Kurt Boberg — DevOps Manager
I am a security researcher specializing in secure code review, open source vulnerability discovery, and security process automation. I have found (and filed) some bugs: CVE-2018-1000210 : YamlDotNet IDOR deserialization vulnerability CVE-2019-0228 : Apache PDFBox Xml External Entity injection in XFDF parser CVE-2019-10327 : Xml External Entity Injection in Jenkins Maven Pipeline plugin I also occasionally contribute to open-source security tools projects such as ysoserial.net.
Stackforce AI infers this person is a Security Researcher specializing in vulnerability discovery and secure coding practices.
Experience: 14 yrs 6 mos
Skills
- Secure Code Review
- Security Process Automation
Career Highlights
- Expert in secure code review and vulnerability discovery.
- Contributed to notable CVEs in open-source projects.
- Pioneering security process automation at Semgrep.
Work Experience
r2c
Staff Security Researcher (4 yrs 1 mo)
Chegg Inc.
Lead Application Security Engineer (2 yrs 4 mos)
DocuSign
Senior Application Security Engineer (4 mos)
Application Security Engineer (1 yr 10 mos)
Software Engineer (2 yrs 11 mos)
Central Washington University
Student (2 yrs)
Stripes39
Data Analyst (1 yr)
Education
Master of Science (M.S.) at Central Washington University
Bachelor of Arts (B.A.) at University of Washington