$ ls -la ~/research_and_projects/ --show-details

πŸ“ SECURITY RESEARCH & VULNERABILITY DISCLOSURES

πŸ”΄

orchids.app-vulnerability-disclosure/

β”œβ”€β”€ timeline: Sept 2025 - Nov 2025

β”œβ”€β”€ impact: Saved YC startup $1M+

β”œβ”€β”€ type: Payment bypass vulnerabilities (2 critical)

β”œβ”€β”€ process: Discovered Sept 2025, contacted YC security team & CC/CERT after non-response, resolved Nov 2025

β”œβ”€β”€ tech: Web Security, Payment Systems Analysis

🌐

nvidia.zip-awareness-campaign/

β”œβ”€β”€ timeline: 2024

β”œβ”€β”€ mission: Demonstrate .zip TLD phishing risks

β”œβ”€β”€ investment: Self-funded security awareness project

β”œβ”€β”€ impact: Educated thousands about URL spoofing

β”œβ”€β”€ tech: DNS, Web Security, Social Engineering

β”œβ”€β”€ externalLink: https://nvidia.zip

β”œβ”€β”€ highlightLink:

πŸ“ CLOUD SECURITY TOOLS

πŸ”

CryptoGuard-Suite/

β”œβ”€β”€ description: Encryption, Decryption & Hashing Tool

β”œβ”€β”€ tech: Python, Cryptography, Flask, Docker

πŸ“œ

SSL-Certificate-Manager/

β”œβ”€β”€ description: Enterprise SSL/TLS certificate lifecycle management

β”œβ”€β”€ tech: Node.js, OpenSSL, Docker, MongoDB

βœ…

ValidateX-Security-Scanner/

β”œβ”€β”€ description: Email & Website Security Verification Tool

β”œβ”€β”€ tech: Python, DNS Analysis, SMTP Validation

πŸ“ PRODUCTIVITY & DEVELOPMENT TOOLS

πŸ—„οΈ

DataForge/

β”œβ”€β”€ description: Convert your CSV files to database queries (unlimited)

β”œβ”€β”€ tech: Python, CSV Processing, SQL Generation

πŸ—œοΈ

CompressX-File-Processor/

β”œβ”€β”€ description: Advanced File Compressor & Format Converter

β”œβ”€β”€ tech: Python, Multiple compression algorithms

🌳

GitViz-Repository-Explorer/

β”œβ”€β”€ description: Interactive GitHub repository branch visualization

β”œβ”€β”€ tech: D3.js, GitHub API, React, TypeScript

🎨

DiagramCraft-Architecture-Designer/

β”œβ”€β”€ description: Collaborative architectural diagram editor (Excalidraw clone)

β”œβ”€β”€ tech: React, Canvas API, WebRTC, Socket.io

πŸ“

DocuEdit-Offline-Processor/

β”œβ”€β”€ description: Full-featured offline document editor (MS Word alternative)

β”œβ”€β”€ tech: React, IndexedDB, PWA, Service Workers

πŸ“ SPECIALIZED SECURITY INTERFACES

βš›οΈ

ChemSec-Periodic-Interface/

β”œβ”€β”€ description: Chemistry-themed security tools dashboard

β”œβ”€β”€ tech: React, D3.js, Security APIs

🎯

PokeSec-Network-Discovery/

β”œβ”€β”€ description: Pokemon-themed network security scanner

β”œβ”€β”€ tech: Python, Nmap, Network Analysis

πŸ“ CLOUD INFRASTRUCTURE PROJECTS

☁️

secure-scalable-web-app-gcp/

Building a Secure and Scalable Web Application on Google Cloud Platform

β”œβ”€β”€ description: Enterprise-grade web application leveraging GCP services with automated CI/CD pipeline, static asset optimization, and comprehensive security measures

β”œβ”€β”€ components: Compute Engine VMs, Cloud Build, Cloud Functions, Cloud Storage, CloudFlare CDN

β”œβ”€β”€ features: Automated GitHub deployments, Weekly Cloud Build automation, Static asset CDN delivery, DDoS protection, Firewall configuration

β”œβ”€β”€ security: Network segmentation, Access controls, Data encryption (at rest & in transit), WAF protection, Regular security audits, Vulnerability assessments

β”œβ”€β”€ tech: GCP, Compute Engine, Cloud Build, Cloud Functions, CloudFlare, HTML/CSS/JavaScript

πŸ’¬

interactive-resume-chatbot/

Unveiling My Interactive Resume: A Chatbot Built with Google Cloud Platform

β”œβ”€β”€ description: AI-powered conversational interface for resume exploration built with Dialogflow NLU on GCP. Provides engaging, personalized way for employers to learn about experience and skills

β”œβ”€β”€ components: Dialogflow (NLU Agent), Cloud Project, Dialogflow Essential, Cloud Run for deployment

