CYBERSECURITY • VAPT • APPSEC • NETWORKING

I break systems so we can build them safer_

Web/App security, offensive research, infrastructure hardening, and clear remediation for real-world impact.

Profile

About Me

I’m a cybersecurity researcher focused on VAPT, secure engineering, and network infrastructure. While I work across web application security and ethical hacking, I am mostly interested in the networking field — configuring, managing, and securing network devices to ensure reliable and secure communication.

Web • API

AppSec focus

CTFs

Labs & write-ups

Cisco Packet Tracer

Three Tier Architecture

I cover the full lifecycle: recon → threat modeling → exploitation → post-exploitation → reporting & fixes. Expect reproducible PoCs, risk-driven impact, and pragmatic remediation plans that reflect engineering realities. My networking passion includes configuring routers, switches, VLANs, and security rules to create robust infrastructures.

Skills

Core Security

  • Web & API Security (OWASP Top 10, business logic)
  • Network Security & Linux Priv-Esc
  • Threat Modeling & Risk Analysis
  • Secure SDLC & Security Code Review

Tooling

Burp Suite Nmap FFUF / dirb sqlmap Metasploit John / Hashcat LinPEAS / WinPEAS Gobuster Wireshark Python Cisco Packet Tracer

Methodologies

  • OWASP Testing Guide / ASVS
  • PTES
  • Reporting: CVSS v3.1, exploit chains, remediation

Projects

A selection of my work from GitHub.

Networking Configurations

Practical networking setups using Cisco Packet Tracer, including VLANs and routing.

Secure Chat System

A Python-based secure chat system implementing basic encryption for privacy.

IP Tracker

Python tool that fetches detailed information about any public IP address.

File Extension Changer

Python script to change the extension/type of any file as required.

Cyber Book Store

A PHP-based online bookstore developed as coursework with basic CRUD functionality.

Full Stack Practice Website

Full-stack practice project using ReactJS, PHP, and HTML/CSS/JavaScript.

Experience

No professional experience yet — currently seeking opportunities to contribute and grow in the cybersecurity field.

Languages I Speak

Nepali

Native / Fluent

English

Professional

Hindi

Conversational

Education

BSc (Hons) — Ethical Hacking & Cybersecurity

Softwarica College of IT & E-commerce • 2023 – Present

Focus: VAPT, networking, secure development, malware basics.

Engagements & Activities

Capture The Flag (CTFs)

  • Hack The Box / TryHackMe labs and tournaments.
  • Write-ups: command injection, JWT bypass, CORS abuses.

Talks / Contributions

  • Workshop: “Web App Attack Chains” (student club).
  • Open-source scripts for PortSwigger lab automation.

Social Media

Contact

Kathmandu, Nepal · Available for projects, internships, and collaborations.