About
My name is Csaba Fitzl or also known as "theevilbit", which comes from RFC 3514.
In the beginning of the third millennium I spent endless time in the chairs of a university. I quickly realized that math is not my thing, and was very grateful that I did not pick up astronomy as I originally considered. But after lots of boring and a few interesting classes I finally graduated in 2006 as a computer engineer. I wrote my thesis about databases, and wanted to get a job close to that topic... so obviously I got one in networking.
I have spent two years playing customer service for Cisco Wide Area Network technologies, dealing with some truly ancient technologies like ISDN, modem AT commands to just name a few. The entire Hungarian Cisco TAC was eventually laid off, which was not a great thing, but it turned out to be better.
I got a job at Big Oil, and I have worked for 6 years as a network engineer, troubleshooting and designing big networks. Like, really big! BGP is still close to my heart.
Then I took a Certified Ethical Hacker (CEH) course, which truly changed my life. I got into cyber security, leaving routers and switches once and for all, and now they are only a distant memory. This career change involved tons of learning. So much, that I decided never to do it again, as it required an insane amount of time investment. Kids were not around yet, and I was young, so I could easily spend 3-4 late nights per week in the OSCP lab, struggling.
I have worked for six years as a blue teamer focusing on network forensics and malware analysis. I still believe that defense is a totally different skillset from offense, yes there are overlaps, but still very different. While offense mostly hacks stuff, defense has to deal with extreme amount of data, and find the bad stuff in it.
Eventually I managed to leave that behind and got to our red team. That was fun, to say the least. Defense bypasses became my thing.
Meanwhile I got a Mac, and started to learn about its security. There was close to no documentation, only some blog posts, conference talks. It felt like the wild west. I got so invested in it, that I decided that I want to focus on that technology only.
I got to work for OffSec and developed the EXP-312: Advanced macOS Control Bypasses course. If you think writing training is easy, I'd suggest giving it a try. It was a fun period; I learned a ton about writing technical content, but everything comes to an end, and I left.
Currently I'm working for Iru (formerly Kandji) as a Principal macOS Security Researcher. I mostly do vulnerability research now and feed that knowledge into our EDR product.
I also started to miss writing training so I teamed up with Gergely Kalman and we developed a brand new macOS Vulnerability Researcher training, which we offer live now.
During my years in cyber I gave talks/workshops at various international IT conferences, including Troopers, SecurityFest, DEFCON, BlackHat USA, MacSysAdmin and Objective By The Sea.
I spend my free time with the family, hiking or trail running in the mountains. So much that I started the UIMLA International Mountain Leader training.
My old blog is here: https://theevilbit.blogspot.com/
Other places where you can find me: