- π Hi, Iβm @Shadrack2023 Cybersecurity Analyst | Penetration Tester | Security Researcher | Leader
π‘οΈ About Me I'm a passionate and hands-on Cybersecurity Analyst with a strong focus on penetration testing, vulnerability assessments, and red team operation. With a background as a High School Captain and current Campus Security Lead at Meru University, I blend technical expertise with leadership and communication skills. I thrive on breaking things (ethically), learning from real-world CVEs, and building proof-of-concepts for security flaws. From external VAPT engagements for financial institutions to API security testing for SaaS platforms, I enjoy every layer of the security stack.
π οΈ Skills & Focus Areas
- Penetration Testing (Network, Web, AD, APIs)
- Vulnerability Assessment & Reporting
- Active Directory Attacks (Kerberoasting, Enumeration, Relay Attacks, Active Directory Certificate Service Attacks)
- Internal Network Assessments
- API Security Testing & Endpoints Fuzzing(Postman & BurpSuite)
- Linux (Kali) & Windows Security Environments
- Python & Bash Scripting for Automation
- CTF Solving & Offensive Security Research
π Leadership & Community Roles
- π High School Captain β Leading with discipline, coordination, and responsibility from a young age.
- π‘οΈ Campus Security Lead β Meru University**
Driving cybersecurity awareness, hosting workshops, and mentoring upcoming ethical hackers on campus.
- Liberty Life VAPT --> Internal & External β Full Active Directory and internal app penetration testing.
- Botus Tech Inc. Internship Projects β External VAPT, API security audits (including OpenAPI exposures and .git directory dumps).
- Kerberoasting and AD Enumeration Labs β Using tools like BloodHound, Certipy, Responder, CrackMapExec, and more.
- Madison VAPT --> Internal & External
- API Endpoint Fuzzing for IDOR and Auth Bypass
- Custom CVE Exploits β Including CVE-2025-24071 and CVE-2025-24996.
π Currently Learning
- Advanced Active Directory Attacks
- Kerberos Relay Techniques
- Offensive Security Certifications Path (OSCP/OSEP)
- Cloud Penetration Testing
- API Security Deep Dive
β¨ Tools I Work With
Kali Linux | Burp Suite | Nmap | Wireshark | Metasploit | BloodHound | Impacket | Responder | Certipy | CrackMapExec | Gobuster | SQLMap | Python | Bash | Netcat | Docker | Git -------> etc
π¬ Let's Connect
- Email: shageee2023@gmail.com
- πΌ LinkedIn: www.linkedin.com/in/shadrack-mwabe-bb7a8a2b1
β‘ Fun Fact:
"The flag, dear brutus, is not in our stars... but in our skills to find vulnerabilities where others see none."