Hey, I’m Sachin

Founding Platform Engineer at Kryptsec. Previously security engineer at iZOOlogic. BTech from MNIT Jaipur, 2024.

I break things to understand how they work, then figure out how to detect when someone else tries the same. Reverse engineering EDR internals, analyzing eBPF at the kernel level, hunting threat actors across phishing infrastructure.

Research & Publications

How Reverse Engineering Markov Chains Exposed a China-Based Phishing Empire Targeting 24 Indian Banks: Published at iZOOlogic, October 2025. Reverse engineered domain generation patterns used by a China-based threat actor targeting Indian banking customers.

CVE-2025-32324: Authentication bypass in Android’s ActivityManagerShellCommand.

eBPF JIT Compiler Internals: Understanding Constant Blinding: How the Linux kernel’s eBPF JIT compiler implements constant blinding as a security mitigation.

Novel Approach to Tackle UAF Bugs in the Linux Kernel: Dedicated bucket allocators as a mitigation technique against use-after-free vulnerabilities.

Focus Areas

eBPF Security: JIT compiler internals, verifier bypasses, constant blinding, kernel-level offense and defense.

EDR Research: Reverse engineering detection engines, bypass techniques, building better detections.

Threat Intelligence: Phishing campaign analysis, C2 hunting, IOC correlation, tracking threat actor TTPs.

Binary Exploitation: Vuln research, RE, exploit dev. 100+ machines across HackTheBox and TryHackMe.