Jabari "Bari" Lucien
Wireless Security Researcher
About
Most devices don't know they're being watched. I built my research practice around that idea — starting with passive wireless monitoring to map what's broadcasting in any given environment without ever connecting to a network. From wardriving rigs running headless on a Raspberry Pi to WiFi monitors that detect deauth attacks and RF jamming in real time, the work is about making the invisible visible.
That same curiosity scales up. Vader lets me scan entire countries' IP space using BloomFilters to stay memory-efficient across hundreds of millions of addresses, and Maul takes those results and maps them fully — reverse DNS, SSL cert extraction, open ports across all 65,535, subdomain brute-force. The question is always the same: what's actually exposed out there?
IoT is where it gets concrete. Consumer devices people physically trust — smart locks, IP cameras, smart plugs — often have no real security model underneath. I buy them, audit them, and find out what happens when an attacker does the same. That work produced CVE-2025-15474: a BLE smart lock that accepts unlimited unauthenticated connections and can be locked out by anyone within range, indefinitely.
Skills
Projects
Wardriving tool for passively detecting AI-powered license plate reader cameras — Flock Safety, Raven, Penguin, PigVision — via BLE and WiFi probe requests. Dual-mode scanner with channel hopping across 2.4GHz and 5GHz. Kismet integration included. Built amid Florida's legislative push to ban Flock cameras.
Memory-efficient mass IP scanner using BloomFilters to map entire countries and ASNs. 250 threads, preset port modes for cameras, IoT, routers, databases, and remote access. Pairs with Maul for full infrastructure enumeration.
BLE recon and anomaly detection in C++. Sniffer + Monitor modes with weighted RSSI scoring.
Passive RF home monitor — deauth detection, jamming detection via asymmetric EWMA, and tiered push alerts. Textual TUI.
Portable wardriving rig — Pi 5, 4x ALFA adapters, live web dashboard, auto-start on boot.
Android app mapping 101,085 ALPR cameras. Full-screen alert when passing a Flock camera. 100% offline.
Infrastructure mapping — PTR records, SSL certs, subdomain + directory brute-force. Pairs with Vader.
IoT attack toolkit — BLE GATT fuzzing, Evil Twin, deauth, beacon flooding, and UART exploitation.
CVE / Research
Discovered and disclosed an unauthenticated DoS vulnerability. The device uses a static MAC and accepts unlimited unauthenticated BLE connections — an attacker can flood the queue and lock out legitimate users every 10–15 seconds with zero credentials.
802.11 IE mutation fuzzing targeting driver-level parsing bugs via malformed association, probe, auth, TWT, and block ack frames across 4 ALFA adapters. Paired with Dropbear SSH brute-force on port 20001 using default IoT credentials.
GitHub →Auth bypass and DoS on consumer BLE smart locks via unauthenticated connection exploitation.
GitHub →Improper access control — unauthorized device control without pairing or authentication.
GitHub →Adorcam Indoor Camera exposes BusyBox Telnet on TCP/23 with cleartext auth. Firmware 1.00.11.
GitHub →Platform
I create cybersecurity content — tool demos, original research, and security explainers — across YouTube, Instagram, and LinkedIn.
Contact
Let's Talk
Open to security research collaborations, responsible disclosure partnerships, and content opportunities.