Adam Kliś is an IT security specialist with 11 years of hands-on experience in hardware, programming, and security, currently working at STM Cyber and active in the p4.team CTF community. He brings deep backend and hypervisor-level malware analysis expertise, contributing notable enhancements to the DRAKVUF project and the DRAKVUF Sandbox used for automated malware analysis. At CERT Polska he strengthened incident analysis tooling and backend robustness, while his open-source work includes integrating libdrakvuf into REPLs and adding .NET assembly load hooks for richer forensic visibility. Adam combines academic training from Warsaw University of Technology with practical CTF-honed offensive skills, making him equally comfortable debugging low-level hooks or improving large-scale postprocessing pipelines. Known on GitHub as a “random quacking hacker,” he blends curiosity-driven exploration with disciplined engineering to deliver pragmatic security tooling improvements.
11 years of coding experience
Master of Science, Electrical, Electronics and Communications Engineering, Master of Science, Electrical, Electronics and Communications Engineering at Warsaw University of Technology
DRAKVUF Sandbox - automated hypervisor-level malware analysis system
Role in this project:
Backend Developer
Contributions:180 reviews, 51 commits, 92 PRs in 2 years 8 months
Contributions summary:Adam contributed to the DRAKVUF Sandbox project by implementing features and addressing bugs within the backend infrastructure. They added an optional syscalls filter and addressed an error in the /list endpoint, enhancing the system's functionality. The user also improved error handling and made the postprocessing more flexible.
Contributions:128 reviews, 14 commits, 19 PRs in 2 years 9 months
Contributions summary:Adam contributed to the Drakvuf project by adding new functionality and improving existing features. Their work includes integrating libdrakvuf functions into the REPL for enhanced debugging capabilities, specifically focusing on interaction with Drakvuf's core features. The user also implemented support for .NET AssemblyNative:::LoadImage hooks, enabling more detailed analysis of .NET assembly loading behavior. These changes involved modifications to both the user-mode hooking and plugins sections.
binary-analysisboxanalysissandboxvirtualization
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.