Personal notes in systems security

I build and break the layers beneath the app.

Murtaza Izzee is a security engineer and researcher working across mobile platforms, firmware, hardware trust, and low-level systems.

Research Papers Writing Code Talks

Selected research

Findings with the whole chain attached.

01Firmware / network boot

U-Boot NFS client

Independently found a pre-auth buffer overflow in U-Boot's NFS client — pointer hijack, NFS state-machine takeover, shellcode delivery, full chain and public PoC. It collided with a private report filed a month earlier, so the CVE went to the other reporter.

Patches are upstream, including a second negative-length bug in nfs_read_reply() found on the way.

Read the exploit chain and PoC
02Hardware / fault injection

Hardware wallets

Voltage fault injection to bypass RDP2 read-out protection on STM32F2; extracted seeds off bootrom startup. Trezor One and Model T.

03Device integrity

Trusted execution for payments

Named inventor on a U.S. patent covering device integrity and trusted-execution isolation for payment systems.

Public talk

Mach0 and the App Store.

Bugcrowd LevelUp 0x03

Binary formats, application metadata, and what a public app artifact can tell you.

Watch the talk

About

Fifteen years near the trust boundary.

Murtaza Izzee is a security engineer whose work has crossed mobile threat signals, payment-terminal hardware, firmware, secure boot, attestation, trusted execution, offensive research, and verification-gated AI systems.

M.S. Information Security, NYU Tandon. Founding security engineer at SourceDNA (YC S15), acquired by Apple.