Penetration Tester
Web, API, AD, and network. Attack chains and the remediation playbook to close them.
Breaking systems. Building defenses.
Penetration tester and security analyst. I find what attackers find first, and write the playbook that stops them.
Two years in enterprise SOC. Two graduate years of research and detection engineering.
Penetration tester and security analyst. Two years across enterprise SOC and VAPT, now researching offensive tooling and detection content.
Web, API, AD, and network. Attack chains and the remediation playbook to close them.
SOC triage, SIEM tuning, threat hunting, IR runbooks. Detections that actually fire.
Hardware, embedded firmware, exploit dev, reverse engineering. Custom tooling and byte-by-byte writeups.
Production-daily, engagement-ready, lab-tested. Filter or search.
Port scan to persistence, and the detections that make it loud.
Two roles, one mission: keep adversaries on the back foot.
Hardware, tooling, and writeups shipped for the field.
Portable, battery-powered multi-radio auditing platform on ESP32-S3. Sub-GHz, 2.4 GHz, NFC, and IR in one handheld. Red team field ops, no laptop required. 3+ hours runtime.
ESP32-S3C++EmbeddedCC1101nRF24L01PN532LittleFS
Corporate homelab, AD, 5+ VMs, GPOs, Kerberos, segmented networks. Ransomware & APT chains end-to-end.
ELK StackActive DirectoryPythonMITRE ATT&CK
Modular CLI SIEM correlation engine in Python, custom log parsing, brute-force / credential / spray detection, cached IP enrichment.
PythonSIEMLog AnalysisDetection Engineering
Python framework, phishing templates + multi-tunnel Cloudflared for deniable red team infra.
PythonBashCloudflared
Searchable reference, 18 attack categories, 396 commands. Copy-on-click, live variable interpolation.
HTMLCSSJS
78 reverse/bind/MSFVenom payloads + listeners + TTY upgrades. Set LHOST/LPORT once, copy in a click.
HTMLJSWeb
Original posts from the lab, the engagement, and the debrief.
From keys to AD CS, CSRs, and auto-enrollment, the full chain, built up with diagrams that finally make ESC1-8 click.
The pipeline, the queries, the metrics that survive a board review, drawn from two years of multi-tenant SOC operations.
Tickets, TGTs, delegation, and every Kerberos attack, built up with diagrams from authentication first principles.
Competitions, CTFs, and credentials.
Top 6% across both seasons, individual and team brackets.
UConn's flagship CTF, web, AppSec, forensics, reversing.
All primary objectives, OT, blockchain, AI prompt-injection, AD pivots.
Hundreds of boxes across HTB, TryHackMe, PicoCTF, OffSec PG. Full OSCP+ kill chain.
Beta tester for the EC-Council CCT cert, evaluated exam materials.
Member, emerging tech and security collab.
Pentest, red team, research collabs, or a chat about a wild bug.