RESUME

Vinay Kumar Rasala

Security Researcher · iOS/macOS Internals · Mobile Reverse Engineering

Profile

Security researcher with 3+ years of professional experience focused on iOS/macOS internals, mobile reverse engineering, runtime instrumentation, and RASP bypasses. Builds tooling for binary analysis, app instrumentation, IPA diffing, and mobile security testing.

Experience

Security Research Associate

May 2023 – Present

Appknox · Bengaluru, India

  • Perform security research and reverse engineering across iOS and Android applications and enterprise APIs, focusing on mobile internals, runtime behavior, and complex application protections.
  • Developed custom Frida-based bypasses and iOS tweaks for RASP and anti-tamper protections, including freeRASP, IOSSecuritySuite, and proprietary in-house implementations. Reverse engineered native binaries with Binary Ninja, Hopper, Radare2, and LLDB.
  • Research Apple platform internals including Mach-O/ARM64, XPC and launchd services, sharingd/AirDrop, ImageIO, and jailbreak execution paths. Build targeted PoCs, harnesses, and patch-diff tooling for vulnerability research.
  • Develop automated security test cases for the Appknox platform, converting manually reproduced attack techniques into product detections for mobile and API security issues.
  • Received the Product Synergy Award (H1 2026) and Security Trailblazer Award (FY 2025, Q2 2025) for contributions to security research, product security testing, and cross-team impact.

Security Research Intern

Oct. 2022 – Jan. 2023

Appknox · Remote / Bengaluru, India

  • Assessed Android and iOS applications for mobile security weaknesses and built hands-on bypasses for SSL pinning, root detection, and jailbreak detection.

Security research
& tooling

usbliter8-fun

Python, ARM64, iBoot, iOS Internals

Extended an iOS 27 tethered jailbreak research environment for A13 devices. Traced boot and userland launch failures through iBoot, launchd, xpcproxy, sandbox, and kernel exec policy to enable on-device research tooling.

ipadiff

Go, Mach-O, IPA, Hermes Reversing

Built an IPA diffing tool for security research that compares Mach-O binaries, application resources, and Hermes bytecode, supporting Hermes reversing and security-focused change analysis across mobile app releases.

Intrascan

Python, Frida, Nuclei

Built a mobile security scanner that executes Nuclei-driven tests from inside an instrumented app context, allowing internal API assessment through VPN tunnels while bypassing SSL pinning.

appstorectl

iOS Internals, Theos, App Store Services

Built a CLI and jailbroken iOS helper that reuses the device's authenticated App Store session to install applications and export decrypted IPAs for static analysis, binary diffing, and reverse engineering.

Technical skills

Research Areas
iOS/macOS Internals, Mobile Reverse Engineering, Android Security, API Security, Vulnerability Research, RASP/Anti-Tamper Bypass
Apple Internals
Mach-O, ARM64, XPC, launchd, iBoot, Jailbreak Research, iOS Tweak Development, LLDB Debugging
Tools
Frida, LLDB, Binary Ninja, Hopper, Radare2, Burp Suite, Theos, Nuclei, Jadx, Git, Docker
Languages
Python, JavaScript, Objective-C, Go, Bash. Working knowledge of ARM64 assembly

Education

JNTUA College of Engineering

2019 – 2023

Bachelor of Technology in Mechanical Engineering

Anantapur, India