Tomatotech90
security researcher · threat hunter · krakenio.tech
I build tools and contribute to projects focused on threat hunting, ransomware and malware analysis, and network and system security. My work includes static analysis tooling, vulnerability assessment workflows, and infrastructure-focused investigations.
// focus
→ malware & PE static analysis → phishing infrastructure analysis
→ ransomware group tracking → honeypot & deception systems
→ IOC development & threat hunting → vulnerability assessment tooling
// stack
python bash c c++ · javascript typescript c# java php · docker linux aws flask mysql mongodb
// writing — krakenio.tech
- Anatomy of a Sophisticated Phishing Campaign: usps.otognluguws.top
- The Dual-Edged Sword of Cloudflare Workers
- USPS Squatting Campaign — vxhbs.cfd
- Fake USPS Scam Using Brazilian Government Domain
→ Full list: research archive
- Deciphering Medusa's Trend on Schools and Healthcare
- Understanding CVE-2024-6387: regreSSHion
- The Saga of LockBit
- Comprehensive Guide to TLD Hijacking and Domain Security
→ Full list: article archive
// find me ^_^
htb app.hackthebox.com/profile/1028599 — Ketchupsauce80 #1028599
ibm exchange.xforce.ibmcloud.com/activity/map
in linkedin.com/in/jonathan-m-858b361a7

