$ whoami

Ahmad Abdillah

Incident response · Windows kernel & malware reverse engineering · vulnerability research

// Singapore

  • focusincident response · windows kernel & malware reverse engineering
  • disclosed2 public CVEs — CVE-2026-42972 (Microsoft Hyper-V) · CVE-2025-11156 (Netskope)
  • certsOSED · GNFA
  • toolingAutoPiff · KernelSight · DriverAtlas · driver_analyzer

$ cat ethos.txt

I try to approach my work with ḥusn—to do things with care, honesty, and intention, even when clarity is hard to reach.

This blog is a record of that effort: experiments, questions, half-finished ideas, and the slow process of understanding systems from the inside. Some things resist easy answers. Some paths feel impossible.

I write anyway, in the hope that the act of striving itself has value—and that, somewhere along the way, it helps me do things a little better.