ndevtk Profile Banner
NDevTK Profile
NDevTK

@ndevtk

Followers
1K
Following
822
Media
8
Statuses
317

Still pretending to be a security researcher.

Joined September 2021
Don't wanna be here? Send us removal request.
@ndevtk
NDevTK
23 days
My YouTube channel is now un-deprecated 🎉.Android lock screen data leak Minecraft video PoC can now be found at
0
0
4
@ndevtk
NDevTK
30 days
RT @shhnjk: LOL, my YouTube account/channel got terminated, and all PoC videos are gone 😂.
0
4
0
@ndevtk
NDevTK
2 months
RT @deryilz: 🔥Blog post is up! How extensions could exploit JS bindings to use webRequestBlocking prior to Chrome 118:. .
0
17
0
@ndevtk
NDevTK
2 months
Been automating chromium security research using AI agents with codebase learning, VRP insights and research tracking tools. While the agent will remain private there's a nice tool for interfacing with chromium services now with V8 support 🥳.
Tweet card summary image
github.com
Command to list files in directory Support V8 for file lookup Support devtools for file lookup Support webrtc for file lookup ...etc
0
2
13
@ndevtk
NDevTK
2 months
0
0
1
@ndevtk
NDevTK
3 months
OriginMarker (Origin dependent marker) version 1.4 chrome extension is released now with pre-set Markers for common websites strangely not given up with the extension yet.
0
0
1
@ndevtk
NDevTK
3 months
¯\_(ツ)_/¯.
@VBarraquito
Jose Rodriguez
3 months
“Leaks sensitive (if user disables notification content on lockscreen) app contents like discord messages” and even WhatsApp or Telegram chats, It’s possible yet, It’s still without fixing on Android 16.
0
0
1
@ndevtk
NDevTK
3 months
Used an LLM to create extra themes for I noticed the base64 theme was to easy to read so there's now a emoji option which further encodes the output.
ndevtk.github.io
Vulnerabilities affecting the web platform
1
0
2
@ndevtk
NDevTK
4 months
Decided to skip testing and deploy the following: the console.log now has a space :) Shortcut partitioning, a threat model I made up. added a feature to ask for permission. API just crashes 🦆.
1
2
15
@ndevtk
NDevTK
5 months
Quack Quack Quack my legacy Minecraft mod is now open source I still don't know Java just search for "intent://" URLs. 🦆.
Tweet card summary image
github.com
A Minecraft mod. Contribute to NDevTK/MCMod development by creating an account on GitHub.
0
0
3
@ndevtk
NDevTK
5 months
Generic fixed postMessage XSS on OKX cryptocurrency exchange
1
6
42
@ndevtk
NDevTK
5 months
It appears with Gemini 2.5 pro creating an LLM wiki for chromium security research is a lot more practical. Does anyone want to collaborate on this? in return you may find a bug! Otherwise I will go back to the random post about XSS system.
0
1
5
@ndevtk
NDevTK
5 months
Testing the new Chrome ai.summarizer API for the summarizer theme on its patched so that COOP isn't "Connection Orca Protection" but still unreliable.
0
0
3
@ndevtk
NDevTK
6 months
My NEW favorite popunder!.
@RenwaX23
‌Renwa
6 months
@ndevtk @J0R1AN @PaulosYibelo Reported to Chrome but won't be patched that soon.
0
0
12