osipov_ar Profile Banner
Arnold Osipov Profile
Arnold Osipov

@osipov_ar

Followers
1K
Following
2K
Media
66
Statuses
272

Security Researcher @Morphisec | Former - Check Point Research | RE, Malware & Threat hunting | Software Engineer.

Israel
Joined October 2014
Don't wanna be here? Send us removal request.
@osipov_ar
Arnold Osipov
2 years
One day, my automation failed to unpack one of the #CHAES malware samples. I delved deeper to understand the reasons behind the glitch, revealing personal messages and code adjustments along the way. Enjoy the read 😁.
Tweet media one
0
1
11
@osipov_ar
Arnold Osipov
4 days
Wohoo my name is there 🥹.
@secbughunter
Tom Gallagher
5 days
The MSRC team and I are excited up to connect and learn from security researchers and the community at Black Hat & DEF CON this week! If you spot me, I might have a shirt with your name on it. #blackhat2025 #blackhat #defcon @msftsecresponse
Tweet media one
Tweet media two
0
0
3
@osipov_ar
Arnold Osipov
2 months
Proud to share that @smgoreli and my talk, “Signature of Destruction: Outlook RCE Strikes Again”, got accepted to BlackHat Canada (SecTor)!.New Outlook RCE, new vector — details soon. #sectorca @BlackHatEvents
Tweet media one
0
2
0
@osipov_ar
Arnold Osipov
2 months
Yesterday, Microsoft patched two Remote Code Execution vulnerabilities in Outlook that we discovered. 🙃 . 1. CVE-2025-47171 --> 2. CVE-2025-47176 --> ⚠️ More findings on the way — stay tuned.
1
9
59
@osipov_ar
Arnold Osipov
3 months
RT @LNadav: Joining the MCP trend with windbg-ext-mcp 🐛Now you can vibe debugging your Windows kernel:. Example of….
0
12
0
@osipov_ar
Arnold Osipov
4 months
RT @msftsecresponse: Day 2 of #ZeroDayQuest brought together brilliant minds from around the world for more hands-on hacking and meaningful….
0
16
0
@osipov_ar
Arnold Osipov
4 months
RT @msftsecresponse: Day 2 of #ZeroDayQuest brought even more hacking, problem-solving, and unforgettable moments. We then went to Carmine….
0
13
0
@osipov_ar
Arnold Osipov
4 months
Clippy is that you? 🍹🥃. @msftsecresponse #ZeroDayQuest
Tweet media one
0
0
7
@osipov_ar
Arnold Osipov
4 months
RT @msftsecresponse: Day 1 of the Zero Day Quest Onsite Hacking Event is in the books and we’ve kicked off Day 2. We welcomed top security….
0
15
0
@osipov_ar
Arnold Osipov
4 months
RT @smgoreli: Having time off from a long exciting day hacking Microsoft products. With @osipov_ar and @shmuel_uzan at #ZeroDayQuest @msfts….
0
2
0
@osipov_ar
Arnold Osipov
6 months
🚀 Thrilled to share that I’ve been invited to Microsoft’s Zero Day Quest event in Redmond, Washington in 2025! 🔥. Over the past year, I’ve reported 4 RCE vulnerabilities and several other security issues to MSRC. Big thanks to @msftsecresponse for organizing this unique event!
Tweet media one
1
0
3
@osipov_ar
Arnold Osipov
7 months
RT @morphisec: 📩 @osipov_ar & @smgoreli have uncovered and aided Microsoft in patching another Outlook vulnerability, CVE-2025-21357. 🔎 Se….
Tweet card summary image
morphisec.com
Morphisec researchers have discovered an important Microsoft Outlook vulnerability. Read on for CVE-2025-21357 details and technical impact.
0
2
0
@osipov_ar
Arnold Osipov
1 year
Don't forget to patch - CVE-2024-38173.Our latest RCE discovery in Outlook. #CVE #RCE.
0
1
7
@osipov_ar
Arnold Osipov
1 year
“Chilling” out before our talk with @smgoreli 🔥 @defcon #Defcon32
Tweet media one
0
2
6
@osipov_ar
Arnold Osipov
1 year
Super excited to get into the Q2 top 10 Office researchers! 🎉 @msftsecresponse - Thank you for the opportunity 🙏 #CyberSecurity #Research #Microsoft
Tweet media one
1
0
1
@osipov_ar
Arnold Osipov
1 year
Check out this #phishing #PDF posing as a #CrowdStrike updater for Windows hosts. It originates from the #Handala_Machine and ultimately delivers a #wiper using a variant of #CypherIT. PDF: cdfa4966d7a859b09a411f0d90efbf822b2d6671.ZIP: 66fbe2b33e545062a1399a4962b9af4fbbd4b356
Tweet media one
Tweet media two
Tweet media three
2
39
84
@osipov_ar
Arnold Osipov
1 year
#Defcon we are coming!.Second RCE in outlook just released - #CVE-2024-38021. Stay tuned for more 🔥.
@smgoreli
Michael.Gorelik
1 year
🚨 CVE-2024-38021 RCE in Outlook!🚨 .🌟 August is going to be HOT in Vegas, so don't miss our @defcon presentation "Outlook Unleashing RCE Chaos: CVE-2024-30103 & CVE-2024-38021." . Does not require authentication!.@osipov_ar , @shmuel_uzan Great work!.
0
2
3
@osipov_ar
Arnold Osipov
1 year
RT @smgoreli: Join me, @osipov_ar and @shmuel_uzan at #DEFCON32 this year for our presentation, "Outlook Unleashing RCE Chaos: CVE-2024-301….
0
4
0
@osipov_ar
Arnold Osipov
1 year
Check out our latest research on the #Mispadu (aka #URSA) latest campaign.
0
2
10