Exploit & attack-surface analysis
I validate reported proofs of concept and examine the trust boundaries around validators, bridges, minting flows, and smart contracts.
OVERVIEW 04 / CYBERSECURITY
My security background includes validating reported exploit proofs of concept, examining blockchain infrastructure and contracts, and building security lab environments. I combine source analysis with a view of the wider system: the service, its dependencies, and its trust boundaries. My current projects extend that work into threat intelligence and controls for AI-assisted operations.

THE ENGINEERING SCOPE
Practical capabilities, grounded in professional work and the projects below.
I validate reported proofs of concept and examine the trust boundaries around validators, bridges, minting flows, and smart contracts.
I use static analysis, dynamic testing, and fuzzing to investigate code behavior and support practical remediation.
I work on a security-center project and threat-analysis tooling, connecting research and collected signals to a clearer investigation workflow.
I bring security into platform work through lab isolation, operational checks, access controls, and guardrails for agent-driven workflows.
PROFESSIONAL EXPERIENCE
The parts of my career most relevant to cybersecurity.
APPLIED ENGINEERING
Public repositories and focused overviews of my work. Explore the purpose, implementation, and contribution behind each project.
Infrastructure as code for my OCI and Cloudflare environment, with resources and changes kept understandable in Git.
LiteLLM routing and Cloudflare Zero Trust around the model infrastructure used by my tools and AI workflows.
Self-developed security controls around the Pinax ops-ui agent, focused on the boundary between a request and an operational action.
Agent workflows and QA platforms in my environment, supporting development with code review and behavioral checks.
My current security-center project, alongside work on threat intelligence and static source-analysis platforms.
Source-analysis tooling and attack-surface review, informed by my work on validator systems, bridges, minting, and smart contracts.
NFT deployment projects informed by my blockchain engineering and smart-contract security background.
The operating layer of my environment: Grafana visibility, backups, and workload-specific decisions about updates.