Projects

A collection of security engineering projects, homelab builds, detection rules, and open-source contributions.

Cloud Security

AWS, GCP, and multi-cloud security projects

Cross-Cloud Role Sanity Checker

Cross-Cloud Role Sanity Checker

Security-focused utility designed to validate AWS IAM roles and GCP service accounts before initiating cross-cloud data transfers.

PythonAWSGCPIAM+1
Case Writeup: AWS IAM Role Backdoor via Stratus Red Team

Case Writeup: AWS IAM Role Backdoor via Stratus Red Team

Investigation of a AWS IAM Role Backdoor via Stratus Red Team.

AWSIAMBackdoorCloud Lab

Detection Engineering

SIEM, detection rules, and log analysis

Log Ingestion Workflow with Splunk and Elastic

Log Ingestion Workflow with Splunk and Elastic

Log ingestion, detections, attack steps, queries and dashboards following simulated attacks on Windows 10 virtual machine.

SPLSysmonKibanaSplunk+1
Yara & Sigma Detection Rules Repo

Yara & Sigma Detection Rules Repo

Identified multiple malware families, developed detections to successfully identify malicious files and activity within devices.

YARASigmaPowerShellMalware Analysis+1

Security Research

Threat hunting, malware analysis, and security tooling

Threat Hunting from Malicious Traffic in PCAP

Threat Hunting from Malicious Traffic in PCAP

Analyzed multiple PCAP files to identify malicious activity such as ransomware, beaconing etc. and wrote Suricata signatures to catch them.

ZeekSuricataWiresharkPCAP+1

Homelab

Building enterprise infrastructure for learning and testing

Homelab Part 1: Foundation — Hardware, Networking, and Proxmox
Medium

Homelab Part 1: Foundation — Hardware, Networking, and Proxmox

Building the foundation of a security-focused homelab with enterprise hardware, network segmentation, and Proxmox virtualization.

ProxmoxNetworkingVLANsVirtualization+1
Homelab Part 2: Core Infrastructure — Active Directory, Clients, and SIEM
Medium

Homelab Part 2: Core Infrastructure — Active Directory, Clients, and SIEM

Setting up Active Directory domain services, Windows clients, and integrating a SIEM for centralized logging and monitoring.

Active DirectoryWindows ServerSIEMGroup Policy+1

Want to collaborate or learn more about a project?