Vulnerability Research
I find and document weaknesses in software, appliances, operating systems, and security boundaries.
VIEW RESEARCHI research vulnerabilities, reverse engineer systems, track threat actors, and document what I learn.
This is my research lab—a growing collection of technical write-ups, threat intelligence, experiments, and defensive takeaways.
I approach security from both sides: understanding how systems fail and how adversaries turn those failures into real-world operations.
I find and document weaknesses in software, appliances, operating systems, and security boundaries.
VIEW RESEARCHI research threat actors, campaigns, infrastructure, indicators of compromise, malware, and operator toolkits.
VIEW THREAT INTELI break systems and binaries into understandable pieces to uncover behavior, trust assumptions, and attack paths.
EXPLORE THE PROCESSI turn offensive findings and adversary behavior into useful detections, mitigations, and lessons for defenders.
SEE DEFENSIVE NOTESA detailed technical write-up covering my Corelight appliance research and coordinated disclosure is currently in progress.
OPEN WRITE-UPI publish when the work is reproducible, responsibly disclosed where necessary, and ready to be useful. New material may arrive slowly, but it will be real.
I'm Null Dragon. I enjoy understanding how systems break, why attackers choose particular techniques, and what defenders can learn from both. I share the process—not just polished outcomes—while keeping personal details separate from the research.
MORE ABOUT MY APPROACH