β”œβ”€β”€ features: Natural language understanding, Intent-based conversation flow, Real-time responses, Website integration, Customizable dialogue paths

β”œβ”€β”€ benefits: Engaging user experience, 24/7 accessibility for recruiters, Personalized interaction, Efficient candidate screening, Stand out from traditional resumes

β”œβ”€β”€ implementation: Dialogflow intent definition, Conversational flow design, Website chatbot integration, Automated background deployment

β”œβ”€β”€ tech: Dialogflow, GCP, NLU, Cloud Run, Web Integration, Conversational AI

🍯

honeypot-security-system/

Honey Pot - A Web Defense Mechanism

β”œβ”€β”€ description: Decoy security system deployed on GCP for detecting, analyzing, and logging cyber attacks. Acts as bait to gather threat intelligence and protect production systems

β”œβ”€β”€ preparation: Google Cloud Shell initialization, Billing enablement, Compute Engine API activation, Region/zone selection

β”œβ”€β”€ deployment: Firewall rule configuration, MHN Admin installation, Honeypot VM setup, Network isolation

β”œβ”€β”€ components: MHN Admin (management), Compute Engine VMs, Custom firewall rules, Attack monitoring system

β”œβ”€β”€ features: Attack detection & logging, Threat intelligence gathering, Network security monitoring, Automated alerting, Traffic analysis

β”œβ”€β”€ security: Isolated network segments, Controlled traffic routing, Attack pattern analysis, Legal compliance verification, Service exposure management

β”œβ”€β”€ tech: GCP, Compute Engine, MHN, Network Security, Firewall Rules, Security Monitoring

πŸ“ DATA SCIENCE & ML PROJECTS

⚑

project-pokedex-data-analysis/

Project PokΓ©dex - Where Data Meets Pocket Monsters

β”œβ”€β”€ description: Innovative data science exploration applying advanced ML and visualization techniques to PokΓ©mon datasets using cutting-edge GCP technologies

β”œβ”€β”€ components: Vertex AI (ML training), Google Colab (development), Python, Matplotlib, Looker Studio (dashboards)

β”œβ”€β”€ methodology: OSINT data collection β†’ Data cleaning & classification β†’ Exploratory analysis β†’ ML model training β†’ Interactive visualization

β”œβ”€β”€ features: Predictive type classifications, Pattern recognition & trend analysis, Interactive dashboards, Advanced data visualizations, Auto ML training

β”œβ”€β”€ challenges: Handling diverse PokΓ©mon attributes, Multi-class type prediction, Creating interactive visualization techniques, Model optimization

β”œβ”€β”€ insights: Comprehensive understanding of PokΓ©mon characteristics, Data-driven type predictions, Visual exploration of complex datasets

β”œβ”€β”€ tech: Vertex AI, Auto ML, Google Colab, Python, Matplotlib, Looker Studio, Machine Learning, Data Visualization

πŸ“ SERVERLESS & API PROJECTS

πŸ“„

json-resume-api-serverless/

Cloud JSON Resume API - Serverless Architecture Challenge

β”œβ”€β”€ description: Event-driven serverless API for serving resume data in JSON format from Firestore NoSQL database with public access and auto-scaling

β”œβ”€β”€ components: Firestore (NoSQL database), Cloud Functions (2nd gen), Cloud Run (deployment), Python (source code)

β”œβ”€β”€ architecture: Users make API call β†’ Cloud Function triggers β†’ Retrieves data from Firestore β†’ Returns JSON response via Cloud Run

β”œβ”€β”€ deployment steps: Create GCP project, Configure Firestore collection, Write Cloud Function source in Python, Set service account permissions, Configure allUser access, Deploy on Cloud Run

β”œβ”€β”€ features: Real-time data retrieval, Serverless auto-scaling, Public API access, Event-driven architecture, NoSQL data storage, Low latency responses

β”œβ”€β”€ tech: Firestore, Cloud Functions (2nd gen), Cloud Run, Python, NoSQL, Serverless Architecture, Event-Driven

$ project-stats --summary

Total Projects: 16

Categories: Security Research (2), Cloud Security Tools (3), Development Tools (5), Specialized UI (2), Cloud Infrastructure (3), Data Science (1), Serverless (1)

Featured GCP Projects: 5 with architecture diagrams

Tech Stack: GCP, Vertex AI, Dialogflow, Cloud Functions, Firestore, Compute Engine, Cloud Run, Python, ML

High-Impact Disclosures: orchids.app ($1M+ saved)

All Projects Include: Project Links & Blog Documentation

$ cat ~/.research/recognition.txt

"Recently discovered and responsibly disclosed critical payment bypass

vulnerabilities in a Y Combinator-backed AI startup, potentially saving

them millions in losses. Despite initial non-response, I persisted

through CERT/CC protocols and Y Combinator security team escalation,

demonstrating that doing the right thing matters more than recognition."