Marc Heuse

Teamlead Software Assurance at Security Research Labs

Berlin, Germany
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

🤩
Rockstar
Marc Heuse is a veteran security researcher and Teamlead Software Assurance based in Berlin, with roots in hands-on vulnerability discovery since the early 1990s and a track record of founding the influential research group The Hacker’s Choice. He combines deep technical expertise in network and embedded security—particularly IPv6, automotive systems, and SWIFT transaction analysis—with practical offensive skills from penetration testing, source-code audits, and binary disassembly. As the author and maintainer of widely used tools like THC-Hydra and thc-ipv6, and a contributor to major fuzzing platforms (AFL++, OSS-Fuzz, LibAFL, ClusterFuzz), he bridges research, tooling and production-scale fuzzing infrastructure. His career spans leadership roles at SUSE, enterprise consulting, and independent consulting since 2007, now leading software assurance at Security Research Labs. Notably, he still pursues unconventional targets (cars to banking middleware), reflecting a curiosity-driven approach that yields impactful, widely adopted security tooling.
code12 years of coding experience
job7 years of employment as a software developer
github-logo-circle

Github Skills (44)

benchmark10
libfuzzer10
penetration-testing10
python10
scripting10
it-security10
cracking10
benchmarking10
c-programming10
c1110
binarydiff10
cicd10
security10
c1710
script10

Programming languages (19)

C#JavaC++CSSRustCScalaGo

Github contributions (5)

github-logo-circle
vanhauser-thc/thc-ipv6

Mar 2015 - Jan 2023

IPv6 attack toolkit
Role in this project:
userBack-end Developer & Security Engineer
Contributions:4 releases, 113 commits, 26 PRs in 7 years 11 months
Contributions summary:Marc's contributions center on enhancing the `thc-ipv6` toolkit, specifically by implementing or improving tools related to IPv6 security research and attack capabilities. They focused on adding support for TCP Fast Open, and modifying and maintaining tools to address IPv6 network vulnerabilities. The user demonstrated a strong understanding of network protocols by implementing several new functions and adjusting existing features to improve their overall utility and effectiveness.
ipv6penetration-testingdenial-of-serviceman-in-the-middleman-in-the-middle-attack
google/fuzzbench

Mar 2020 - Jan 2023

FuzzBench - Fuzzer benchmarking as a service.
Role in this project:
userBack-end Developer
Contributions:16 reviews, 178 commits, 354 PRs in 2 years 10 months
Contributions summary:Marc's contributions focused on modifying and enhancing the AFL++ fuzzer, a tool used for security testing and bug discovery. Their work primarily involved updating and maintaining the integration of AFL++ within the FuzzBench framework. The user modified and added features related to how AFL++ interacts with different benchmarks and targets within FuzzBench. Additionally, the user worked on performance improvements and made various bug fixes within the AFL++ integrations.
benchmarkingfuzzerfuzzingbenchmark-frameworkevaluation
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial