Ashish Kumar
> |
B.Tech CSE @ MMMUT Gorakhpur. I build tools that detect, analyze, and respond to threats — from network intrusion detection systems to GenAI-powered malware analysis pipelines. Top 2% on TryHackMe globally.
Who I Am.
I'm Ashish Kumar, a Computer Science student at MMMUT Gorakhpur with a deep obsession for cybersecurity and systems engineering.
My work sits at the intersection of Blue Team defense and full-stack development. I build things that matter — from network intrusion detection systems written in raw C++ to AI-powered malware analysis pipelines that help security teams respond faster.
When I'm not hunting threats or writing code, I'm on the basketball court or cracking CTF challenges. I believe the discipline of competitive sport and the precision of security engineering aren't that different.
INTERESTS & AREAS
PRIMARY OS
Kali Linux / Windows
FOCUS AREA
Blue Team / DFIR
LANGUAGES
C++, Python, TypeScript
THM RANK
Top 2% Globally
CURRENTLY LEARNING
Rust · Cloud Security (AWS) · Kubernetes Hardening
// journey
B.Tech Computer Science & Engineering
MMMUT Gorakhpur
Pursuing my degree with a focus on cybersecurity, networks, and systems programming. Active in technical clubs and college CTF teams.
SOC & Blue Team Practice
TryHackMe · HackTheBox
Achieved Top 2% ranking on TryHackMe globally. Completed 200+ rooms covering SIEM, threat hunting, malware analysis, and network forensics.
CTF — 1st Place
MMMUT CES Capture The Flag
Led team to first place in the college-level CTF competition. Solved challenges across web exploitation, reverse engineering, and cryptography.
Full-Stack & Security Tools
Personal Projects
Building production-grade tools — a Network IDS in C++, a GenAI-powered malware analysis pipeline, and various open-source security utilities.
My Arsenal.
A breakdown of my technical capabilities — from security operations to full-stack engineering.
LEGEND
Security
8 skills tracked
ALSO FAMILIAR WITH
What I've Built.
A collection of security tools, web applications, and AI-powered pipelines I've shipped or am actively building.
Network Intrusion Detection System
Real-time packet inspection engine with rule-based anomaly detection.
GenAI Malware Analysis Pipeline
LLM-powered static & dynamic analysis tool for suspicious executables.
Portfolio Website
This very site — a dark-themed, animated portfolio built with Next.js.
CTF Toolkit
Curated collection of scripts and helpers for Capture The Flag competitions.
SIEM Log Analyzer
Parses and correlates Splunk/ELK logs to surface high-fidelity alerts.
Want to see more? All my work is on GitHub.
github.com/Ashiii27Capture The Flag.
Selected writeups from competitions I've participated in — documenting my approach to breaking things (legally).
6
Writeups
2075
Total Pts
5
Events
2
Hard+
HackTheBox CTF · 2024
JWT None Algorithm Bypass
PicoCTF 2024 · 2024
ret2libc Buffer Overflow
CryptoCTF 2024 · 2024
RSA Small Public Exponent
NahamCon CTF · 2024
PCAP Traffic Analysis
CTFd Platform · 2025
SSRF → Internal AWS Metadata
PicoCTF 2024 · 2024
Steganography LSB Extraction
ACTIVE COMPETITOR
Competing on HackTheBox, TryHackMe & CTFtime. More writeups published regularly.
Thoughts & Writeups.
Security research, CTF breakdowns, and engineering deep-dives — written to share what I learn.
Building a Real-Time NIDS with C++ and libpcap
A deep dive into crafting a high-performance network intrusion detection system from scratch — packet capture, rule engines, and live alerting.
JWT Vulnerabilities: From None Algorithm to Key Confusion
Exploring the most dangerous JWT attack vectors I've encountered in CTFs and real-world pentests, with working PoC code.
Using Gemini API for Automated Malware Triage
How I built a GenAI-powered pipeline that takes a suspicious binary, disassembles it with Ghidra, and produces a human-readable threat report.
PicoCTF 2024: ret2libc Writeup and ROP Chain Breakdown
Step-by-step walkthrough of a classic return-to-libc exploit: leak addresses, defeat ASLR, and pop a shell using a minimal ROP gadget chain.
Building a Threat Intel Dashboard with FastAPI + React
Aggregating IOC feeds from VirusTotal, OTX, and abuse.ch into a single searchable UI — architecture, API design, and caching strategy.
MITRE ATT&CK Mapping in Practice: Log Correlation with Python
How to programmatically map SIEM alerts to ATT&CK techniques using Python and the TAXII feed — building actionable incident summaries.
STAY UPDATED
New posts on security research, CTF writeups, and tool builds — published regularly.
Let's Connect.
Have a project, opportunity, or just want to talk security? My inbox is open.