Analyzing a Domain's Attack Surface with OSINT Tools
A practical workflow for mapping public-facing infrastructure, services, and exposure using open-source intelligence.
In progressPersonal site
Cybersecurity Student • Security Researcher • Software Builder
Exploring cybersecurity, building software, and writing about what I learn.
About
I'm a cybersecurity student at Warsaw University of Technology with a strong interest in software engineering, security research, and modern communication systems.
My current work focuses on building software, exploring cybersecurity topics, and documenting what I learn along the way. I'm particularly interested in application security, backend systems, network security, and emerging technologies.
I'm also working on my engineering thesis, which focuses on developing a detection system for network slicing attacks in 5G networks.
This website serves as a place to share articles, research notes, technical experiments, and projects as I continue developing my skills in cybersecurity and software engineering.
Focus
Foundational security principles, threat modeling, and understanding how systems fail.
Securing web applications, APIs, and the code paths attackers actually target.
Hands-on exploration of vulnerabilities, mitigations, and emerging attack vectors.
Designing reliable server-side systems with performance, clarity, and safety in mind.
Building tools and workflows that reduce friction and scale repetitive security work.
Applying security principles throughout the software development lifecycle.
Selected work
A collection of projects exploring security research, embedded systems, and software engineering.
Security SaaS that analyzes domains, detects exposure risks, and generates actionable reports to help small businesses improve their security posture.
Fully functional desktop chess game built in Java with a Swing GUI, legal move validation, check and checkmate detection, and local two-player gameplay.
Hardware-based DDoS detection system built in Verilog and validated with Python simulations. Uses traffic classification, threshold-based detection, and signal-level verification to identify abnormal network activity.
CompTIA
Industry certification validating foundational skills in security operations, threats, vulnerabilities, architecture, and risk management.
Writing
Technical notes and research are currently being prepared.
Coming soon
Research, writing, and editing in progress.
A practical workflow for mapping public-facing infrastructure, services, and exposure using open-source intelligence.
In progressA hands-on guide to collecting telemetry, investigating events, and practicing detection workflows in a personal SOC environment.
In progressJourney
Began formal studies in computer science, building a foundation in algorithms, systems, and software design.
Shifted focus toward security - studying vulnerabilities, defensive techniques, and the mindset of breaking and fixing systems.
Started shipping backend applications and tools, applying engineering principles to real problems.
Began documenting research, experiments, and learnings through articles and public notes.
Working toward industry certifications and deeper independent research in application security.
Contact
Open to conversations about security research, software projects, and collaboration. Reach out - I read every message.