λλμ "보μ"μ΄λΌλ λΆμΌμμ νμμ΄ λ°°μΈ μ μμμ κ°μ¬νλ©° λμμμ΄ λμκ°κΈ° μν΄ μ μ§νλ μ€
- Name: μ£Όμ§νΈ (tr4ce)
- Affiliation: RAON Secure - Core Research Team
- Location: Seoul, Republic of Korea
- CTF Team: RubiyaLab
| Period | Organization | Role |
|---|---|---|
| 2025.03 ~ Present | RAON Secure | Core Research Team (Pentest / Red Team / Vuln Research) |
| 2023.10 ~ 2024.11 | Finsecurity | Pentest Team (Web/App Diagnostics, ISMS-P Auditor) |
- Sungkonghoe University (2022.03 ~ 2024.02) - Information Technology, GPA 3.5/4.5
- Sangji University (2018.03 ~ 2022.02) - Computer Science, GPA 3.79/4.5
- K-Shield Jr (2023.03 ~ 2023.05) - Penetration Track, KISA Certificate
| Competition | Placement | Team |
|---|---|---|
| DEF CON CTF 2025 Final | π₯ 10th | Cold Fusion |
| DEF CON CTF 2025 Qualifier | 8th | Cold Fusion |
| DefCamp CTF 2025 Final | 11th | RubiyaLab |
| DefCamp CTF 2025 Quals | 9th | RubiyaLab Expeditions |
| BlackHat MEA CTF | Qualified | last PP dance |
| RSTCON 2024 | 10th | tw0n3-byte |
| BISC CTF | 12th | tr4ce |
| ACDC AI CTF | 28th | μ§λ Έμ§νΈμ¬μΉκ΅¬ν¨ |
| etc | - | - |
CVEs Discovered: (Synology SRM (RCE, XSS))
- CVE-2024-53279 ~ CVE-2024-53288
- CVE-2024-13987
- CVE-2025-10466
Advisories:
Contributions:
- .hack Conference 2025 - The Challenge of Tight Window
- μ¬μ΄λ² μμ μ¬λ ΉλΆ(Cyber Operations Command) - Information-gathering-based Penetration Test
| Period | Project | Description |
|---|---|---|
| 2025.08 ~ 2025.10 | IoT Bug Hunting | Team DoS_juljul |
| 2024.08 ~ 2025.03 | JS Engine Concurrency Issues | Team cncrnc8 |
| 2024.02 ~ 2024.06 | Synology SRM Bug Bounty | Team OHiC (12 CVEs) |
| 2023.03 ~ 2023.06 | WordPress Ecosystem Vuln Analysis | 1-day Analysis |
| 2022.06 ~ 2023.03 | Linux Kernel Fuzzing | 1 Contribution |