Hello!
I’m Daniel Firer. I enjoy thinking and doing hard stuff. Currently working as a consultant at Botanica Software Labs. You can contact me via email: daniel at <this domain>.
My blog posts are here. You can find my friends’ blogs at ronpopov.me and yotam.net. Below are some other cool things I’ve done:
2026
- Read Tolstoy’s “The Death of Ivan Ilyich” in Russian
- Built the “Trial by Fire” CTF at BlueHatIL
- Attended FOSDEM, again :)
2025
- Submitted two zeroday exploits to Wiz’s zeroday.cloud competition
- CVE-2026-2004 - Postgres post-auth RCE
- CVE-2026-25589 - Redis post-auth RCE
- Implemented a PNG encoder, in SQLite…
- Did a bunch of network simulations with ns3
- Reverse engineered Windows NRPT
- SVE-2025-1400 - Reported a set of vulnerabilities in Samsung’s Android apps
- CVE-2025-24016 - Wazuh RCE
- Attended FOSDEM for the first time! Read what my friend Yotam has to say about it
2024
- Found a bunch of vulnerabilities in my phone
- Created Alpaka - a tool for matching classes across different versions of the same APK
- Implemented a stack VM in SQLite