จ์–ด ํ”Œ๋ž˜์‹ฑ, SDR ์•„๋‘์ด๋…ธ ์‹œ์Šคํ…œ ๊ฐœ๋ฐœ.

Ground StationMemory CorruptionLoRaSDRArduino

๐Ÿ› ์†Œํ”„ํŠธ์›จ์–ด ์ทจ์•ฝ์  ๋ถ„์„ ๋ฐ Exploit ๊ฐœ๋ฐœ

2022.03 ~ 2023.12

Winafl fuzzer, Harness ๊ฐœ๋ฐœ ๋ฐ Windows ์†Œํ”„ํŠธ์›จ์–ด ์ทจ์•ฝ์  ๋ถ„์„.
๋ธŒ๋ผ์šฐ์ €, ์˜คํ”ผ์Šค, RDP ๋Œ€์ƒ ์ทจ์•ฝ์  ๋ถ„์„ ๋ฐ exploit ๊ฐœ๋ฐœ.

WinaflHarnessBrowserOfficeRDPHeap OverflowRCE

๐Ÿ› ๋ฒ„๊ทธ๋ฐ”์šดํ‹ฐ

2022 ~ Present

KISA ๋ฒ„๊ทธ๋ฐ”์šดํ‹ฐ๋ฅผ ํ†ตํ•œ ์ƒ์šฉ ์†Œํ”„ํŠธ์›จ์–ด ์ทจ์•ฝ์  ์ œ๋ณด. (KVE-2023-0095, KVE-2023-5125)

KISAKVEResponsible Disclosure

๐Ÿšฉ CTF ๋Œ€ํšŒ ์ฐธ๊ฐ€

2017 ~ Present

DEFCON (32nd, 33rd), HITCON, CODEGATE ๋“ฑ ๊ตญ๋‚ด์™ธ Top-tier CTF ๋ณธ์„  ์ฐธ๊ฐ€.

DEFCONHITCONCODEGATEPwnRev

๐Ÿ† ํ•ดํ‚น ๋Œ€ํšŒ ์ถœ์ œ ๋ฐ ์šด์˜

2023 / 2024

๊ตญ์ œ ๋“œ๋ก  ํ•ดํ‚น๋Œ€ํšŒ ๋ณด์•ˆ ๋ฌธ์ œ ์ถœ์ œ ๋ฐ ์šด์˜. ๊ฒฝํฌ๋Œ€ ๋ณด์•ˆ ๋Œ€ํšŒ, ROOTCTF ๋ฌธ์ œ ์ œ์ž‘.

CTF AuthorOrganizerDrone
*****
Contact: ogj0824@gmail.com