About Toby Reynolds

I’m a penetration tester. I develop exploits. I’m a wireless security expert and trainer. I have more than ten years of hands-on research experience. I’ve spent years studying protocols. I’ve also explored binaries and wireless stacks. This site is where I share what I’ve learned.

What I Do

Penetration Testing This includes web applications. It also includes infrastructure. It covers wireless networks. Plus, it has physical security checks.

I help organisations find weak spots. This way, the wrong people can’t take advantage.

Exploit Development — I talk about buffer overflows. I also cover SEH exploits. I also check out egghunters. I look at shellcoding and bypass techniques too. This site’s exploit development series helps you go from a crash to a working shell. It does this step by step.

Wireless Security Research — Wi-Fi has surprising flaws. It’s broken in interesting ways. I study 802.11 attack methods. This includes rogue access points. It also involves collecting PMKID data. I also study EAP downgrade attacks. I look at the misuse of open network encryption. My Wireless Mastery mentorship programme gives these tips. It explains them in detail.

Security Advisories — I follow responsible disclosure. I’ve told vendors about weaknesses in both software and hardware. You can find published CVEs in the Advisories section.

Why This Site Exists

Security research should be free. It shouldn’t be stuck in paywalled PDFs. It should be open for everyone. It also shouldn’t be lost in forgotten slide decks. This site wants to offer quality technical content at no cost. It gives you details. This shows you what occurs at the packet, register, and byte levels.

No filler. No AI-generated fluff. Just the real work.

Get In Touch

Want to talk about training? Do you want to talk about an engagement? Or would you prefer a research partnership? Email me at toby@thexero.co.uk. You can also use the social links on this page.