I'm a cybersecurity student and researcher based in Nagpur, Maharashtra, India, working across penetration testing, red teaming, IoT/hardware security, malware research, and CTF design. I build my own offensive tooling from scratch rather than just running existing ones β from custom wireless recon firmware to forensic drive sanitization software.
- π Enrolled in the TCS iON Industry Honour Course on Information Security
- π οΈ Previously interned at VCF Cyber Solutions β data sanitization & malware tooling
- π― Currently working toward OSCP, and actively learning DFIR / threat hunting
- π© Strong background in IoT hardware β WiFi routers, ONT units, ESP32/ESP8266, ESP32-S3, Raspberry Pi variants
Pineapple-style wireless information-gathering platform, built from scratch across two independent codebases β ESP32-S3 (PlatformIO) and BW16/Realtek Ameba (arduino-cli) β with a third ESP32-C6 target added since.
- Simultaneous WiFi + BLE scanning on a single board
- Multi-board Main/Subordinate architecture with live relay over WebSocket (no onboard storage β browser-side capture and export)
- Live dashboard: selectable capture scope, handshake capture, evil-twin detection/simulation, per-device status tracking
- Built to support wireless-security awareness seminars
Python-based sanitization engine built for deployment as a bootable Linux Mint ISO for institutional clients.
- Implements Zero-Fill, DoD 3-pass/7-pass, and Gutmann 35-pass wipe standards
- ATA Secure Erase and NVMe sanitize paths with JSON audit certificate generation
- Debugged real hardware failure modes (USB-SATA bridge ioctl instability, timeout miscalculation against drive-reported estimates)
- In progress: compiled binary packaging and auto-run bootable ISO
Original CTF box built and published on HackMyVM.
- Exploit chain: CVE-2024-23897 (Jenkins arbitrary file read) β CVE-2024-1086 (nf_tables UAF privilege escalation)
Automated news aggregation and classification agent, deployed on AWS with cron scheduling.
- Migrated LLM backend from Gemini to Groq (Llama 3.3 70B / Mixtral 8x7B) after hitting rate limits
- Companion lightweight build: RSS-to-Telegram summarizer bot
Full-partition forensic dump and analysis of a MediaTek device using mtkclient.
- Confirmed valid ext4 superblock on
userdata.bin, mounted read-only for analysis - Analyzed fscrypt key hierarchy; identified hardware-bound TEE key protection (no PIN-derived KDF), correctly ruling out offline decryption in favor of on-device PIN recovery
| Domain | Tools / Tech |
|---|---|
| Offensive Security | Burp Suite, Metasploit, Nmap, Wireshark, VAPT methodology |
| IoT / Embedded | ESP32, ESP32-S3, ESP32-C6, ESP8266, BW16 (Realtek Ameba), Raspberry Pi, PlatformIO, arduino-cli |
| Forensics | mtkclient, filesystem/fscrypt analysis, drive sanitization standards (DoD, Gutmann) |
| Programming | Python, C/C++ (embedded), Bash, Node.js |
| Systems | CachyOS (daily driver), Kali Linux, Linux Mint (ISO builds) |
| Other | Socket.IO/WebSocket real-time systems, LLM-backed tooling (Groq, Ollama) |
- Design and publish original CTF boxes (see Gravitas above)
- Active on TryHackMe and OverTheWire
- LinkedIn: mohammad-husain-ajani
- Instagram: @mohammed_ajani
- Email: mohammedajani18@gmail.com



