[{"body":"A snapshot of what has my attention right now. Inspired by nownownow.com. Studying# OSEP — advanced evasion and lateral movement. SEC535 / GOAA — adversarial attacks against machine learning systems. Building# Exploit development practice harnesses. Writing# Working through a backlog of writeups from lab machines and CTF challenges. Last updated: August 2026. ","date":"2026-08-05","section":"","summary":"What I'm working on, studying, and reading at the moment.","tags":[],"title":"Now","url":"/now/"},{"body":"A working collection of binary exploitation material: practice harnesses, helper scripts, and notes accumulated while grinding through exploit development. View on GitHub → ","date":"2025-12-08","section":"tools","summary":"A working collection of binary exploitation material — scripts, notes, and practice harnesses.","tags":["binary-exploitation","tooling"],"title":"Binary-Exploitation","url":"/tools/binary-exploitation/"},{"body":"I’m yad0, an offensive security researcher. This site is where I write down what I learn — vulnerability research, exploitation technique, and the tooling that falls out of both. What I write about# Binary exploitation — memory corruption, mitigation bypass, and getting from a crash to reliable execution. Web application security — attack chains rather than isolated findings. Offensive tooling — the scripts and harnesses that make the above repeatable. Offensive AI — where machine learning systems break under adversarial pressure. Posts land in Posts. Machine and challenge walkthroughs go to Writeups. Anything I release publicly ends up in Tools. Certifications# Held Certification Focus OSCP Penetration testing OSWA Web application attacks CEH Ethical hacking Security+ Security fundamentals Network+ Networking A+ IT fundamentals ITIL® Foundation Service management Linux Essentials Linux fundamentals In progress OSEP — Offensive Security Experienced Penetrator SEC535 / GOAA — GIAC Offensive AI Analyst Disclosure and ethics# Everything published here comes from authorized testing, personal lab environments, retired training machines, or public CTF challenges. Where a writeup touches a real product, it goes out only after the vendor has had a reasonable window to remediate. Nothing here is an invitation to attack systems you do not own or have written permission to test. Contact# The fastest route is any of the links in the footer. ","date":"2025-12-05","section":"","summary":"yad0 — offensive security researcher. OSCP, OSWA, and OSEP in progress. What I work on and how to reach me.","tags":[],"title":"About","url":"/about/"}]