Security analyst at CyberProof (UST) — VAPT and red team. I spend most of my time on offensive tooling, Windows internals, and research that sits at the intersection of malware development and systems programming. OSCP certified; currently working through OSEP, MalDev Academy, and OST2 Arch1001.
Project WARP: Shellcode staging via D3D12 UPLOAD heap memory, exploiting EDR blind spots in GPU VRAM. Built on top of a study of DirectX 12 shared heap semantics, WARP software renderer internals, and GPU warp scheduling.
GossipC2: C2 infrastructure using the Ethereum mempool as a dead-drop transport layer. No persistent on-chain footprint, no C2 server IP exposed. ML-KEM (FIPS 203) key exchange, Double Ratchet for forward secrecy, TOTP-derived address rotation, per-implant wallets for unlinkability. TPM-sealed key material, implemented in Rust.
- FEV — Source-level C/C++ obfuscator built on Clang LibTooling
- Fiber-based shellcode loader in Rust
- grepWin DLL sideloading chain
- Published: Ethereum DevP2P TDOA triangulation (CODE AI 2026)
Rust · C/C++ · Win32 · x86-64 asm · Python
QEMU/KVM lab · WinDbg · Ghidra · Frida
