Auditing Korean installed-security plugins: a methodology

Why the browser-to-local-daemon architecture behind Korean banking security plugins (TouchEn/CrossEX/MagicLine-class) is an interesting attack surface, and the framework I use to approach it — without leaking any unverified finding.

2026-07-05 · 8 min · 1523 words · Doyoung Kim

Starting a reverse-engineering research log

Why this blog exists and what to expect: root-cause writeups of vulnerabilities I research and disclose responsibly.

2026-07-04 · 1 min · 99 words · Doyoung Kim