// Active feed About Projects Skills Contact

Live Security Monitor

VISITOR_SCAN — analyzing...

I find what
others miss.

Security researcher focused on IoT vulnerabilities, network penetration testing, and responsible disclosure. Based in Saudi Arabia.

View work →

About

I'm Sulaiman Ahmed, a cybersecurity graduate from Buraydah Colleges (Class of 2026). I approach systems the way an attacker would — to understand the full attack surface before someone with worse intentions does. My focus is IoT security, network analysis, and vulnerability research.

Working at the hardware and protocol level means going beyond the web app layer: firmware, physical interfaces, embedded systems, and the protocols that tie them together. That's where the interesting bugs live.

I believe in responsible disclosure. Every finding gets documented and reported before it goes anywhere else.

IoT
Primary Focus
SA
Saudi Arabia
CVE
Research Track

Projects

Selected work.

IoT · Network · Wireless · 🥇 1st Place
IoT SmartGuard Security
Audited a smart home IoT environment end-to-end. Hijacked live RTSP camera feeds, captured WPA2 handshakes, and mapped the full attack surface with Nmap. Hardened with VLAN segmentation and credential overhaul — ~80% attack surface reduction. 🥇 1st place at graduation project defense.
Nmap Aircrack-ng Wireshark RTSP Exploitation WPA2 VLAN Segmentation
Automation · Python · Telegram Bot
Lo7at Finder
Monitors Saudi license plate auctions on Absher and alerts via Telegram the moment a matching plate drops. Premium: unlimited plates, alerts 3h & 15min before close, instant bid notifications.
Python Telegram Bot API Web Scraping Linux Automation
SaaS · Next.js · TypeScript
ATSify — Resume Builder
Parses uploaded resumes and rewrites them to pass ATS screening. Trial access, subscription plans, referral system, PDF export. Live in production.
Next.js TypeScript shadcn/ui PDF Parser SaaS
Security · AI · Python · CLI
CogniScan AI
AI-powered web vulnerability scanner. Crawls targets with Playwright, uses Claude AI to flag real issues — XSS, open redirects, missing headers — and generates graded reports with scan-history diff tracking.
Python Claude AI Playwright Streamlit Security Automation

Skills

Capabilities.

Offensive Security
  • Network Penetration Testing
  • Web Application Testing
  • IoT / Embedded Hacking
  • Firmware Reverse Engineering
  • Protocol Analysis
Tools
  • Burp Suite Pro
  • Nmap / Masscan
  • Wireshark / tcpdump
  • Ghidra / Binwalk
  • Metasploit
Development
  • Python — automation & exploits
  • Bash / Shell scripting
  • C / C++ (basic)
  • Linux administration
  • Docker / containers
Knowledge
  • OWASP Top 10
  • CVE research & disclosure
  • TCP/IP & protocol analysis
  • MQTT / CoAP / Zigbee
  • ISO 27001 awareness

Contact

Get in touch.

Open to security research collaborations, penetration testing engagements, and vulnerability disclosure conversations.

sec@iamsulaiman.dev