Cybersecurity research, writeups & PoCs — plus tech services and a gear shop for the security community. All from one platform.
Technical breakdowns of CTF challenges, HTB machines and real-world vulnerabilities.
Full exploitation chain: ASLR bypass to stable shellcode via custom glibc heap spray on a hardened Debian target. Root in 4 hours — documented step by step.
Read Full Writeup →Weekly CVE breakdowns, threat intel, PoC exploits and security research that actually matters.
Active exploitation in the wild. We reproduce the PoC in a lab and walk through mitigation.
Building a Sigma rule that catches AS-REP Roasting against Active Directory. Tested on Forest and Sauna HTB machines.
Head-to-head across performance, stealth, and ease of use in real pentest scenarios.
CVSS scores, affected products, patch status and exploitation probability for the week's real threats.
Full PoC reproduction of the Palo Alto GlobalProtect vulnerability. Script on GitHub.
The report requirement changes everything — and that's exactly why real pentest teams respect it more.
Professional penetration testing, security audits and awareness training for businesses across Kenya.
Websites, Google Business, CCTV, WiFi networks, IT support and computer repair for local businesses and homes.
| Service | Price (KSH) | Delivery | Book |
|---|---|---|---|
| Basic business website (5 pages) | 15,000 – 25,000 | 3–5 days | WhatsApp → |
| Google Business Profile setup + optimization | 3,500 | 1–2 hours | WhatsApp → |
| Domain + hosting setup + email | 5,000 | 1 day | WhatsApp → |
| CCTV installation consultation + setup | 8,000 – 15,000 | 1 day | WhatsApp → |
| WiFi network setup (homes, offices) | 5,000 – 10,000 | Half day | WhatsApp → |
| IT support retainer (monthly) | 5,000 – 8,000/mo | Ongoing | WhatsApp → |
| Social media page setup + branding | 4,000 | 1 day | WhatsApp → |
| Computer repair / maintenance | 2,000 – 4,000 | Hours | WhatsApp → |
Pentest tools, refurbished laptops, networking gear and KnightSec merch. Ships from Kenya. M-Pesa accepted.
ECE graduate turned full-time penetration tester. I build things, break things, and document both. My hardware background gives me an edge in low-level exploitation, network security and IoT/firmware pentesting — areas most security professionals don't touch.
Running KnightSec as a cybersecurity and tech services platform serving SMEs, SACCOs and schools upcountry. Grinding toward CJCA (May 2026) and CPTS (December 2026). Every writeup here is real. No filler.
Open to remote pentest roles, freelance security audits, tech services and product enquiries. Based in Kenya — working globally.