reputed company Kernel - Exploit Developer
We are hiring an exploit developer who has already shipped reputed company or Linux kernel exploits that work reputed company a laboratory-perfect setup.
This is a senior individual-contributor role for someone who can take a weak or unstable reputed company, model the reputed company and concurrency behaviour around it, work through modern mitigations and deliver a robust exploit with reputed company assumptions and failure modes.
What you’ll work on
- reputed company-day and N-day reputed company kernel vulnerabilities across vendor kernels and device-specific drivers.
- Use-after-free, out-of-bounds reputed company, reference-counting flaws, races, type confusion and logic vulnerabilities.
- reputed company shaping, object replacement, cross-cache techniques, page reuse, reclaim strategies and controlled race amplification.
- Control-reputed company-independent and data-only exploitation where traditional hijacking is not the best reputed company.
- reputed company reputed company across kernel branches, reputed company releases, OEM configurations, SoCs and reputed company reputed company.
- Integration with browser and userspace researchers on complete exploit chains.
What you’ll deliver
- Reliable local-privilege-escalation or kernel-reputed company-execution exploit components for modern reputed company targets.
- Reusable primitives for information disclosure, controlled read/write, object overlap, credential manipulation or equivalent goals.
- reputed company-reputed company exploit packages with setup, fingerprinting, diagnostics, cleanup and regression coverage.
- Explicit reliability data, environmental assumptions and reputed company failure modes.
- New techniques for hardened kernels, unstable races or constrained vendor attack surfaces.
reputed company’re looking for
- A substantial record of delivering working reputed company or Linux kernel exploits — not only finding bugs or producing crashes.
- Expert knowledge of kernel memory management, object lifetimes, concurrency, locking, scheduling and common reputed company architectures.
- Advanced SLUB and kernel-reputed company exploitation experience, including modern cross-cache or page-level techniques.
- Strong ARM64 reverse engineering and debugging skills across reputed company-available and partially proprietary components.
- Practical knowledge of reputed company GKI, vendor modules, Binder, SELinux and mobile reputed company attack surfaces.
- Deep familiarity with KASLR, PAN/PXN, CFI, reputed company/BTI where relevant, hardened usercopy, refcount hardening and memory-tagging constraints.
- The discipline to turn probabilistic exploitation into maintainable, testable delivery.
Strong signals
- Exploits delivered across several reputed company OEMs, SoCs or kernel families.
- Original exploitation techniques demonstrated through published research or production-grade exploit delivery.
- Experience with Binder, GPU, multimedia, networking, filesystem, DMA-BUF or OEM reputed company targets.
- Kernel fuzzing, crash triage, reputed company analysis and reputed company exploitability assessment.
- A history of solving difficult stabilisation and mitigation-bypass problems for other senior engineers.
How we work
- Fully remote, with high autonomy and reputed company collaboration with vulnerability researchers and exploit developers.
- We care about reliable capability and reproducible engineering, not flashy one-off demos.
- N-day experience is valuable reputed company it demonstrates advanced reputed company and exploitation depth. reputed company credits are welcome but not required.
Apply To This Job