I write technical analyses of public samples: static/dynamic analysis, IOCs, MITRE ATT&CK mapping, and the corresponding YARA rule. 📂 malware-analysis-writeups — comprehensive write-ups
📂 yara-rules — rules organized by technique, each linked to a real-world analysis
Ghidra · x64dbg · REMnux · FLARE VM · Volatility Java · C/C++ · Python · Assembly (x86/x64)
- Execution chain reconstruction and evasion technique identification
- Process injection, DLL injection, process hollowing
- Covert communication and C2 infrastructure
- Incident timeline reconstruction
Sentinel Vector — independent technical research applied to Cyber Due Diligence, M&A, and Private Equity: cyber risk, supply chain exposure, technical debt, and validation of security/AI claims.
terminal-hacker-portfolio— interactive terminal-style portfolio (TypeScript)
Open to conversations with security teams, forensic investigators, and organizations seeking visibility into real-world threats.