# macOS Security Researcher & Builder

Hey, I'm Robert - It's great to meet you.

I'm an engineer who's passionate about security. I spend my days working on Agent Security. At night, I'm hacking away at whatever suits my fancy, with a focus on Apple's bug bounty program. I've got a number of published findings, and continue to hunt.

# Findings

# CVE-2024-27821

Shortcuts PrivEsc: https://support.apple.com/en-lb/120903

# Shortcuts PrivEsc Redux

Surprisingly, no CVE: https://support.apple.com/en-us/126348

# iCloud Email Bypass

Again, no CVE. https://support.apple.com/en-us/122162

# Projects

Gale - Hurricane Tracking (opens new window) -> A gale-force fast hurricane tracker

Recipe Reader for Safari (opens new window) -> Reader Mode for Recipes - A Safari Extension

HULOG (opens new window) -> A log for humans. A custom macOS app to take notes in the form of a log.

ReqSink (opens new window) -> A macOS app to receive and visualize HTTP and DNS requests

RawCode - Raw Barcode & QR Scanner (opens new window) -> See the raw contents of Barcodes and QR codes

raptair.ai (opens new window) -> Harnessing real time object detection along with a mesh of image sensors to autonomously deter pests via land anad air.

# OSS

# GitHub

# OffSec Lead

  • Red Team Ops
  • Architecture
  • Other hacking as assigned

# Microsoft

# Azure DevOps

  • Driving organizational security goals
  • Implementing critical security features
  • Leading red team operations
  • Evangelizing security for the Azure DevOps Product

# AWS

# Marketplace

  • Delivered services for testing cloud services before deployment in special regions
  • Lead efforts for security certifications
  • Drove daily standups and sprint plannings
  • Managed workload across team, ensuring timely delivery of features with sustained uptime
  • Scrum Master