john de armas

Security research — fuzzing, mobile, and vulnerability discovery.

I break things on purpose and write up how. Most of what lands here is coverage-guided fuzzing work, iOS/Android internals, and the occasional protocol or IPC surface that turned out to be more interesting than it looked.

Writeups live under /research. Everything published here is either already fixed, already disclosed, or was never anyone's secret.

recent