krnick@triage:~$ whoami

JunWei Song 宋駿瑋

Senior Malware Research Analyst
Reverse Engineering  ·  Detection Engineering  ·  Threat Intelligence

0x00 Contact

Email
junwei.song.info@gmail.com
LinkedIn
linkedin.com/in/jweisong
GitHub
github.com/krnick
X
@JunWei__Song
Blog
krnick.github.io/post
Location
Taiwan · GMT+8 · Remote

0x01 Summary

JunWei is a senior malware research analyst at Recorded Future Triage Sandbox, interested in the field of reverse engineering, malware analysis, threat intelligence, and developing tools to aid malware analysis. He has been very involved in the security community, previously leading Quark-Engine and mentoring GSoC under the Honeynet Project.

Outside of work, he volunteers for the PyCon TW community, has been a member of the Review Board since 2020, and served as the PyCon APAC 2022 Program Chair. He is passionate about contributing to the community and helping to organize the PyCon Taiwan program committee.

He also enjoys sharing his security and malware research through talks. He has presented at various security conferences, such as Black Hat Asia, DEF CON BTV, Virus Bulletin, HITB, and ROOTCON.

0x02 Experience

Senior Malware Research Analyst Jul 2025 – Present

Recorded FutureTriage Sandbox · Amsterdam, Netherlands · Remote

Malware Research Analyst Jul 2023 – Jul 2025

Recorded FutureTriage Sandbox

Malware Research Analyst Jun 2022 – Jun 2023

Hatching International B.V. · Amsterdam, Netherlands

Security Engineer Oct 2018 – Mar 2022

Telecom Technology Center (電信技術中心)

0x03 Open Source

0x04 Published Research

Triage Insights — sole author of Recorded Future / Hatching's technical malware-analysis series:

Thesis

0x05 Security Disclosures

0x06 Technical Book Reviews

Served as technical reviewer (審校) for two reverse-engineering / low-level programming books published by DrMaster Press (博碩文化), Taiwan — under my Chinese name 宋駿瑋:

0x07 Talks

Consolidated at github.com/krnick/talks.

2025

2021

2020

2019

0x08 Community

0x09 Skills

Core
Reverse Engineering · Malware Analysis · YARA · Detection Engineering · Config Extraction
Platforms
Android/APK Static Analysis · ELF/PE Analysis · Windows / Linux / macOS
Frameworks
MITRE ATT&CK (Enterprise + Mobile) · APT Research · Threat Intelligence
Programming
Python (CPython contributor) · Go
Leadership
Open Source Maintenance · Mentoring (GSoC) · Conference Program Chair