Page-cache corruption bugs are unusual because they can turn read access into the ability to modify the in-memory contents of file-backed pages, enabling local privilege escalation without changing data on disk. After Dirty COW, Dirty Pipe, Copy Fail, Dirty Frag most variant hunting focused on
syntactic copies of known paths — grep for the function name, find the clone, move on.Rajat Gupta finds and exploits vulnerabilities across browsers, Linux kernel, and Windows kernel drivers, and develops systems for systematic vulnerability discovery at scale. His variant analysis methodology turned one kernel root cause into three universal local privilege-escalation exploits. Previously, he built Popkorn with UCSB Shellphish — discovering four privilege-escalation vulnerabilities in Windows kernel drivers using targeted symbolic execution (ACSAC 2022), co-authored browser security research with Georgia Tech SSLab, and competed in DEF CON CTF Finals three years running. When not breaking kernels at Qualcomm, he's hunting perfect backhand loops at the table tennis table, trails with elevation gain, or the spiciest dish on the menu.