Skip to content
View Shadrack2023's full-sized avatar

Block or report Shadrack2023

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Shadrack2023/README.md
  • πŸ‘‹ Hi, I’m @Shadrack2023 Cybersecurity Analyst | Penetration Tester | Security Researcher | Leader

πŸ›‘οΈ About Me I'm a passionate and hands-on Cybersecurity Analyst with a strong focus on penetration testing, vulnerability assessments, and red team operation. With a background as a High School Captain and current Campus Security Lead at Meru University, I blend technical expertise with leadership and communication skills. I thrive on breaking things (ethically), learning from real-world CVEs, and building proof-of-concepts for security flaws. From external VAPT engagements for financial institutions to API security testing for SaaS platforms, I enjoy every layer of the security stack.

πŸ› οΈ Skills & Focus Areas

  • Penetration Testing (Network, Web, AD, APIs)
  • Vulnerability Assessment & Reporting
  • Active Directory Attacks (Kerberoasting, Enumeration, Relay Attacks, Active Directory Certificate Service Attacks)
  • Internal Network Assessments
  • API Security Testing & Endpoints Fuzzing(Postman & BurpSuite)
  • Linux (Kali) & Windows Security Environments
  • Python & Bash Scripting for Automation
  • CTF Solving & Offensive Security Research

πŸ† Leadership & Community Roles

  • πŸ… High School Captain – Leading with discipline, coordination, and responsibility from a young age.
  • πŸ›‘οΈ Campus Security Lead – Meru University**
    Driving cybersecurity awareness, hosting workshops, and mentoring upcoming ethical hackers on campus.

πŸš€ Recent Projects & Labs

  • Liberty Life VAPT --> Internal & External – Full Active Directory and internal app penetration testing.
  • Botus Tech Inc. Internship Projects – External VAPT, API security audits (including OpenAPI exposures and .git directory dumps).
  • Kerberoasting and AD Enumeration Labs – Using tools like BloodHound, Certipy, Responder, CrackMapExec, and more.
  • Madison VAPT --> Internal & External
  • API Endpoint Fuzzing for IDOR and Auth Bypass
  • Custom CVE Exploits – Including CVE-2025-24071 and CVE-2025-24996.

πŸ“š Currently Learning

  • Advanced Active Directory Attacks
  • Kerberos Relay Techniques
  • Offensive Security Certifications Path (OSCP/OSEP)
  • Cloud Penetration Testing
  • API Security Deep Dive

✨ Tools I Work With

Kali Linux | Burp Suite | Nmap | Wireshark | Metasploit | BloodHound | Impacket | Responder | Certipy | CrackMapExec | Gobuster | SQLMap | Python | Bash | Netcat | Docker | Git -------> etc


πŸ’¬ Let's Connect


⚑ Fun Fact:

"The flag, dear brutus, is not in our stars... but in our skills to find vulnerabilities where others see none."


Popular repositories Loading

  1. git-test git-test Public

  2. Shadrack2023 Shadrack2023 Public

    Config files for my GitHub profile.

  3. Cyber_Projects Cyber_Projects Public

    Cybersecurity projects

    Python

  4. Programming-projects Programming-projects Public

    This repo has contains my programming mini-projects.

    Python

  5. SHAMARPO-JAVA SHAMARPO-JAVA Public

    This repo contains java mini and simple programs

    Java

  6. gMSADumper gMSADumper Public

    Forked from micahvandeusen/gMSADumper

    Lists who can read any gMSA password blobs and parses them if the current user has access.

    Python