DongHa Lee +82 10 3025 9474 | p@sswd.pw | @gap_dev | Discord: lee_dongha https://x.com/gap_dev Website: http://localhost:9923 PROFILE ------- Security researcher and vulnerability analyst specializing in fuzzing, AI security, reversing, and exploit development. Published multiple CVEs across Apple, Chromium, Nvidia CUDA Toolkit, Adobe, Autodesk, and open-source ecosystems. Active contributor to international security conferences, academic research, and open-source fuzzing communities. TECHNICAL SKILLS ---------------- Vulnerability Research: pwnable exploitation, web hacking, reverse engineering, AI security, fuzzing, post-quantum cryptography Languages: C, C++, Python, Rust, x86 Assembly, Node.js, CUDA Systems: Embedded development, Docker, Linux Kernel security EXPERIENCE ---------- Republic of Korea Army | Jun. 1, 2026 — Nov. 30, 2027 Active Duty Service Member | South Korea Software Security Assessment Lab (SSA LAB) | Feb. 2025 — Present Undergraduate Researcher | South Korea Conducting advanced vulnerability research in fuzzing, attack surface discovery, and automated exploitation. Contributing to multiple security publications and national-level cybersecurity research projects. ENKI WhiteHat | Aug. 2024 — Dec. 2024 Cybersecurity Researcher | South Korea Conducted R&D on large-scale exploit detection and vulnerability analysis across diverse software targets. Built data-processing pipelines to handle high-volume security telemetry and vulnerability datasets. Developed and evaluated AI-based models for automated exploit classification and attack pattern detection. Self-Employed Startup | Jun. 2023 — Aug. 2024 Founder / Security Consultant | South Korea Led offensive security consulting and penetration testing engagements for organizations and research clients. Delivered vulnerability assessments across embedded, IoT, and enterprise environments. PUBLISHED CVES -------------- CVE-2026-85062 — !!My First Bug in 2023!! ReDoS in Colord NPM module CVE-2026-28817 — Apple macOS/IOS/etc Tahoe 26.3 Print (+$20000 reward) CVE-2026-28868 — Apple XNU Kernel Tahoe 26.3 (+$1000 reward) CVE-2026-20695 — ZDI-CAN-28499, Apple XNU Kernel Tahoe 26.3 CVE-2025-23339 — Nvidia CUDA Toolkit Vulnerability CVE-2025-43511 — Apple WebKit GPU Vulnerability (+$1000 reward) CVE-2025-43401 — Apple Tahoe 26.1 CoreAnimation Vulnerability CVE-2025-10500 — Chromium GPU Vulnerability (+$15000 reward) CVE-2025-43287 — Apple Tahoe 26.0 ImageIO CVE-2025-43372 — Apple Tahoe 26.0 CoreMedia (+$1000 reward) CVE-2025-43338 — Apple Tahoe 26.0 ImageIO (+$1000 reward) CVE-2025-53015 — CVSS 7.5 / CWE-835 / XMP Profile Parsing Bug CVE-2025-24184 — Apple CoreMedia Playback (iOS 18.3 / macOS Sequoia 15.3) CVE-2025-4605 — CVSS 5.5 / CWE-789 / Autodesk MAYA 2025 Memory Corruption CVE-2024-44915 — CVSS 5.5 / CWE-284 / Improper Access Control CVE-2024-44914 — CVSS 5.5 / CWE-284 / Improper Access Control CVE-2024-44913 — CVSS 5.5 / CWE-284 / Improper Access Control CVE-2024-45872 — CVSS 6.3 / CWE-122 / Heap-based Buffer Overflow CVE-2024-45871 — CVSS 6.3 / CWE-20 / Improper Input Validation CVE-2024-45870 — CVSS 6.5 / CWE-284 / Improper Access Control KVE-2024-0454 — KISA KNVD Disclosure Report KVE-2024-0821 — Find the Gap Private Bug Bounty Report KVE-2024-0820 — Find the Gap Private Bug Bounty Report CVE-2024-42358 — CVSS 5.5 / CWE-835 / Denial-of-Service via Infinite Loop CVE-2024-20746 — CVSS 7.8 / CWE-787 / Adobe Premiere Pro Out-of-Bounds Write CVE-2024-27088 — CVSS 5.5 / CWE-400, CWE-1333 / es5-ext ReDoS CVE-2024-22526 — CVSS 5.5 / CWE-120 / Buffer Copy Without Size Check CVE-2024-23339 — CVSS 6.5 / CWE-1321 / Prototype Pollution CVE-2023-50245 — CVSS 9.8 / CWE-120 / Buffer Copy Without Size Check CVE-2023-45827 — CVSS 9.8 / CWE-1321 / Prototype Pollution CVE-2023-43646 — CVSS 7.5 / CWE-400, CWE-1333 / Regular Expression DoS ...and additional ongoing disclosures PRESENTATIONS & LECTURES ------------------------ Fuzzing & Symbolic Execution — CCA National Information Security Seminar (Feb. 2025) Metaverse Fuzzing for 0-day Discovery — KUCIS Regional Seminar (Oct. 2024) Main Instructor, KISA Academy Bug Hunting Master Course (Jun. 2024) AddressSanitizer and Out-of-Bounds Vulnerabilities — CCA Seminar (Mar. 2024) Offensive Security Study Lecturer (2024) Teaching Assistant, Network Security Laboratory Course (2024) ReDoS Detection Tool Research Presentation — Korea Institute of Information Security (Nov. 2023) Automated ReDoS Discovery Methodology — KUCIS Seminar (Sep. 2023) PAPERS ------ LLM Agent-Driven Honeypot Smart Contract Detection Using Symbolic Execution — Korea Institute of Information Security PDF: http://localhost:9923/papers/llm-honeypot-symbolic-execution.pdf#page=1 First-page preview: http://localhost:9923/papers/llm-honeypot-symbolic-execution.png?v=175bfbab13d3 Preview title: LLM Agent-Driven Honeypot Smart Contract Detection Using Symbolic Execution Pages: 3 Constructing a Public Framework-XPC Service Dependency Graph via Undocumented macOS Interface Identification for Attack Surface Analysis — KCI Journal PDF: http://localhost:9923/papers/macos-framework-xpc-dependency-graph.pdf#page=1 First-page preview: http://localhost:9923/papers/macos-framework-xpc-dependency-graph.png?v=51baa327a818 Preview title: Public Framework–XPC Service Dependency Graph & Attack Surface Analysis Pages: 12 Hybrid Fuzzing Research Trends and Technical Challenges — Korea Institute of Information Security Android Fuzzing Harness Generation via Static and Dynamic Analysis — Korea Institute of Information Security LLM-based Software Vulnerability Analysis Research Trends — Korea Institute of Information Security Automated macOS Attack Surface Identification using XPC and IOKit — Korea Institute of Information Security PDF: http://localhost:9923/papers/macos-xpc-iokit-attack-surface.pdf#page=1 First-page preview: http://localhost:9923/papers/macos-xpc-iokit-attack-surface.png?v=621c52540d1c Preview title: Automated macOS Attack Surface Identification via XPC and IOKit Pages: 4 Attack Surface and Vulnerability Analysis of ARM Virtualization — KTCCS (KCI Journal) PDF: http://localhost:9923/papers/arm-virtualization-vulnerability-analysis.pdf#page=1 First-page preview: http://localhost:9923/papers/arm-virtualization-vulnerability-analysis.png?v=ee47c14edd6a Preview title: Towards Automated Vulnerability Analysis in ARM-based Virtualization Pages: 6 Symbol Porting Techniques for macOS Kernel Debugging — Korea Information Processing Society PDF: http://localhost:9923/papers/macos-kernel-symbol-transplantation.pdf#page=1 First-page preview: http://localhost:9923/papers/macos-kernel-symbol-transplantation.png?v=ed3462326832 Preview title: Symbol Transplantation for macOS Kernel Debugging Pages: 2 Binary-only Fuzzing Performance Improvement via Corpus Transfer — Korea Institute of Information Security PDF: http://localhost:9923/papers/binary-fuzzing-corpus-transfer.pdf#page=1 First-page preview: http://localhost:9923/papers/binary-fuzzing-corpus-transfer.png?v=e7f169b61de4 Preview title: Enhancing Binary-only Fuzzing for Commercial Software via Corpus Transfer Pages: 3 ReDoS Detection Tool Trend Analysis and Improvement — Korea Institute of Information Security PDF: http://localhost:9923/papers/redos-detection-analysis.pdf#page=1 First-page preview: http://localhost:9923/papers/redos-detection-analysis.png?v=96e72a219ec6 Preview title: Analysis and Improvement of ReDoS Vulnerability Detection Tools Pages: 4 Node.js Package Vulnerability Research via Prototype Pollution Pattern Study — Korea Institute of Information Security PDF: http://localhost:9923/papers/nodejs-prototype-pollution.pdf#page=1 