esjay Profile
esjay

@esj4y

Followers
725
Following
2K
Statuses
932

Shell horticulturist @codewhitesec - blog @ https://t.co/TAuhn27aSX

Joined January 2019
Don't wanna be here? Send us removal request.
@esj4y
esjay
2 years
I often get the question what beginners in the Security field should spend time on. While my view will be biased towards Pentesting/RedTeaming, here is a 🧵 on the respective topics and resources:
1
6
16
@esj4y
esjay
7 hours
RT @terawhiz: A short writeup for the kernel pwn I solved last weekend in lactf
0
8
0
@esj4y
esjay
8 days
RT @Yogehi: Sup, I'm the guy that hacked the Samsung S24 during Pwn2Own Ireland 2024 I just released a non-beginner Android application se…
0
113
0
@esj4y
esjay
21 days
RT @ale_sp_brazil: The third article (62 pages) of the Exploiting Reversing Series (ERS) is available on: I would…
0
102
0
@esj4y
esjay
21 days
RT @_ringzer0: From arbitrary pointer dereference to arbitrary read/write in latest Windows 11:
0
19
0
@esj4y
esjay
23 days
@alexjplaskett Focus on the fundamentals. A great sentence a mentor once told me was "The basics are advanced". Also try to dive deep into anything you're looking at. If you feel out of your comfort zone, you grow :)
0
0
2
@esj4y
esjay
23 days
@alexjplaskett Offensive security Web expert and offensive security exploitation expert. Just because the courses/manuals are great!
0
0
3
@esj4y
esjay
24 days
RT @R00tkitSMM: Weekend (2025) papers: QMSan: Efficiently Detecting Uninitialized Memory Errors During Fuzzing In…
0
25
0
@esj4y
esjay
24 days
RT @alexjplaskett: The resources for glibc Malloc heap exploitation course by Maxwell Dulin and Security Innovation
0
17
0
@esj4y
esjay
1 month
RT @7etsuo: Windows Kernel Resources: Development, Exploitation and Analysis.
0
59
0
@esj4y
esjay
1 month
@PwnFunction Looks like two bytes. On Windows userspace ASLR typically does result in 20 bits of randomness
0
0
1
@esj4y
esjay
1 month
RT @bliutech: Ever wanted to learn fuzzing?!?! 🐛 Me and some other folks at @pbrucla recently ran a project where we taught folks about the…
0
56
0
@esj4y
esjay
2 months
RT @testanull: Everything in this blog are already written, this is just for my bad memory only!
0
18
0
@esj4y
esjay
2 months
@frycos I heard that a lot of online html to pdf tools also offer that kind of service :P
1
0
0
@esj4y
esjay
2 months
RT @frycos: CVE-2024-55969 CVE-2024-55970
0
13
0
@esj4y
esjay
2 months
RT @domenuk: Watch the recording of my @ekoparty talk "Advanced Fuzzing with LibAFL" here: Thanks @fede_k for th…
0
48
0
@esj4y
esjay
2 months
RT @ATeamJKR: I hacked Bean Beat and also Kurt's Maultaschenfabrikle again! Was Domain Admin for many weeks and eventually #roasted their v…
0
7
0
@esj4y
esjay
2 months
RT @Dinosn: Windows Sockets: From Registered I/O to SYSTEM Privileges
0
64
0
@esj4y
esjay
2 months
RT @noperator: The first in a three-part series detailing my team's work in decrypting and analyzing SonicWall firewall firmware 🔥🧱 https:/…
0
17
0
@esj4y
esjay
2 months
RT @frycos: Most of you know about Telerik or DevExpress but ever heard of Syncfusion as another big global player? I found some interestin…
0
12
0
@esj4y
esjay
3 months
@ZoomZoomZero @AzakaSekai_ Edit: Not the index register, the base address/register value not being null of course.
0
0
1