RED TEAMSYSTEMScase file · wisnu · 0x7a3f

                                                     

profile sketch · usually online

current rhythm
>
>
>

FOCUS

RE / RT

reverse engineering and red team

STATUS

Available for serious work

BeyondSoft Singapore and private security work

DOSSIER // 01//About Wisnu

profile sketch · last seen debugging

NameCONFIRMED

Wisnu Rafi

Day workACTIVE

Systems Software Engineer

BeyondSoft Singapore

Security workACTIVE

Offensive Security Engineer

Private clients

Main laneCLASSIFIED

Reverse engineering and red team

FIELD NOTES

I am the kind of engineer who gets curious when something only breaks for one user, on one machine, at the worst possible time. I like messy problems because they force the real story out of the system.

HOW I WORK[ practical ]

  • I trust a bug after I can reproduce it twice.
  • A finding is not finished until the fix is obvious.
  • No source code is still fine. Behavior leaves clues.
CAPABILITIES // 02//Problems I like solving
T 01

Reading crashes

I start with the symptom, then work backward through state, input, memory, and timing until the weird branch finally shows itself.

T 02

Proving impact

I do not stop at scary wording. If the risk is real, I want a clean proof that is clear, repeatable, and safe to explain.

T 03

Reading binaries

When source is missing or not telling the full truth, I use disassembly, debugger state, traces, and behavior to rebuild the picture.

T 04

Desktop weirdness

UI state, native calls, permissions, registry, and latency love blaming each other. I separate the noise from the actual bug.

T 05

Reading traffic

When the bug lives between two systems, I look at packets, protocol assumptions, and trust boundaries until the gap is visible.

T 06

Writing the fix path

I turn messy evidence into something useful for the next person. Clear repro, real impact, priority, and a practical direction to patch.

CASE FILES // 03//Work in real situations
CASE 01

The one machine problem

STEP 01

A desktop app crashed for exactly one user while every test machine looked fine.

STEP 02

The dump pointed to an access violation that only showed up with a specific locale and timing window.

STEP 03

I narrowed it down to init order, wrote a repro, and made the fix path small enough to act on.

> One user, one machine, clean everywhere else.

CASE 02

The auth check that was not enough

STEP 01

The endpoint had an auth check, so it looked safe at first glance.

STEP 02

A replayed request exposed a branch after the check that still trusted user controlled state.

STEP 03

I proved the impact end to end, documented the boundary issue, and made the priority obvious.

> The check existed. The trust model did not.

WORK LOG

Now

Systems Software Engineer

BeyondSoft Singapore

Now

Offensive Security Engineer

Private clients

Past

Independent Penetration Tester

Web and network

Past

Game Security Research

Client integrity and RE

LOADOUT // 04//Tools I actually use

Reverse engineering

The tools I reach for when source is missing or the behavior feels suspicious.

IDA ProGhidrax64dbgOllyDbgWinDbgRadare2Binary Ninja

Building

Languages I use when the thing needs to actually ship.

C / C++RustPythonC#TypescriptJavaScript

Editors

Comfortable workspaces for low level code, desktop apps, and quick experiments.

IntelliJ IDEAVisual Studio 2022VS CodeNeovim

Systems

The environments I debug, test, break, and fix things in.

Kali LinuxParrot OSWindows
ARCHIVE // 05//Operations archive
Archive index3Desktop App1Website3Cyber Security
Uninstra preview
Desktop App
Live

Uninstra

Open-source deep uninstaller & cleanup tool for Windows. Evidence-based leftover detection with multi-signal confidence scoring — orphaned registry keys, stale shell extensions, residual AppData. Offline-first, zero telemetry.

#csharp#wpf#dotnet9#clean-arch#sqlite
GTKYD App preview
Desktop App
Live

GTKYD App

Local-first Windows device inspector — hardware, storage, battery, drivers, security, network. Health scoring with explainable rules, scan history, snapshot diff, JSON/CSV/PDF export.

#csharp#winui3#dotnet9#mvvm#sqlite
Win Memory Cleaner preview
Desktop App
Live

Win Memory Cleaner

Lightweight WPF RAM optimizer that triggers native Windows API memory cleanup routines — Standby List, Modified Page List, Working Set. System tray resident, global hotkey, auto-threshold, 25+ locales.

#csharp#wpf#mvvm#win32
Arnhemia Community preview
Website
Live

Arnhemia Community

Invite-only Valorant community platform — forum with categories/threads/reactions/bookmarks, ticketing system, role hierarchy, TOTP 2FA, Discord OAuth. Server-enforced RLS on every table.

#nextjs15#react19#supabase#rls#totp
Senator — Roblox External preview
Cyber Security
In Progress

Senator — Roblox External

User-mode external for Roblox game-security research. ESP with skeleton/box/aim-viewer, aimbot with per-axis prediction & hit-chance humanization, mesh chams via D3D11 reading the LRU mesh cache. Educational only.

#cpp#imgui#d3d11#game-re
WuWa Private Server preview
Cyber Security
In Progress

WuWa Private Server

Reverse-engineering oriented re-implementation of the Wuthering Waves game server. KCP gateway with custom packet handling, HTTP SDK server, protobuf protocol catalog, traffic analyzer for inspecting captured protocol dumps.

#csharp#dotnet8#protobuf#kcp#game-re
Universal Runtime Analyzer preview
Cyber Security
In Progress

Universal Runtime Analyzer

Read-only Windows memory analysis framework. Process attach with graceful QUERY_LIMITED_INFORMATION fallback, PE parser, IDA-style pattern scanner, MSVC RTTI walk & vtable inference, VirtualQueryEx memory map, versioned JSON export.

#cpp20#win32#imgui#d3d11#re
COMMS // 06//Send something interesting
OPEN TO TALK

If you have a weird bug, a security question, or a serious build idea, send it over.

Helpful context: what happened, where it runs, and what you already tried.

RESPONSE

I usually reply faster when the message is specific. Screenshots, logs, repro steps, or a short context dump help a lot.

status: listening

MESSAGE