First-page preview: http://localhost:9923/papers/nodejs-prototype-pollution.png?v=812c30139f18 Preview title: Node.js Packages Vulnerability Analysis via Prototype Pollution Patterns Pages: 4 PROJECTS -------- Finding Vulnerabilities in Silicon macOS Virtualization Contributor to AFL++ open-source fuzzing framework LKL GPU Kernel Driver Fuzzing Project (2024) Member, Hspace Knights Security Activities (2024) ReBoB / NodeBOB Vulnerability Research Team (2023) CTF Challenge Authoring and Competition Operations Smart Transportation IoT Device Vulnerability Analysis Project Enterprise Penetration Testing and Security Consulting Engagements Multiple Government and Industry R&D Security Projects AWARDS ------ DEFCON 34 FINAL, 7th Place (Aug. 2026) SekaiCTF 2026, 7th Place (Jun. 2026) DEFCON 34 CTF Qualifier, 6th Place (May 2026) TJCTF 2026, 1st Place (May 2026) CODEGATE 2026 Qualifier CTF General, 4th Place (Mar. 2026) Selected for the Apple Security Research Device Program and received a Security Research Device (2026) Best Paper Award — Korea Institute of Information Security (Nov. 2025) TS Penetration Testing Competition, 4th Place — Korea Transportation Safety Authority (Nov. 2025) Woori Bank Wooricon Hacking Competition, 1st Place (Sep. 2025) WagleWagle Hackathon, 1st Place (Feb. 2024) Gachon University Talent Award (Nov. 2023) Best Paper Award — Korea Institute of Information Security (Nov. 2023) Information Security Policy Proposal Competition, Finalist (Oct. 2023) WagleWagle Hackathon, 3rd Place (Sep. 2023) EDUCATION --------- Best of the Best (BoB) 14th | Jul. 2025 — Dec. 2025 Vulnerability Analysis Track | South Korea Gachon University | 2023 — Present B.S. in Information Security | South Korea SELECTED OPEN-SOURCE PROJECTS & CONTRIBUTIONS --------------------------------------------- Linux Kernel — KVM/ARM64 — Upstream contributor to ARM64 nested virtualization. Authored a mainline fix for incorrect VNCR invalidation range calculation that could leave stale TLB entries (ebb2d8fd), and co-discovered/reported a VNCR TLB ASID matching flaw as part of Team 0xB6 (860b21c3). ebb2d8fd: https://github.com/torvalds/linux/commit/ebb2d8fd81b82c8a57f88add118108b1c4408670 860b21c3: https://github.com/torvalds/linux/commit/860b21c31d16f99b8c37b77993682f7bc8c211d7 LibAFL_vifuzz — LibAFL-based work for macOS binary-only fuzzing, providing instrumentation and fuzzing capabilities used as the foundation for ViFuzz development. https://github.com/Apple-Reversing-Tools/LibAFL_vifuzz MacOS-UserlandAttackSurface-visualization — Automated macOS userland attack-surface analysis and visualization. Analyzes Frameworks, XPC/Mach Services, Objective-C imports/exports, and dlopen relationships to graph attack surfaces and dependencies. https://github.com/Apple-Reversing-Tools/MacOS-UserlandAttackSurface-visualization hyfervisor — Virtualization Framework-based environment for macOS kernel live debugging on Apple Silicon. Supports custom XNU/Kext and KASAN kernel booting, as well as a GDB debug stub. https://github.com/Apple-Reversing-Tools/hyfervisor MacOs-Bootloader-Patch-Tools — Boot-chain patching tools for booting custom kernels and Kexts in Apple Silicon VMs. Automates AVPBooter → LLB → iBoot → Kernel Cache patching. https://github.com/Apple-Reversing-Tools/MacOs-Bootloader-Patch-Tools MacOs-KSANCOV-coverage-tools — Kernel coverage measurement and analysis using XNU's /dev/ksancov, including PC/edge coverage and per-Kext coverage analysis. https://github.com/Apple-Reversing-Tools/MacOs-KSANCOV-coverage-tools MacOS-kext-visualization — Analysis and visualization of macOS Kext structures and dependencies, including Kext dependency graphs and comparisons between host and VM environments. https://github.com/Apple-Reversing-Tools/MacOS-kext-visualization