SOC Analyst · Kernel & eBPF Enthusiast · Security Toolsmith
"From raw sockets to SIEM alerts — I go all the way down."
SOC Analyst at CryptoGen Nepal, 3rd-year undergrad at Pokhara University (BSc Cybersecurity). I read kernel source for fun, write detection tools in C and Rust, and think about systems from the hardware registers up.
I build tools to understand systems — not just ship code.
| Layer | Current focus |
|---|---|
| Kernel & eBPF | Linux Kernel Development (Robert Love) · kernel source analysis · Falco / Tetragon / Tracee |
| SOC & Detection | LogPoint & LogRhythm alert triage · FIM policy development · FortiSIEM agent research |
| Tooling | Low-level C/Rust security tools · ARP monitor / spoofer · procmon via /proc |
| AppSec | Web vulns · phishing simulation · RBAC hardening |
yetinelv2 — Mini SIEM
Real-time log ingestion pipeline with a detection engine (signature + threshold + correlation) and multi-platform agents.
simPhish — Phishing simulator
Full-stack Laravel 11 app modeling attacker, victim, and defender perspectives with RBAC.
DNS_TOOL — Raw DNS resolver
Manual UDP packet crafting, RCODE bit masking, Wireshark-validated output. No libraries.
LAN2LANd — TUI file transfer
Written in Rust. Because why not.
PathBuster — Web recon tool
Gobuster-inspired directory brute-forcer.
simple-packet-sniffer — UDP capture & analysis in Python.
[REDACTED] — Kernel & SOC research. Not yet.
SOC Analyst CryptoGen Nepal current
Onsite SOC NCSC Nepal incoming
Cybersecurity Intern Sapience
Vuln Research FortiSIEM bug disclosure & mitigation
CAP — AppSec THM — SOC Level 1 HTB — Holmes CTF Microsoft Student SOC — XDR
NahamCon 2025 — DFIR Hack A Flag 2025 — All Nepal CTF NASA Space Apps 2024

