Ab0ut me
| Name: | Mikhail Medvedev | 
|---|---|
| Pseudonym: | M3ik Shizuka | 
| Start of activity: | 2011 year | 
| Languages: | Russian (Native), English (B1) | 
| Email: | m3ikshizuka@gmail.com | 
| Telegram: | @M3ikShizuka | 
| LinkedIn: | @M3ikShizuka | 
| Twitter: | @M3ikShizuka | 
| Facebook: | @M3ikShizuka | 
| VK: | @M3ikShizuka | 
| YouTube: | @M3ikShizuka | 
| GitHub: | @M3ikShizuka | 
| Credly: | @M3ikShizuka | 
| Instagram: | @M3ikShizuka | 
| Note: | I'm glad to meet like-minded people. Feel free to contact me. | 
Occupation
Current position
- Software Engineer C++ at МойОфис (ООО «Новые Облачные Технологии»)
Other areas of activity
- Vulnerability Researcher, Reverse Engineer, Software Engineer
Accomplishments
- 
                      
                          Microsoft MSRC 2022 TOP 100 Most Valuable Researchers (MVRs)
                          
 [2022 MVR №63 (Leaderboard 2022 Annual): MIKHAIL MEDVEDEV (M3IK SHIZUKA)]
- Check out the scrolling MVR list that played at the MSRC Black Hat party!
- 
                      
                          2022 MVR (Most Valuable Researcher) Impact Badge Issued by Microsoft Security
                          
 Recognition for work that has had a high impact
- 
                      
                          2022 MVR (Most Valuable Researcher) Accuracy Badge Issued by Microsoft Security
                          
 Recognized for 100% accuracy and high quality of conducted and provided research
- 
                      
                          Microsoft MSRC 2021 Q3 TOP Security Researchers (Third quarter of 2021)
                          
 [2021 Q1 №20 (Leaderboard 2021 Q1): MIKHAIL MEDVEDEV (M3IK SHIZUKA)]
- 
                      
                          Congratulations to the Top MSRC 2021 Q3 Security Researchers!
                          
 [2021 Q1 №20 (Leaderboard 2021 Q1): MIKHAIL MEDVEDEV (M3IK SHIZUKA)]
- Congratulations to all the researchers recognized in this quarter’s MSRC 2021 Q3 Security Researcher Leaderboard!
- CVE-2022-21907 CVSSv3.1: 9.8/10 (CRITICAL) ー Microsoft Windows HTTP Protocol Stack Remote Code Execution Vulnerability [RCE, Zero-Click, Wormable] in Windows kernel
Education
| Higher education institution: | Federal state budgetary educational institution of higher education «Moscow Polytechnic University» | 
|---|---|
| Academic degree: | Baccalaureate | 
| Specialty: | 03.09.01 Computer science and computer engineering | 
| Period: | 2015-2019 | 
Courses
- Cisco Networking Fundamentals ー 2018
- Cisco IT Essentials Certification ー 2016
Publications
Expert assessment
Mentions and references
- 
                        Mentions of me and my research CVE-2022-21907 - 
                            
                                Топ 10 самых интересных CVE за январь 2022
                                
 Subsection- CVE-2022-21907 — wormable уязвимость удаленного выполнения кода (RCE) / отказа в обслуживании (DoS) в HTTP Protocol Stack
 
- First Patch Tuesday of 2022 Brings Fix for a Critical 'Wormable' Windows Vulnerability
- Microsoft Patch Tuesday January 2022 comes with 96 security updates
- Microsoft has released its Patch Tuesday and fixes several so-called “critical” vulnerabilities
- The first patch on Tuesday 2022 will result in a critical “wormable” Windows vulnerability fix
- Microsoft closes some serious vulnerabilities in Windows and Windows Server – IT Pro – News
- First Patch Tuesday Of 2022 Brings Repair For A Important ‘Wormable’ Home Windows Vulnerability
- First Patch Tuesday of 2022 Brings Fix for a Critical ‘Wormable’ Windows Vulnerability
- Microsoft closes some serious Windows and Windows Server vulnerabilities – IT Pro – News
- Microsoft shut down some serious vulnerabilities in Windows and Windows Server – IT Pro – News
- Microsoft dicht aantal ernstige kwetsbaarheden in Windows en Windows Server
- Microsoft verhelpt kritiek Windows-lek dat computerworm mogelijk maakt
 
- 
                            
                                Топ 10 самых интересных CVE за январь 2022
                                
- 
                        CVE-2022-21907 is trending on Twitter with audience size - Jan 12, 2022 Top 3 trending CVEs on Twitter Past 24 hrs: CVE-2022-21907: 3.4M Past 7 days: CVE-2022-21907: 3.4M
- Jan 14, 2022 Top 3 trending CVEs on Twitter Past 24 hrs: CVE-2022-21907: 298.9K Past 7 days: CVE-2022-21907: 5.2M
- Jan 16, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 5.3M
- Jan 17, 2022 Top 3 trending CVEs on Twitter Past 24 hrs: CVE-2022-21907: 230.9K Past 7 days: CVE-2022-21907: 5.6M
- Jan 18, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 5.9M
- Jan 20, 2022 Top 3 trending CVEs on Twitter Past 24 hrs: CVE-2022-21907: 254.2K Past 7 days: CVE-2022-21907: 2.8M
- Jan 21, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.8M
- Jan 22, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.8M
- Jan 23, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.8M
- Jan 24, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.5M
- Jan 25, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.3M
- Apr 15, 2022 Top 3 trending CVEs on Twitter Past 7 days: CVE-2022-21907: 2.1M
 
- 
                        Mentions of my research CVE-2022-21907 - THE JANUARY 2022 SECURITY UPDATE REVIEW
- Microsoft: New critical Windows HTTP vulnerability is wormable
- Microsoft Faces Wormable, Critical RCE Bug & 6 Zero-Days
- Prioritizing and remediating vulnerabilities in the wake of Log4J and Microsoft’s Patch Tuesday blunder
- Patch Tuesday: Microsoft выпустила январские обновления безопасности
- Первые обновления 2022 года: уязвимость с потенциалом червя исправлена в Windows HTTP
- Здравствуй, вторник, новый год
- Microsoft пропатчила шесть 0-day и одну критическую червеобразную брешь
- Microsoft’s January 2022 Patch Tuesday Addresses 97 CVEs (CVE-2022-21907)
- ‘Wormable’ Flaw Leads January 2022 Patch Tuesday
- [PoC] CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability Alert
- Microsoft fixes wormable RCE in Windows Server and Windows (CVE-2022-21907)
- Cyber Security Weekly Briefing 8–14 january
- Someone made page on wikipedia CVE-2022-21907 (not me)
 
