A collection of security tools, research, and experiments. These range from purpose-built offensive tooling to vulnerability research and AI security explorations.


๐Ÿ” MCP Attack Surface Research

Category: AI Security / Vulnerability Research

A deep-dive into the security implications of the Model Context Protocol (MCP) โ€” the rapidly-adopted standard for connecting AI agents to external tools and data sources. Research covers tool poisoning, cross-server shadowing, rug pull attacks, and practical mitigations.

๐Ÿ“„ Read the full writeup


๐Ÿ› ๏ธ Custom Wordlist Generation Framework

Category: Penetration Testing / Tooling

A methodology and toolset for building targeted, high-value wordlists for penetration testing engagements โ€” combining OSINT techniques, web scraping, and mutation strategies to maximize credential attack effectiveness against specific targets.

๐Ÿ“„ Read the writeup


๐Ÿ“š OSWE Preparation Curriculum

Category: Research / Education

A curated study path and resource collection developed during preparation for the OffSec Web Expert (OSWE) exam, covering white-box web application analysis, source code auditing, and exploit chain development. Includes commentary on AI-assisted study methodologies.

๐Ÿ“„ Read the prep guide
๐Ÿ“„ Read the exam review


๐Ÿค– Offensive Security ร— AI/ML

Category: Research / Emerging Threats

Ongoing research into the intersection of offensive security tradecraft and machine learning โ€” covering adversarial inputs, LLM attack surfaces, AI agent exploitation, and the implications of ML systems in enterprise environments. Informed by active M.S. Computer Science (AI/ML) coursework.

๐Ÿ“„ Read the overview post


More tools and research in progress. Follow on GitHub or LinkedIn for updates.