Security Research Engineer 💂
Founder of CTF Team: Hack@Sec 🇳🇵
Crypto and Web w/@hackasec 🕸️
Blackhat MEA 2023/24/25 CTF Finalist 🎩
BBH at Hacker0x01 🐞🇳🇵
🎉 Five years ago today (16 Oct 2020), I played my first-ever CTF solo - unknowingly starting something much bigger.
What began as one person’s challenge became @hackasec , Nepal’s #1 cybersecurity CTF team and a global contender.
#hackasec#CTF#Cybersecurity#Global#ctftime
That's a wrap on Pwn2Own Berlin 2026! 🏆 $1,298,250 awarded. 47 unique 0-days. 3 days of absolute chaos. And talk about main character energy - congrats to DEVCORE for claiming Master of Pwn with 50.5 points and $505,000 - they never slowed down. See you next year! #Pwn2Own #P2OBerlin
Mind blown alert 🤯! Nguyen Hoang Thach (@hi_im_d4rkn3ss) of STARLabs SG (@starlabs_sg) used a Memory Corruption bug to exploit VMware ESXi with the Cross-tenant Code Execution add-on, earning a sweeeeeet $200,000 and 20 Master of Pwn points. Full win let's go! #Pwn2Own #P2OBerlin
It's changing very fast, it's been more than 5 years doing and don't want to completly stop doing. I still try to stay in game limiting myself to just one good CTF a month will see how this goes, and hoping to see different format and more onesite game 🥲
I started playing CTFs in 2022, and LLMs definitely changed the **competitive** CTF scene a lot, especially since mid-2025. I also started using LLMs in late 2025. Yes, those models did one-shot many challenges, but what's the fun of slopping them? I learned absolutely nothing 🥲
I've been seeing posts all over about the state of CTFs post-LLM. I've seen many attempts to explain why this is just a new evolution of CTFs, but I fundamentally disagree. I believe the original spirit is gone and I've written why in my blog.
https://t.co/tgUZOGkhGV
New blog - documented our CVE research process - patch analysis, setting up debug environments across different stacks, and keeping research organized.
https://t.co/tJ7EZb4d87
Final Black Friday Giveaway!
Win FREE access to:
• 1 CRTP seat
• 1 CRTE seat
How to participate:
1. Like
2. Comment which course you’re interested in and why
3. Repost
If you've already availed the Black Friday offer, you're still eligible.
Winners will be announced on Dec 15, 2025.
Few days left to grab your Black Friday deals:
• Up to 25% OFF Labs & Bootcamps
• No coupon code needed
• Use anytime within 6 months
For More details: https://t.co/hp0GLwrqy7
I did some vulnerability research on bareiron minecraft server project and found 3 vulnerabilities which resulted in RCE:
CVE-2025-69806
CVE-2025-69808
CVE-2025-69809
https://t.co/UHva8KbwPd