About

I’m passionate about solving complex security challenges across both Offensive and Defensive Security. I enjoy diving deep into vulnerabilities, threat patterns, and secure design principles. "Jack of all".

Blogs

OSCP Study Notes

Offensive Security Penetration Testing Certification

Comprehensive study notes and resources for the Offensive Security Certified Professional (OSCP) certification. Includes methodologies, tools, techniques, and practical examples from my preparation journey.

Penetration testing methodologies
Exploitation techniques and walkthroughs
Privilege escalation strategies

Projects

Evaluating Ad Blockers for Privacy

Privacy Web Browsers Performance

This research project aimed to quantitatively evaluate the effectiveness of popular ad blockers in enhancing user privacy and improving browser performance across major web browsers.

Comparative analysis of ad blocker effectiveness
Privacy enhancement measurements
Browser performance optimization

Data Carver and Password Cracker

Python Hex Fiend Cryptography

Implemented a Python algorithm for efficient extraction of JPEG, PNG, and PDF files from large hexadecimal dump files, providing results in under 20 seconds. Achieving an 80% improvement over manual extraction.

Efficient file extraction from hexadecimal dumps
Python-based brute force and dictionary password cracker
Support for MD5, SHA-256, and SHA-512 hash decoding

Buggy Web-App Exploitation

Penetration Testing N-map Burp Suite

Exploited BuggyWebApplication to identify and attack a wide range of web application vulnerabilities, including OWASP Top 10 and meticulously documented remediation strategies for a comprehensive security assessment.

Comprehensive vulnerability assessment
OWASP Top 10 exploitation techniques
Detailed remediation strategies

Reentrancy Attack Analysis

Smart Contracts Blockchain Security

Analysis of Reentrancy Attack Vulnerabilities in Smart Contracts. This project consists of CryptoMask (wallet) and Intruder's Smart Contract, demonstrating exploitation of vulnerabilities in CryptoMask and securing it.

Vulnerability exploitation demonstration
Implementation of Reentrancy Guard
State Update security implementation

PDF Contract OCR Solution

AWS Python OCR

Python-based OCR solution to extract text from PDF contracts, enhancing text recognition accuracy by 40% and enabling faster data extraction for contract analysis in a telecommunications R&D environment.

40% improvement in text recognition accuracy
Automated extraction from PDF contracts
Optimized for telecommunications industry documents

Automated AWS Data Pipeline

AWS Lambda Athena Python

Automated data pipeline using Python, AWS Lambda, and Athena to extract key fields from large JSON files reducing manual data processing time by 60% and improving data accessibility.

60% reduction in manual data processing time
Serverless architecture with AWS Lambda
SQL-based analytics with Amazon Athena

Privacy-Preserving Data Pipeline

AWS Data Privacy Analytics

Designed and implemented a complete data pipeline on AWS to protect sensitive customer viewing data while still enabling useful business insights for a Dish Network-like environment to analyze regional viewing trends without exposing individual habits.

Privacy-preserving data aggregation
Regional trend analysis without individual exposure
Secure AWS architecture for sensitive data

Experience

Security Engineer

Medline Industries

Feb 2024 - Present

Security Engineer

Dish Network - Member of Scientific staff

June 2023 - Jan 2024

Security Engineer Intern

Dish Network - Member of Scientific staff

May 2022 - Aug 2022

Education

University of Colorado Boulder

M.S. in Cybersecurity Engineering

August 2021 - May 2023

Anna University, Chennai

B.E. in Computer Science

August 2017 - May 2021

Certifications

CompTIA Security+

CompTIA | 2023

Certified Ethical Hacker (CEH)

EC-Council | 2023

Publications

šŸ“„ A Bird's Eye View on Lightweight Scalable Blockchain in the Platform of IoT

Published in: International Research Journal of Engineering and Technology (IRJET), 2020

šŸ”— Read the Paper

Accomplishments

šŸ† Best Intern - Dish Network (2022)
Won the prestigious DISH-CPAW Winning award for upholding company values among 75 Summer Interns.

šŸŽ“ Amy Barnes Frey Fellowship (Feb 2023)
University of Colorado Boulder

Contact

Email: np.roshan@outlook.com