DEMOS PROJECTS CASE STUDIES SKILLS GITHUB LINKEDIN BUY ME A COFFEE TOGGLE THEME

Security Research Collective

VULNERABILITY RESEARCH โ€ข BUG BOUNTY โ€ข OFFENSIVE TOOLING

Security researcher specializing in Windows internals, vulnerability research, and building security tools from first principles. Currently exploring AV evasion techniques, C2 framework development, and MCP security research.

PENTEST-REF VIEW PROJECTS GET IN TOUCH

VIDEO DEMOS

Authorized lab demonstrations and security research recordings. All tests performed in controlled environments.

YouTube
Attacker vs Victim RCE POV
Dual-view demo showing attacker terminal and victim Windows desktop simultaneously during authorized RCE test
Instagram
Telegram OSINT Member Scraper
Custom tool for scraping Telegram group members - public repo
Instagram
PowerShell Pentest Cheatsheet
Live document with offensive PowerShell commands, includes encoder/decoder for IP substitution
Instagram
Authorized Lab: RDP Privilege Escalation
Controlled environment demo - RDP access to test VM followed by escalation to NT AUTHORITY\SYSTEM
Instagram
PowerShell to EXE Generator
Tool that converts PS1 scripts to standalone executables for payload delivery
Instagram
NT/Authority > Administrator
Demonstrates SYSTEM shell access being higher privilege than local admin
Instagram
Ransomware Simulation: Fake Update Screen
Educational demo replicating Petya-style fake system scan while encrypting + DPAPI credential extraction
Instagram
Adding Audio Feedback to Payloads
Development showcase - integrating WAV sound effects into stealer for execution confirmation
Instagram
C2 VNC Live Session
Real-time VNC connection via C2 framework - victim laptop (left) controlled from attacker station (right)
Instagram
Multi-Monitor C2 Setup
Workspace showing dual/triple monitor setup with terminals and C2 panels
Instagram
CVE-2026-73498 Discovery Demo
Prompt injection via Jira ticket exploiting mcp-atlassian - discovered using RunPod OpenWebUI + MCP

FEATURED PROJECTS

Pentest Reference
TOOLS

pentest-ref

Interactive offensive security command reference with placeholder substitution. Sanitized cheatsheet for lab use.

HTML JavaScript Reference
VaderShell
AUTOMATION

VaderShell

Personal terminal agent + Discord bot wrapping Claude CLI. One-line brain switching to Kimi/OpenRouter, dual-model planning council.

Python Claude Discord
MCP Atlassian PoC
VULNERABILITY RESEARCH

mcp-atlassian-poc

PoC for arbitrary file read via missing path validation in mcp-atlassian (GHSA-g5r6-gv6m-f5jv). Responsible disclosure.

Python CVE MCP
Telegram OSINT
OSINT

telegram-osint

Telegram OSINT scanner using Telethon. Scans public channels/groups for keywords, exports structured results.

Python Telethon OSINT
Piper Reader
APPLICATION

piper-reader

Offline desktop app that reads documents aloud using Piper neural TTS. No cloud, no API keys. Accessibility focused.

Python TTS Accessibility
VoiceLoop
APPLICATION

voiceloop

Fully offline local Voice-to-Text / Text-to-Voice with Ollama LLM. RAG knowledge base for context hijacking.

Python Ollama Voice
LyricSync
APPLICATION

lyricsync

Transcribe lyrics from any audio into synced LRC files. Isolates vocals with Demucs, transcribes with Whisper.

Python Whisper Audio
Mind Palace
APPLICATION

mind-palace

Gesture-driven memory twin. Wave at your webcam, grab a memory out of the air, hear it read back. MediaPipe hands + three.js.

JavaScript MediaPipe three.js

CASE STUDIES

โš ๏ธ
Path Traversal in mcp-atlassian
Arbitrary file read via Confluence API
Weakness CWE-22
CVE ID CVE-2026-73498
GHSA ID GHSA-g5r6-gv6m-f5jv
Source sooperset/mcp-atlassian
๐Ÿ›ก๏ธ
Windows Defender Research
Tamper Protection bypass analysis
Status MSRC Acknowledged
Case ID VULN-195458
Focus Hardware breakpoints
Target WdFilter.sys / AMSI / ETW
๐Ÿ“‹
CWE-200 Case Study
Credential exposure to full compromise
Type Case Study
Vector Screenshare leak
Impact SYSTEM takeover
Time <10 minutes

SKILLS

VULNERABILITY RESEARCH

  • Path Traversal (CWE-22) CVE-2026-73498
  • MCP Server Security GHSA
  • Windows Defender Research MSRC
  • SSRF / Access Control
  • Responsible Disclosure

OFFENSIVE SECURITY

DEVELOPMENT

  • C / C++
    Shellcode, drivers
  • Python
    Automation, exploits
  • PowerShell
    Post-exploitation
  • C# / .NET
    Implants, loaders
  • JavaScript
    Web app testing

PLATFORMS & TOOLS

  • Windows Server / AD
  • Kali Linux
  • Burp Suite / Wireshark
  • IDA Pro / Ghidra / x64dbg
  • Azure / AWS

ABOUT US

22nd Survey Division is a security research collective focused on vulnerability discovery, bug bounty programs, and offensive tool development. We specialize in Windows internals and adversary simulation. Our approach is first-principles: we build tools from scratch to understand how they work, not just how to use them.

Our current research areas include AV/EDR evasion techniques, C2 framework development, and MCP (Model Context Protocol) security. We've disclosed vulnerabilities through responsible disclosure and maintain several open-source security tools.

Beyond offensive security, we develop accessibility tools, AI integrations, and audio processing applications. We believe in learning by doing and documenting everything along the way.

COMPANY

  • HQ: Sydney, Australia
  • Focus: Vulnerability Research & Bug Bounty
  • Speciality: Windows Internals
  • Founded: 2026

LINKS

Get In Touch

Interested in security research, penetration testing, or vulnerability disclosure? Our team is ready to help.