zerofrost

zerofrost

Cyber Security Enthusiast,Purple Teamer,Gamer,Coder

Read My Blog
Banner image
01 SKILLS

What I work on.

Cybersecurity professional with 5+ years of experience securing applications, networks, systems, and data across cloud and on-premise environments. Skilled in Web Security, API and Mobile security, Penetration testing, Active Directory exploitation, Red teaming, reverse engineering, and binary exploitation.

Web / API

Web & API Security

BurpSuite Pro, Caido, Nuclei, SQLMap, Ffuf.

AD

Active Directory

BloodHound, BloodyAD, Impacket, NetExec,Certipy.

Mobile

Mobile Security

Frida, Jadx, Drozer, MobSF, ApkTool, HttpToolkit, Objection.

Cloud

Cloud Security

Pacu, Prowler, ScoutSuite, AWS-Enumerator.

Binary

Binary Exploitation

Pwntools, GDB (Gef/Pwndbg), Radare.

RE

Reverse Engineering

Ghidra, IDA Pro, Binary Ninja, Hopper, dnSpy, Uncompyle6.

View my full skills

02 Research

Discovered CVEs.

Some of the CVEs that I have discovered.

CVEYearVendorVulnerabilitySeverityAdvisory
CVE-2025-644882025SuiteCRMAuthenticated SQL InjectionHighGitHub
CVE-2025-111352025PMTicketAuthentication BypassCritMITRE
CVE-2025-78862025PMTicketSQL InjectionMediumMITRE
CVE-2024-101952024Tecno 4G RouterSQL InjectionMediumMITRE
CVE-2023-63042023Tecno 4G RouterAuthenticated Remote Code ExecutionCritMITRE

View my CVEs

03 RECOGNITION

Achievements & Awards.

CTF placements, awards, and the certifications behind the work. Picked from a longer list.

#1 Cyberranges Global Leaderboard Ongoing
#1 CyberCon KE Finals CTF 2022
#1 CyberCon KE Preliminaries CTF 2022
#2 Africa BattleCTF, Individual 2024
#2 SheHacks Inter-University CTF 2023
#2 SheHacks Inter-University CTF 2022
#3 Blacks in Cyber @ DEF CON 24 2024
#16 DEF CON 29 Red Team CTF (Global) 2021
#6 AfricaHackon CTF 2021

View Awards

04 Certifications

Certifications

CRTE CRTO CRTA MCRTA CEH Security+ Extreme Red Teamer Off Dev Win v1 Azure RT API Security Linux Heap Exploitation NSE 1 & 2 HTB POO Pro HTB Puppet Pro CCNA

View all certifications