The Naked Compiler — Experiment 4: 9,712 Stripped Safety Guards Across 3 Major Codebases

The Naked Compiler — Experiment 4: 9,712 Stripped Safety Guards Across 3 Major Codebases By Shrikant Bhosale · July 2026 TL;DR: I built a binary-level safety scanner and ran it across FRRouting, GCC, and the Linux kernel. I found ~9,712 debug-only assertion guards that exist in source code but disappear in compiled binaries. Then I … Read more

The Naked Compiler — Experiment 3: Binary-Level Scanning on Enterprise Firmware

The Naked Compiler — Experiment 3: Binary-Level Scanning on Enterprise Firmware By Shrikant Bhosale · July 2026 TL;DR: I took the vmf binscan tool from Experiment 1 and pointed it at enterprise firewall firmware — without source access, without debug symbols, without vendor cooperation. The binary scanner detected the same stripped-guard patterns that produced 27 … Read more

The Naked Compiler — Experiment 2: FRRouting Case Study — Two ASAN-Confirmed PoCs

The Naked Compiler — Experiment 2: FRRouting Case Study — Two ASAN-Confirmed PoCs By Shrikant Bhosale · July 2026 TL;DR: I scanned FRRouting (1,359 files, ~100K lines of C) with VMF and found 3,850 real singularities — 114 in the config parser alone. Two of those became ASAN-confirmed heap-buffer-overflows. The debug builds had 37 safety … Read more

Debt Collector Series: CLI Integration

I’ll implement Phase 2: The Projection Engine – a sophisticated multi-dimensional analysis system that validates findings through 5 geometric projection dimensions. Projection Engine Implementation 1. Core Projection Engine (src/engines/projection_engine.py) """ Projection Engine for multi-dimensional finding validation Implements 5 geometric projection dimensions for false positive elimination """ import math from dataclasses import dataclass, field from typing … Read more

Debt Collector Series: Scan a directory

I’ll provide a comprehensive codebase for a security scanning system that can handle millions of lines of code. This is a production-ready implementation with the hybrid C++ engine and multi-language support. Project Structure security-scanner/ ├── src/ │ ├── core/ │ │ ├── scanner.py │ │ ├── pattern.py │ │ ├── result.py │ │ └── config.py … Read more

Debt Collector Series: Appendix E: The iPhone Under the Error Principle

Appendix E: The iPhone Under the Error Principle How Hardware Mitigations Shift Rather Than Eliminate Information Debt Author: Shrikant Bhosale (@debtcollector21) Status: Theoretical projection — no iOS D_e measurements performed Warning: This appendix applies Theorems 0-12 to a platform we have NOT scanned. D_e values are estimated bounds, not measurements. They are hypotheses to test, … Read more

Debt Collector Series: Appendix D: Turing Award Feasibility Analysis

Appendix D: Turing Award Feasibility Analysis Author: Shrikant Bhosale (@debtcollector21) Note: Written July 17 2026. Revisit annually. D.1 The Brutally Honest Answer Current odds of winning the Turing Award for the Debt Collector stack: ≈ 0.000% Not 0.1%. Not 0.01%. Flat zero. This is not false modesty. It is a statement of structural reality: the … Read more

Debt Collector Series: Appendix C: Publications & Track Record

Appendix C: Publications & Track Record Author: Shrikant Bhosale (@debtcollector21) C.1 Published Work Title Type Date Link / Venue “The DCHECK Illusion: Trusted-Path Vulnerabilities in Chrome Mojo” Blog post Jul 13 2026 potatobullet.com “Error Principle: Information Debt as Root Cause” White paper Jul 2026 In preparation “AttackGraph: Formal Exploit Chain Modeling” White paper Jul 2026 … Read more