Summary
Duy Phan is a vulnerability researcher with a decade of experience focused on Windows kernel local privilege escalation and broader firmware and IoT bug hunting. Currently at Dataflow Security, he specializes in exploiting Windows kernel flaws and developing tailored fuzzers to uncover hard-to-find vulnerabilities. Previously at STARLabs he combined custom fuzzing, reverse engineering, and exploit development to surface bugs across diverse software and embedded devices. Based in Italy, he holds a BE in Computer Engineering and completed a cybersecurity internship at Nanyang Technological University. His public work, including tooling and proof-of-concept code on GitHub, reflects a pragmatic researcher who bridges automated discovery with hands-on exploit craft. An understated strength is his ability to adapt fuzzing approaches to niche targets, turning noisy test results into actionable vulnerability findings.
10 years of coding experience
5 years of employment as a software developer
Internship, Cyber Security Labs, Internship, Cyber Security Labs at Nanyang Technological University
Bachelor of Engineering - BE, Computer Engineering, Bachelor of Engineering - BE, Computer Engineering at University of Information Technology