Log inSign up
Angelboy
769 posts
user avatar
Angelboy
@scwuaptx
Senior Security Researcher at @d3vc0r3 MSRC 2024/2025 MVR Top 100
blog.angelboy.tw
Joined September 2012
989
Following
5,622
Followers
  • Pinned
    user avatar
    Angelboy
    @scwuaptx
    May 17, 2025
    Thrilled to share our latest deep dive into Windows Kernel Streaming! Just presented this research at @offensive_con. Check it out:
    Image
    Frame by Frame, Kernel Streaming Keeps Giving Vulnerabilities | DEVCORE 戴夫寇爾
    From devco.re
    30K
  • user avatar
    Angelboy
    @scwuaptx
    Dec 7, 2020
    I organized my notes and made it into slides when I learn about segment heap . If you find something wrong, please let me know. Hope it can be helpful fo those who want to learn segment heap in windows kernel.
    Image
    Windows Kernel Heap: Segment heap in windows kernel Part 1
    From speakerdeck.com
  • user avatar
    Angelboy
    @scwuaptx
    Aug 23, 2024
    Excited to share our research on Kernel Streaming! We discovered several vulnerabilities in it that we used at Pwn2Own this year. Check it out:
    Image
    Streaming vulnerabilities from Windows Kernel - Proxying to Kernel - Part I | DEVCORE 戴夫寇爾
    From devco.re
    46K
  • user avatar
    Angelboy
    @scwuaptx
    Jul 7, 2019
    Here is my challenge in WCTF 2019. github.com/scwuaptx/LazyF…
 Hope everyone can learn more windows heap from this challenge. About windows 10 NT heap slideshare.net/AngelBoy1/wind… I only write Chinese version slide, I will release an English version soon.
    Image
    GitHub - scwuaptx/LazyFragmentationHeap: WCTF 2019 challenge
    From github.com
  • user avatar
    Angelboy
    @scwuaptx
    Oct 14, 2019
    My exploit for my challenges at HITCON CTF 2019 Qual github.com/scwuaptx/CTF/t… Hope everyone can learn more from our CTF. #hitconctf
  • user avatar
    Angelboy
    @scwuaptx
    Jul 9, 2019
    Window 10 Nt Heap Exploitation (English Version) slideshare.net/AngelBoy1/wind…
    user avatar
    Angelboy
    @scwuaptx
    Jul 7, 2019
    Here is my challenge in WCTF 2019. github.com/scwuaptx/LazyF…
 Hope everyone can learn more windows heap from this challenge. About windows 10 NT heap slideshare.net/AngelBoy1/wind… I only write Chinese version slide, I will release an English version soon.
  • user avatar
    Angelboy
    @scwuaptx
    Mar 25, 2019
    My solution for 0ctf/tcf 2019 Qual (applepie, babyheap2019, scanner,babyaegis) github.com/scwuaptx/CTF/t…
  • user avatar
    Angelboy
    @scwuaptx
    Oct 5, 2024
    We’ve released Part II of our Windows Kernel Streaming series!
    user avatar
    DEVCORE
    @d3vc0r3
    Oct 5, 2024
    We’ve just published Angelboy’s (@scwuaptx) latest deep dive into Windows Kernel vulnerabilities, fresh off the stage from #Hexacon! Don’t miss out on the cutting-edge insights and findings. Check it out here: devco.re/blog/2024/10/0… #MSRC #VulnerailibtyResearch
    Image
    25K
  • user avatar
    Angelboy
    @scwuaptx
    Nov 30, 2020
    My exploit for my challenges at HITCON CTF 2020 github.com/scwuaptx/CTF/t… Lucifer challenge is a segment heap challenge in windows kernel. You need to use named pipe to spray in nonpaged pool and use it to do arbitrary memory reading. Hope everyone can learn more from our CTF.
  • user avatar
    Angelboy
    @scwuaptx
    Oct 16, 2019
    Nice writeup from LC↯BC for my windows kernel challenge "breath of shadow" !
 github.com/mephi42/ctf/tr… 
In my intended solution, you need to deal with "KVA Shadow" so that you can jump to shellcode in userspace.
 Thank you for solving my challenge :) #hitconctf
  • user avatar
    Angelboy
    @scwuaptx
    Jun 12, 2024
    Microsoft just fixed the vulnerabilities we used at Pwn2Own this year. I will release more details in the next few months. msrc.microsoft.com/update-guide/v… msrc.microsoft.com/update-guide/v…
    15K
  • user avatar
    Angelboy
    @scwuaptx
    Sep 1, 2018
    Play CTF in the sky :) #twctf
    Image
  • user avatar
    Angelboy
    @scwuaptx
    Apr 2, 2018
    My exploit for 0ctf/tcf 2018 (babyheap,blackhole,house of card,heap storm II) github.com/scwuaptx/CTF/t…
  • user avatar
    Angelboy
    @scwuaptx
    Apr 9, 2021
    Although I did not find useful vulnerabilities in other targets and other attacker surface, it was a good experience for me. The most important thing is that I learned a lot during the research. Hope I can find more vulnerabilities in the future.
    user avatar
    Orange Tsai 🍊
    @orange_8361
    Apr 9, 2021
    I am surprised that we won the #Pwn2Own 2021 because we only registered for one entry. But we are actually the only team (out of 3 teams) got the full-win on Exchange Server! Thanks to the lucky draw results and my awesome @d3vc0r3 research team member @mehqq_ and @scwuaptx!

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement