// Active feed About Projects Skills Contact

Live Security Monitor

VISITOR_SCAN — analyzing...

I find what
others miss.

Security researcher focused on IoT vulnerabilities, network penetration testing, and responsible disclosure. Based in Saudi Arabia.

View work →

About

I'm Sulaiman Ahmed, a cybersecurity graduate from Buraydah Colleges (Class of 2026). I approach systems the way an attacker would — to understand the full attack surface before someone with worse intentions does. My focus is IoT security, network analysis, and vulnerability research.

Working at the hardware and protocol level means going beyond the web app layer: firmware, physical interfaces, embedded systems, and the protocols that tie them together. That's where the interesting bugs live.

I believe in responsible disclosure. Every finding gets documented and reported before it goes anywhere else.

IoT
Primary Focus
SA
Saudi Arabia
CVE
Research Track

Projects

Selected work.

IoT · Network · Wireless · 🥇 1st Place
IoT SmartGuard Security
Audited a smart home IoT environment end-to-end. Hijacked live RTSP camera feeds, captured WPA2 handshakes, and mapped the full attack surface with Nmap. Hardened with VLAN segmentation and credential overhaul — ~80% attack surface reduction. 🥇 1st place at graduation project defense.
Nmap Aircrack-ng Wireshark RTSP Exploitation WPA2 VLAN Segmentation
Automation · Python · Telegram Bot
Lo7at Finder
Automated Telegram bot monitoring Saudi license plate auctions on Absher platform (تتبع مزادات اللوحات في أبشر). Features real-time alerts for matching plates, custom filtering, and instant bid notifications.
Python Telegram Bot API Web Scraping Linux Automation
SaaS · Next.js · TypeScript
ATSify — Resume Builder
Production Next.js SaaS resume builder (منصة بناء وتحسين السير الذاتية لأنظمة ATS). Features ATS optimization, subscription plans, and referral engine.
Next.js TypeScript shadcn/ui PDF Parser SaaS
Security · AI · Python · CLI
Verix
AI-powered web vulnerability scanner. Crawls targets with Playwright, uses Claude AI to flag real issues — XSS, open redirects, missing headers — and generates graded reports with scan-history diff tracking.
Python Claude AI Playwright Streamlit Security Automation

Skills

Capabilities.

Offensive Security
  • Network Penetration Testing
  • Web Application Testing
  • IoT / Embedded Hacking
  • Firmware Reverse Engineering
  • Protocol Analysis
Tools
  • Burp Suite Pro
  • Nmap / Masscan
  • Wireshark / tcpdump
  • Ghidra / Binwalk
  • Metasploit
Development
  • Python — automation & exploits
  • Bash / Shell scripting
  • C / C++ (basic)
  • Linux administration
  • Docker / containers
Knowledge
  • OWASP Top 10
  • CVE research & disclosure
  • TCP/IP & protocol analysis
  • MQTT / CoAP / Zigbee
  • ISO 27001 awareness

Contact

Get in touch.

Open to security research collaborations, penetration testing engagements, and vulnerability disclosure conversations.

sec@iamsulaiman.dev