About

About

Kazuma Matsumoto

This blog is part technical writing, part personal notebook. It covers vulnerability research, AI-assisted security analysis, and offensive security in general.

CVEs

CVE Target Type
CVE-2026-20943 Microsoft Office Click-to-Run elevation of privilege
CVE-2026-29004 BusyBox Heap buffer overflow in DHCPv6 client
CVE-2026-25075 strongSwan Integer underflow in EAP-TTLS AVP parser
CVE-2026-28532 FRRouting Integer overflow in OSPF TE/SR TLV parsers

Interests

  • AI security
  • AI-assisted code analysis
  • Web application security
  • Windows internals
  • Linux internals